Registro público
Informe de salud del softwareesquema 0.27.0 · métricas 1.13.0 · 2026-07-24 20:21 UTC

hanzoai / deploy

Declarative Continuous Deployment for Kubernetes

Go · TypeScriptApache-2.0★ 0 estrellas⑂ 0 forksdesde jul 2026forkVer en GitHub ↗

hanzoai/deploy tiene un índice de salud de 64 sobre 100, lo que lo sitúa en la banda Moderado. Su puntuación más alta es AI Readiness (91/100) y la más baja, Community & Adoption (12/100). Se actualizó por última vez hace 1 día. 8 personas concentran la mayor parte del trabajo reciente.

64
global / 100
Moderado

Índice de salud del software

Las métricas se agrupan en categorías ponderadas sobre una escala de 1 a 100. El resultado global parte de su media; cuando la evidencia pública activa la Política de Jurisdicciones de Alto Riesgo, la calificación se ajusta y recibe el límite 49 (En riesgo). Preparación para IA queda fuera.

64
Excelente85-100Ejemplar; cumple prácticamente todos los criterios evaluados
Bueno70-84Saludable; carencias menores
Moderado50-69Aceptable con carencias notables; se recomienda revisión
En riesgo30-49Debilidades significativas; su adopción exige cautela
Crítico1-29Problemas graves (proyecto abandonado, un solo mantenedor, sin higiene)
VitalidadComunidad yAdopciónSostenibilidady GobernanzaCalidad deIngenieríaSeguridadPreparaciónpara IA

Perfil de puntuación

Cada eje es una categoría. La forma importa más que la media: un proyecto sano llena toda la figura, mientras que un perfil de picos y cráteres indica que la fortaleza en una dimensión enmascara el riesgo en otra.

Titularidad

Hanzo AIOrganización
37 seguidores129 repositorios públicosdesde dic 2015

Este repositorio está respaldado por una organización: una custodia compartida y responsable que puede sobrevivir a cualquier mantenedor individual.

Ecosistemas de paquetes

RegistroPaqueteVersiónDescargas / mesVersionesÚltima publicación
Gogithub.com/hanzoai/deployv1.8.7-143hace 1969 días
Gogithub.com/hanzoai/deploy/gitops-enginev0.7.2-1hace 6 días

Métricas por categoría

Vitalidad

¿Está vivo el proyecto: se escribe código y se publican versiones?

89Excelente · 22% del índice global
Cómo se puntúa
36/36Recencia de push — último push hace 1 días
36/36Cadencia de commits — 52/52 semanas con commits
18/18Volumen de commits — 2008 commits en el último año
0/10OpenSSF Scorecard: Maintained — project was created within the last 90 days. Please review its contents carefully
Datos de entrada utilizados
commits_last_year2008
human_commit_share0,69
days_since_last_push1
active_weeks_last_year52
Cómo se puntúa
16.2/27Publica versiones — 98 etiquetas de versión (sin releases de GitHub)
36/36Recencia de las versiones — última versión hace 15 días
27/27Cadencia de publicación — una versión cada ~8,8 días
0/10OpenSSF Scorecard: Signed-Releases — sin datos
Datos de entrada utilizados
releases_count98
latest_release_tagv3.4.5
releases_from_tags
days_since_latest_release15
mean_days_between_releases8,8
Excluidos de la puntuación (sin datos o no aplicable): OpenSSF Scorecard: Signed-Releases. Los pesos restantes se han renormalizado.

Comunidad y Adopción

¿Tiene el proyecto usuarios, descargas, atención y unas condiciones acogedoras para quienes contribuyen?

12Crítico · 18% del índice global
Cómo se puntúa
0/60Estrellas — 0 estrellas
0/25Forks — 0 forks
0/15Observadores — 0 observadores
Datos de entrada utilizados
forks0
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Cómo se puntúa
0/22.5README
22.5/22.5Licencia — licencia reconocida (Apache-2.0)
0/18Guía CONTRIBUTING
0/13.5Código de conducta
0/7.2Plantilla de issues
0/6.3Plantilla de PR
Datos de entrada utilizados
has_readmeno
has_licenseno
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno

Sostenibilidad y Gobernanza

¿Sobrevivirá el proyecto a sus personas: factor bus, capacidad de respuesta, quién lo respalda y mantenimiento del paquete?

84Bueno · 24% del índice global
Cómo se puntúa
54/54Factor bus — la mitad de los commits recae en 8 contribuyente(s)
19.4/22.5Distribución de commits — el principal contribuyente firma el 14% de los commits
13.5/13.5Amplitud de contribuyentes — 96 contribuyentes
10/10OpenSSF Scorecard: Contributors — project has 43 contributing companies or organizations
Datos de entrada utilizados
bus_factor8
contributors_sampled96
top_contributor_share0,136
Cómo se puntúa
0/46.8Resolución de issues — sin issues o sin datos
38.2/38.3Aceptación de PR — 3/3 PR decididos fusionados
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Datos de entrada utilizados
merged_prs3
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
Excluidos de la puntuación (sin datos o no aplicable): Resolución de issues. Los pesos restantes se han renormalizado.
Cómo se puntúa
30/30Respaldo de la propiedad — propiedad de una organización
0/20Dominio verificado
11.4/25Alcance del propietario — 37 seguidores de hanzoai
25/25Trayectoria — 129 repos públicos, cuenta de ~10 años
Datos de entrada utilizados
followers37
owner_typeOrganization
is_verified
owner_loginhanzoai
public_repos129
account_age_days3878
Cómo se puntúa
25/25Publicado y resoluble — 2 paquete(s) en go
35/35Recencia de publicación — última publicación hace 6 días
20/20Historial de versiones — 143 versiones en el registro
20/20No obsoleto — activo, ni obsoleto ni retirado
Datos de entrada utilizados
packagesgithub.com/hanzoai/deploy, github.com/hanzoai/deploy/gitops-engine
ecosystemsgo
any_deprecatedno
min_days_since_publish6

Calidad de Ingeniería

¿Existen unas prácticas mínimas de ingeniería y documentación?

70Bueno · 20% del índice global
Cómo se puntúa
24/24Flujos de trabajo de CI — 18 flujo(s) de trabajo
24/24Pruebas presentes
16/16Configuración de linter — .golangci.yaml, eslint.config.mjs
0/9.6Hooks de pre-commit
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 2 out of 2 merged PRs checked by a CI test -- score normalized to 10
Datos de entrada utilizados
has_ci
has_tests
has_editorconfigno
has_linter_config
has_precommit_configno

Documentación

50Moderado
Cómo se puntúa
0/30README
25/25Directorio de documentación
15/15Sitio de documentación / página del proyecto — https://hanzoai.github.io/deploy/
0/10Descripción del repositorio
0/10Topics
10/10Wiki
Datos de entrada utilizados
topics
has_wiki
homepagehttps://hanzoai.github.io/deploy/
has_readmeno
has_docs_dir
has_descriptionno

Seguridad

¿Son sólidas las prácticas visibles de seguridad y de cadena de suministro, sin exposición jurisdiccional de alto riesgo sin resolver?

51Moderado · 16% del índice global
Cómo se puntúa
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
2.5/2.5CI-Tests — 2 out of 2 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 43 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Licencia — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
5/5Packaging — packaging workflow detected
3/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
4/5SAST — SAST tool detected but not run on all commits
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — sin datos
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 44 existing vulnerabilities detected
Datos de entrada utilizados
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate5,1
Excluidos de la puntuación (sin datos o no aplicable): signed_releases. Los pesos restantes se han renormalizado.

Preparación para IA

¿Hasta qué punto está el repositorio preparado para desarrollarse y mantenerse con agentes de codificación de IA? Es una insignia independiente y experimental — peso 0,0, de modo que se presenta por separado y no afecta a la puntuación de salud global.

91Excelente · 0% del índice global
Cómo se puntúa
45/45Instrucciones para agentes — AGENTS.md, CLAUDE.md
0/15Documentación legible por máquinas (llms.txt)
40/40Historial de commits legible — 67 de 69 commits humanos declaran su intención (asunto estructurado o cuerpo explicativo)
Datos de entrada utilizados
has_llms_txtno
legible_history_share0,971
agent_instruction_filesAGENTS.md, CLAUDE.md
agent_instruction_max_bytes3818
Cómo se puntúa
18/18Arranque con un solo comando — Makefile, gitops-engine/Makefile, test/remote/Makefile
22/22Pruebas automatizadas
11/11Configuración de lint / formato — .golangci.yaml, eslint.config.mjs
11/11Verificación estática de tipos — ui/src/app/tsconfig.json, ui/tsconfig.json
10/10Entorno reproducible — Dockerfile, lockfile
10/10Práctica demostrada con agentes — 12 de los últimos 100 commits con autoría o crédito de agente
8/8Mantenimiento automatizado — 28 de los últimos 100 commits son actualizaciones automáticas de dependencias
6/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
Datos de entrada utilizados
has_nixno
has_tests
lockfilesgo.sum, pnpm-lock.yaml
has_dockerfile
typed_language
bootstrap_filesMakefile, gitops-engine/Makefile, test/remote/Makefile
has_devcontainerno
has_linter_config
typecheck_configsui/src/app/tsconfig.json, ui/tsconfig.json
agent_commit_share0,12
toolchain_manifestsgitops-engine/go.mod, go.mod, hack/get-previous-release/go.mod
dependency_bot_commit_share0,28
Cómo se puntúa
45/45Código verificable por tipos — Go (tipado estático)
52.6/55Tamaños de archivo manejables — 55/1261 archivos fuente de más de 60 KB
Datos de entrada utilizados
primary_languageGo
largest_source_bytes1.517.316
source_files_sampled1261
oversized_source_files55
Cómo se puntúa
40/40Esquema de API (OpenAPI/GraphQL/proto) — assets/swagger.json, cmpserver/plugin/plugin.proto, commitserver/commit/commit.proto, pkg/apis/application/v1alpha1/generated.proto, reposerver/repository/repository.proto, server/account/account.proto, server/application/application.proto, server/applicationset/applicationset.proto, server/certificate/certificate.proto, server/cluster/cluster.proto, server/events/events.proto, server/gpgkey/gpgkey.proto, server/notification/notification.proto, server/project/project.proto, server/repocreds/repocreds.proto, server/repository/repository.proto, server/session/session.proto, server/settings/oidc/claims.proto, server/settings/settings.proto, server/version/version.proto, util/askpass/askpass.proto
0/20Servidor MCP
40/40Ejemplos ejecutables — examples
Datos de entrada utilizados
example_dirsexamples
has_mcp_signalno
api_schema_filesassets/swagger.json, cmpserver/plugin/plugin.proto, commitserver/commit/commit.proto, pkg/apis/application/v1alpha1/generated.proto, reposerver/repository/repository.proto, server/account/account.proto, server/application/application.proto, server/applicationset/applicationset.proto, server/certificate/certificate.proto, server/cluster/cluster.proto, server/events/events.proto, server/gpgkey/gpgkey.proto, server/notification/notification.proto, server/project/project.proto, server/repocreds/repocreds.proto, server/repository/repository.proto, server/session/session.proto, server/settings/oidc/claims.proto, server/settings/settings.proto, server/version/version.proto, util/askpass/askpass.proto

Datos clave

0estrellas de GitHub
96contribuidores
2008commits en los últimos 12 meses
1días desde el último push
98versiones publicadas
8factor bus
0issues abiertas
Go, npm, PyPIecosistemas de paquetes

Advertencias de recopilación de datos

  • Community profile unavailable
  • Could not fetch npm package 'hanzo-cd-ui' from its registry
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Más detalle

OpenSSF Scorecard 5.1 / 10
5.1agregado

Evaluación de seguridad independiente y agnóstica en cuanto a herramientas, procedente del proyecto de código abierto OpenSSF Scorecard. Cada comprobación premia una práctica de seguridad, no la herramienta de un proveedor concreto. Las comprobaciones que Scorecard no pudo determinar se marcan como n/d y se excluyen de la puntuación de seguridad (nunca se cuentan como cero).Scorecard v5.5.0 · 2026-07-24 20:21 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
10CI-Tests2 out of 2 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 43 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
10Packagingpackaging workflow detected
6Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 6
8SASTSAST tool detected but not run on all commits
10Security-Policysecurity policy file detected
n/dSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities44 existing vulnerabilities detected
Dependencias directas 193
RegistroPaqueteRestricción de versiónManifiesto
Gogithub.com/davecgh/go-spewv1.1.2-0.20180830191138-d8f796af33ccgitops-engine/go.mod
Gogithub.com/evanphx/json-patch/v5v5.9.11gitops-engine/go.mod
Gogithub.com/go-logr/logrv1.4.3gitops-engine/go.mod
Gogithub.com/google/gnostic-modelsv0.7.0gitops-engine/go.mod
Gogithub.com/google/uuidv1.6.1-0.20241114170450-2d3c2a9cc518gitops-engine/go.mod
Gogithub.com/spf13/cobrav1.10.2gitops-engine/go.mod
Gogithub.com/stretchr/testifyv1.11.1gitops-engine/go.mod
Gogo.opentelemetry.io/otelv1.41.0gitops-engine/go.mod
Gogolang.org/x/syncv0.20.0gitops-engine/go.mod
Gogoogle.golang.org/protobufv1.36.12-0.20260120151049-f2248ac996afgitops-engine/go.mod
Gok8s.io/apiv0.36.1gitops-engine/go.mod
Gok8s.io/apiextensions-apiserverv0.36.1gitops-engine/go.mod
Gok8s.io/apimachineryv0.36.1gitops-engine/go.mod
Gok8s.io/cli-runtimev0.36.1gitops-engine/go.mod
Gok8s.io/client-gov0.36.1gitops-engine/go.mod
Gok8s.io/klog/v2v2.140.0gitops-engine/go.mod
Gok8s.io/kube-aggregatorv0.36.1gitops-engine/go.mod
Gok8s.io/kube-openapiv0.0.0-20260317180543-43fb72c5454agitops-engine/go.mod
Gok8s.io/kubectlv0.36.1gitops-engine/go.mod
Gok8s.io/kubernetesv1.36.1gitops-engine/go.mod
Gosigs.k8s.io/structured-merge-diff/v6v6.3.2gitops-engine/go.mod
Gosigs.k8s.io/yamlv1.6.0gitops-engine/go.mod
Gocode.gitea.io/sdk/giteav0.25.1go.mod
Godario.cat/mergov1.0.2go.mod
Gogithub.com/Azure/azure-sdk-for-go/sdk/azcorev1.22.0go.mod
Gogithub.com/Azure/azure-sdk-for-go/sdk/azidentityv1.14.0go.mod
Gogithub.com/Azure/kubeloginv0.2.19go.mod
Gogithub.com/Masterminds/semver/v3v3.4.0go.mod
Gogithub.com/Masterminds/sprig/v3v3.3.0go.mod
Gogithub.com/TomOnTime/utfutilv1.0.0go.mod
Gogithub.com/alicebob/miniredis/v2v2.38.0go.mod
Gogithub.com/argoproj/notifications-enginev0.5.1-0.20260503100631-0cff13b8a717go.mod
Gogithub.com/argoproj/pkg/v2v2.0.1go.mod
Gogithub.com/aws/aws-sdk-go-v2v1.42.1go.mod
Gogithub.com/aws/aws-sdk-go-v2/configv1.32.30go.mod
Gogithub.com/aws/aws-sdk-go-v2/credentialsv1.19.29go.mod
Gogithub.com/aws/aws-sdk-go-v2/service/codecommitv1.35.1go.mod
Gogithub.com/aws/aws-sdk-go-v2/service/resourcegroupstaggingapiv1.34.1go.mod
Gogithub.com/aws/aws-sdk-go-v2/service/stsv1.44.1go.mod
Gogithub.com/aws/smithy-gov1.27.3go.mod
Gogithub.com/bmatcuk/doublestar/v4v4.10.0go.mod
Gogithub.com/bombsimon/logrusr/v4v4.1.0go.mod
Gogithub.com/bradleyfalzon/ghinstallation/v2v2.19.0go.mod
Gogithub.com/casbin/casbin/v2v2.135.0go.mod
Gogithub.com/casbin/govaluatev1.10.0go.mod
Gogithub.com/cenkalti/backoff/v5v5.0.3go.mod
Gogithub.com/cespare/xxhash/v2v2.3.0go.mod
Gogithub.com/chainguard-dev/git-urlsv1.0.2go.mod
Gogithub.com/coreos/go-oidc/v3v3.20.0go.mod
Gogithub.com/cyphar/filepath-securejoinv0.7.0go.mod
Gogithub.com/dlclark/regexp2v1.12.0go.mod
Gogithub.com/dustin/go-humanizev1.0.1go.mod
Gogithub.com/evanphx/json-patchv5.9.11+incompatiblego.mod
Gogithub.com/expr-lang/exprv1.17.8go.mod
Gogithub.com/felixge/httpsnoopv1.1.0go.mod
Gogithub.com/fsnotify/fsnotifyv1.10.1go.mod
Gogithub.com/gfleury/go-bitbucket-v1v0.0.0-20240917142304-df385efaac68go.mod
Gogithub.com/go-git/go-git/v5v5.19.1go.mod
Gogithub.com/go-jose/go-jose/v4v4.1.4go.mod
Gogithub.com/go-logr/logrv1.4.3go.mod
Gogithub.com/go-openapi/loadsv0.24.0go.mod
Gogithub.com/go-playground/webhooks/v6v6.4.0go.mod
Gogithub.com/go-redis/cache/v9v9.0.0go.mod
Gogithub.com/gobwas/globv0.2.3go.mod
Gogithub.com/gogits/go-gogs-clientv0.0.0-20210131175652-1d7215cd8d85go.mod
Gogithub.com/gogo/protobufv1.3.2go.mod
Gogithub.com/golang-jwt/jwt/v5v5.3.1go.mod
Gogithub.com/golang/groupcachev0.0.0-20241129210726-2c02b8208cf8go.mod
Gogithub.com/golang/protobufv1.5.4go.mod
Gogithub.com/google/btreev1.1.3go.mod
Gogithub.com/google/gnostic-modelsv0.7.1go.mod
Gogithub.com/google/go-cmpv0.7.0go.mod
Gogithub.com/google/go-github/v69v69.2.0go.mod
Gogithub.com/google/go-jsonnetv0.22.0go.mod
Gogithub.com/google/shlexv0.0.0-20191202100458-e7afc7fbc510go.mod
Gogithub.com/google/uuidv1.6.1-0.20241114170450-2d3c2a9cc518go.mod
Gogithub.com/gorilla/handlersv1.5.2go.mod
Gogithub.com/gorilla/websocketv1.5.4-0.20250319132907-e064f32e3674go.mod
Gogithub.com/gosimple/slugv1.15.0go.mod
Gogithub.com/grpc-ecosystem/go-grpc-middleware/providers/prometheusv1.1.0go.mod
Gogithub.com/grpc-ecosystem/go-grpc-middleware/v2v2.3.3go.mod
Gogithub.com/grpc-ecosystem/grpc-gatewayv1.16.0go.mod
Gogithub.com/hanzoai/deploy/gitops-enginev0.0.0-00010101000000-000000000000go.mod
Gogithub.com/hashicorp/go-retryablehttpv0.7.8go.mod
Gogithub.com/improbable-eng/grpc-webv0.15.1-0.20230209220825-1d9bbb09a099go.mod
Gogithub.com/itchyny/gojqv0.12.19go.mod
Gogithub.com/jarcoal/httpmockv1.4.1go.mod
Gogithub.com/jeremywohl/flattenv1.0.2-0.20211013061545-07e4a09fb8e4go.mod
Gogithub.com/kballard/go-shellquotev0.0.0-20180428030007-95032a82bc51go.mod
Gogithub.com/ktrysmt/go-bitbucketv0.10.0go.mod
Gogithub.com/mattn/go-isattyv0.0.22go.mod
Gogithub.com/mattn/go-zglobv0.0.6go.mod
Gogithub.com/microsoft/azure-devops-go-api/azuredevops/v7v7.1.1-0.20241014080628-3045bdf43455go.mod
Gogithub.com/minio/blake2b-simdv0.0.0-20160723061019-3f5f724cb5b1go.mod
Gogithub.com/oauth2-proxy/mockoidcv0.0.0-20240214162133-caebfff84d25go.mod
Gogithub.com/olekukonko/tablewriterv1.1.4go.mod
Gogithub.com/opencontainers/go-digestv1.0.0go.mod
Gogithub.com/opencontainers/image-specv1.1.1go.mod
Gogithub.com/patrickmn/go-cachev2.1.1-0.20191004192108-46f407853014+incompatiblego.mod
Gogithub.com/prometheus/client_golangv1.23.2go.mod
Gogithub.com/prometheus/client_modelv0.6.2go.mod
Gogithub.com/r3labs/diff/v3v3.0.2go.mod
Gogithub.com/redis/go-redis/v9v9.21.0go.mod
Gogithub.com/robfig/cron/v3v3.0.2-0.20210106135023-bc59245fe10ego.mod
Gogithub.com/sirupsen/logrusv1.9.4go.mod
Gogithub.com/skratchdot/open-golangv0.0.0-20200116055534-eef842397966go.mod
Gogithub.com/soheilhy/cmuxv0.1.5go.mod
Gogithub.com/spf13/cobrav1.10.2go.mod
Gogithub.com/spf13/pflagv1.0.10go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogithub.com/valyala/fasttemplatev1.2.2go.mod
Gogithub.com/yuin/gopher-luav1.1.2go.mod
Gogitlab.com/gitlab-org/api/client-gov1.46.0go.mod
Gogo.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpcv0.69.0go.mod
Gogo.opentelemetry.io/contrib/instrumentation/net/http/otelhttpv0.69.0go.mod
Gogo.opentelemetry.io/otelv1.44.0go.mod
Gogo.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpcv1.44.0go.mod
Gogo.opentelemetry.io/otel/sdkv1.44.0go.mod
Gogo.opentelemetry.io/otel/tracev1.44.0go.mod
Gogo.yaml.in/yaml/v3v3.0.4go.mod
Gogolang.org/x/cryptov0.54.0go.mod
Gogolang.org/x/netv0.57.0go.mod
Gogolang.org/x/oauth2v0.36.0go.mod
Gogolang.org/x/syncv0.22.0go.mod
Gogolang.org/x/termv0.45.0go.mod
Gogolang.org/x/timev0.15.0go.mod
Gogoogle.golang.org/genproto/googleapis/apiv0.0.0-20260526163538-3dc84a4a5aaago.mod
Gogoogle.golang.org/grpcv1.82.0go.mod
Gogoogle.golang.org/protobufv1.36.12-0.20260120151049-f2248ac996afgo.mod
Gogopkg.in/yaml.v2v2.4.0go.mod
Gok8s.io/apiv0.36.1go.mod
Gok8s.io/apiextensions-apiserverv0.36.1go.mod
Gok8s.io/apimachineryv0.36.1go.mod
Gok8s.io/client-gov0.36.1go.mod
Gok8s.io/code-generatorv0.36.1go.mod
Gok8s.io/component-helpersv0.36.1go.mod
Gok8s.io/klog/v2v2.140.0go.mod
Gok8s.io/kube-openapiv0.0.0-20260317180543-43fb72c5454ago.mod
Gok8s.io/kubectlv0.36.1go.mod
Gok8s.io/utilsv0.0.0-20260210185600-b8788abfbbc2go.mod
Golayeh.com/gopher-jsonv0.0.0-20190114024228-97fed8db8427go.mod
Gooras.land/oras-go/v2v2.6.2go.mod
Gosigs.k8s.io/controller-runtimev0.24.1go.mod
Gosigs.k8s.io/structured-merge-diff/v6v6.4.2go.mod
Gosigs.k8s.io/yamlv1.6.0go.mod
Gogithub.com/skeema/knownhostsv1.3.2go.mod
Gogopkg.in/yaml.v3v3.0.1go.mod
Gogithub.com/go-openapi/runtime/server-middlewarev0.32.4go.mod
Gok8s.io/streamingv0.36.1go.mod
npm@fortawesome/fontawesome-free^6.7.2ui/package.json
npm@types/react-virtualized^9.21.21ui/package.json
npm@types/superagent^8.1.6ui/package.json
npmansi-to-react^6.1.6ui/package.json
npmargo-uigit+https://github.com/argoproj/argo-ui.git#ad616de862f60d5348fe41ccaa72d7b74f9c3a13ui/package.json
npmbuffer^6.0.3ui/package.json
npmclassnames^2.2.5ui/package.json
npmcolor^3.2.1ui/package.json
npmdagre^0.8.5ui/package.json
npmdate-fns^2.30.0ui/package.json
npmdeepmerge^4.3.1ui/package.json
npmfoundation-sites^6.8.1ui/package.json
npmgit-url-parse^13.1.0ui/package.json
npmhistory^4.7.2ui/package.json
npmjs-yaml^4.1.1ui/package.json
npmjson-merge-patch^0.2.3ui/package.json
npmlodash-es^4.18.1ui/package.json
npmminimatch^3.1.4ui/package.json
npmmoment^2.29.4ui/package.json
npmmonaco-editor^0.33.0ui/package.json
npmpath^0.12.7ui/package.json
npmprop-types^15.8.1ui/package.json
npmreact^19.0.0ui/package.json
npmreact-autocomplete^1.8.1ui/package.json
npmreact-diff-view3.3.3ui/package.json
npmreact-dom^19.0.0ui/package.json
npmreact-ga^2.7.0ui/package.json
npmreact-helmet^6.1.0ui/package.json
npmreact-hot-loader^3.1.3ui/package.json
npmreact-moment^1.1.3ui/package.json
npmreact-paginate^8.2.0ui/package.json
npmreact-router^5.3.4ui/package.json
npmreact-router-dom^5.3.4ui/package.json
npmreact-svg-piechart^2.4.2ui/package.json
npmreact-virtualized^9.22.3ui/package.json
npmredoc^2.4.0ui/package.json
npmrxjs^6.6.6ui/package.json
npmsuperagent^8.1.2ui/package.json
npmtimezones-list3.0.1ui/package.json
npmtsx^3.4.0ui/package.json
npmunidiff^1.0.2ui/package.json
npmurl^0.11.0ui/package.json
npmxterm^4.19.0ui/package.json
npmxterm-addon-fit^0.5.0ui/package.json
Todas las dependencias no recopilado

No fue posible recopilar el conjunto de dependencias resuelto para este informe: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Informe JSON sin procesar legible por máquina
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": true,
      "size_kb": 204746,
      "has_wiki": true,
      "homepage": "https://hanzoai.github.io/deploy/",
      "languages": {
        "Go": 9792093,
        "CSS": 2209,
        "Lua": 336523,
        "HTML": 830,
        "SCSS": 123240,
        "Shell": 81437,
        "Makefile": 28585,
        "Mustache": 1066,
        "Procfile": 11009,
        "Starlark": 7746,
        "Dockerfile": 16598,
        "JavaScript": 11118,
        "TypeScript": 1721252
      },
      "pushed_at": "2026-07-23T03:33:46Z",
      "created_at": "2026-07-14T22:41:40Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-23T02:15:32Z",
      "description": "Declarative Continuous Deployment for Kubernetes",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "master",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Go",
      "significant_languages": [
        "Go",
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "https://hanzo.ai",
      "name": "Hanzo AI",
      "type": "Organization",
      "login": "hanzoai",
      "company": null,
      "location": "United States of America",
      "followers": 37,
      "avatar_url": "https://avatars.githubusercontent.com/u/16248274?v=4",
      "created_at": "2015-12-11T00:38:19Z",
      "is_verified": null,
      "public_repos": 129,
      "account_age_days": 3878
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": false
    },
    "activity": {
      "releases": [
        {
          "tag": "v3.5.0-rc2",
          "kind": "prerelease",
          "published_at": "2026-07-01T02:52:04Z"
        },
        {
          "tag": "v3.5.0-rc1",
          "kind": "prerelease",
          "published_at": "2026-06-16T12:09:17Z"
        },
        {
          "tag": "v3.4.5",
          "kind": "patch",
          "published_at": "2026-07-09T16:08:02Z"
        },
        {
          "tag": "v3.4.4",
          "kind": "patch",
          "published_at": "2026-06-18T08:42:03Z"
        },
        {
          "tag": "v3.4.3",
          "kind": "patch",
          "published_at": "2026-05-28T11:30:41Z"
        },
        {
          "tag": "v3.4.2",
          "kind": "patch",
          "published_at": "2026-05-12T20:31:52Z"
        },
        {
          "tag": "v3.4.1",
          "kind": "patch",
          "published_at": "2026-05-06T07:46:04Z"
        },
        {
          "tag": "v3.4.0",
          "kind": "minor",
          "published_at": "2026-05-05T06:48:22Z"
        },
        {
          "tag": "v3.4.0-rc7",
          "kind": "prerelease",
          "published_at": "2026-04-30T17:22:49Z"
        },
        {
          "tag": "v3.4.0-rc6",
          "kind": "prerelease",
          "published_at": "2026-04-21T17:15:41Z"
        },
        {
          "tag": "v3.4.0-rc5",
          "kind": "prerelease",
          "published_at": "2026-04-16T16:03:47Z"
        },
        {
          "tag": "v3.4.0-rc4",
          "kind": "prerelease",
          "published_at": "2026-03-27T13:24:20Z"
        },
        {
          "tag": "v3.4.0-rc3",
          "kind": "prerelease",
          "published_at": "2026-03-25T13:46:13Z"
        },
        {
          "tag": "v3.4.0-rc2",
          "kind": "prerelease",
          "published_at": "2026-03-19T23:00:49Z"
        },
        {
          "tag": "v3.4.0-rc1",
          "kind": "prerelease",
          "published_at": "2026-03-16T10:43:12Z"
        },
        {
          "tag": "v3.3.12",
          "kind": "patch",
          "published_at": "2026-06-18T08:41:43Z"
        },
        {
          "tag": "v3.3.11",
          "kind": "patch",
          "published_at": "2026-05-28T11:30:58Z"
        },
        {
          "tag": "v3.3.10",
          "kind": "patch",
          "published_at": "2026-05-12T20:32:06Z"
        },
        {
          "tag": "v3.3.9",
          "kind": "patch",
          "published_at": "2026-04-30T17:22:27Z"
        },
        {
          "tag": "v3.3.8",
          "kind": "patch",
          "published_at": "2026-04-21T17:15:27Z"
        },
        {
          "tag": "v3.3.7",
          "kind": "patch",
          "published_at": "2026-04-16T11:00:45Z"
        },
        {
          "tag": "v3.3.6",
          "kind": "patch",
          "published_at": "2026-03-27T13:36:58Z"
        },
        {
          "tag": "v3.3.5",
          "kind": "patch",
          "published_at": "2026-03-25T13:52:26Z"
        },
        {
          "tag": "v3.3.4",
          "kind": "patch",
          "published_at": "2026-03-16T10:51:36Z"
        },
        {
          "tag": "v3.3.3",
          "kind": "patch",
          "published_at": "2026-03-09T15:25:28Z"
        },
        {
          "tag": "v3.3.2",
          "kind": "patch",
          "published_at": "2026-02-22T12:29:30Z"
        },
        {
          "tag": "v3.3.1",
          "kind": "patch",
          "published_at": "2026-02-18T11:39:12Z"
        },
        {
          "tag": "v3.3.0",
          "kind": "minor",
          "published_at": "2026-02-02T07:24:38Z"
        },
        {
          "tag": "v3.3.0-rc4",
          "kind": "prerelease",
          "published_at": "2026-01-22T19:35:38Z"
        },
        {
          "tag": "v3.3.0-rc3",
          "kind": "prerelease",
          "published_at": "2025-12-18T23:03:58Z"
        },
        {
          "tag": "v3.3.0-rc2",
          "kind": "prerelease",
          "published_at": "2025-12-17T17:55:58Z"
        },
        {
          "tag": "v3.3.0-rc1",
          "kind": "prerelease",
          "published_at": "2025-12-15T16:47:04Z"
        },
        {
          "tag": "v3.2.12",
          "kind": "patch",
          "published_at": "2026-05-13T01:47:31Z"
        },
        {
          "tag": "v3.2.11",
          "kind": "patch",
          "published_at": "2026-04-30T17:24:29Z"
        },
        {
          "tag": "v3.2.10",
          "kind": "patch",
          "published_at": "2026-04-21T17:15:11Z"
        },
        {
          "tag": "v3.2.9",
          "kind": "patch",
          "published_at": "2026-04-16T11:01:44Z"
        },
        {
          "tag": "v3.2.8",
          "kind": "patch",
          "published_at": "2026-03-25T21:13:13Z"
        },
        {
          "tag": "v3.2.7",
          "kind": "patch",
          "published_at": "2026-02-18T12:35:48Z"
        },
        {
          "tag": "v3.2.6",
          "kind": "patch",
          "published_at": "2026-01-22T19:34:29Z"
        },
        {
          "tag": "v3.2.5",
          "kind": "patch",
          "published_at": "2026-01-14T16:10:41Z"
        },
        {
          "tag": "v3.2.4",
          "kind": "patch",
          "published_at": "2026-01-13T12:00:42Z"
        },
        {
          "tag": "v3.2.3",
          "kind": "patch",
          "published_at": "2025-12-24T12:06:14Z"
        },
        {
          "tag": "v3.2.2",
          "kind": "patch",
          "published_at": "2025-12-18T09:39:51Z"
        },
        {
          "tag": "v3.2.1",
          "kind": "patch",
          "published_at": "2025-11-30T11:37:38Z"
        },
        {
          "tag": "v3.2.0",
          "kind": "minor",
          "published_at": "2025-11-04T14:50:07Z"
        },
        {
          "tag": "v3.2.0-rc4",
          "kind": "prerelease",
          "published_at": "2025-10-20T21:13:42Z"
        },
        {
          "tag": "v3.2.0-rc3",
          "kind": "prerelease",
          "published_at": "2025-10-07T17:33:02Z"
        },
        {
          "tag": "v3.2.0-rc2",
          "kind": "prerelease",
          "published_at": "2025-09-30T15:32:15Z"
        },
        {
          "tag": "v3.2.0-rc1",
          "kind": "prerelease",
          "published_at": "2025-09-16T13:37:35Z"
        },
        {
          "tag": "v3.1.16",
          "kind": "patch",
          "published_at": "2026-05-05T06:51:06Z"
        },
        {
          "tag": "v3.1.15",
          "kind": "patch",
          "published_at": "2026-04-21T17:14:30Z"
        },
        {
          "tag": "v3.1.14",
          "kind": "patch",
          "published_at": "2026-04-16T11:01:17Z"
        },
        {
          "tag": "v3.1.13",
          "kind": "patch",
          "published_at": "2026-03-25T14:18:08Z"
        },
        {
          "tag": "v3.1.12",
          "kind": "patch",
          "published_at": "2026-01-22T19:34:09Z"
        },
        {
          "tag": "v3.1.11",
          "kind": "patch",
          "published_at": "2026-01-13T11:03:04Z"
        },
        {
          "tag": "v3.1.10",
          "kind": "patch",
          "published_at": "2025-12-24T11:43:56Z"
        },
        {
          "tag": "v3.1.9",
          "kind": "patch",
          "published_at": "2025-10-17T21:33:09Z"
        },
        {
          "tag": "v3.1.8",
          "kind": "patch",
          "published_at": "2025-09-30T15:29:59Z"
        },
        {
          "tag": "v3.1.7",
          "kind": "patch",
          "published_at": "2025-09-22T22:15:25Z"
        },
        {
          "tag": "v3.1.6",
          "kind": "patch",
          "published_at": "2025-09-18T16:28:14Z"
        },
        {
          "tag": "v3.1.5",
          "kind": "patch",
          "published_at": "2025-09-10T15:30:13Z"
        },
        {
          "tag": "v3.1.4",
          "kind": "patch",
          "published_at": "2025-09-05T18:56:15Z"
        },
        {
          "tag": "v3.1.3",
          "kind": "patch",
          "published_at": "2025-09-04T17:30:54Z"
        },
        {
          "tag": "v3.1.2",
          "kind": "patch",
          "published_at": "2025-09-04T15:45:55Z"
        },
        {
          "tag": "v3.1.1",
          "kind": "patch",
          "published_at": "2025-08-25T15:30:18Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2025-08-13T20:36:22Z"
        },
        {
          "tag": "v3.1.0-rc4",
          "kind": "prerelease",
          "published_at": "2025-07-25T17:34:10Z"
        },
        {
          "tag": "v3.1.0-rc3",
          "kind": "prerelease",
          "published_at": "2025-07-11T17:59:43Z"
        },
        {
          "tag": "v3.1.0-rc2",
          "kind": "prerelease",
          "published_at": "2025-07-09T17:56:43Z"
        },
        {
          "tag": "v3.1.0-rc1",
          "kind": "prerelease",
          "published_at": "2025-06-23T16:07:29Z"
        },
        {
          "tag": "v3.0.23",
          "kind": "patch",
          "published_at": "2026-01-22T19:33:36Z"
        },
        {
          "tag": "v3.0.22",
          "kind": "patch",
          "published_at": "2026-01-13T18:38:15Z"
        },
        {
          "tag": "v3.0.21",
          "kind": "patch",
          "published_at": "2026-01-01T09:15:34Z"
        },
        {
          "tag": "v3.0.20",
          "kind": "patch",
          "published_at": "2025-10-17T21:32:53Z"
        },
        {
          "tag": "v3.0.19",
          "kind": "patch",
          "published_at": "2025-09-30T15:31:43Z"
        },
        {
          "tag": "v3.0.18",
          "kind": "patch",
          "published_at": "2025-09-22T22:18:02Z"
        },
        {
          "tag": "v3.0.17",
          "kind": "patch",
          "published_at": "2025-09-18T14:19:24Z"
        },
        {
          "tag": "v3.0.16",
          "kind": "patch",
          "published_at": "2025-09-05T20:30:36Z"
        },
        {
          "tag": "v3.0.15",
          "kind": "patch",
          "published_at": "2025-09-04T17:31:09Z"
        },
        {
          "tag": "v3.0.14",
          "kind": "patch",
          "published_at": "2025-09-04T15:48:39Z"
        },
        {
          "tag": "v3.0.13",
          "kind": "patch",
          "published_at": "2025-08-25T15:30:39Z"
        },
        {
          "tag": "v3.0.12",
          "kind": "patch",
          "published_at": "2025-07-25T17:35:18Z"
        },
        {
          "tag": "v3.0.11",
          "kind": "patch",
          "published_at": "2025-07-10T14:26:31Z"
        },
        {
          "tag": "v3.0.10",
          "kind": "patch",
          "published_at": "2025-07-09T17:56:56Z"
        },
        {
          "tag": "v3.0.9",
          "kind": "patch",
          "published_at": "2025-06-17T20:45:12Z"
        },
        {
          "tag": "v3.0.8",
          "kind": "patch",
          "published_at": "2025-06-17T15:53:16Z"
        },
        {
          "tag": "v3.0.7",
          "kind": "patch",
          "published_at": "2025-06-16T17:59:56Z"
        },
        {
          "tag": "v2.14.21",
          "kind": "patch",
          "published_at": "2025-11-04T14:56:45Z"
        },
        {
          "tag": "v2.14.20",
          "kind": "patch",
          "published_at": "2025-09-30T15:32:00Z"
        },
        {
          "tag": "v2.14.19",
          "kind": "patch",
          "published_at": "2025-09-22T22:14:10Z"
        },
        {
          "tag": "v2.14.18",
          "kind": "patch",
          "published_at": "2025-09-18T14:19:04Z"
        },
        {
          "tag": "v2.14.17",
          "kind": "patch",
          "published_at": "2025-09-04T17:31:21Z"
        },
        {
          "tag": "v2.14.16",
          "kind": "patch",
          "published_at": "2025-09-04T15:53:37Z"
        },
        {
          "tag": "v2.13.9",
          "kind": "patch",
          "published_at": "2025-09-04T17:30:39Z"
        },
        {
          "tag": "v2.12.13",
          "kind": "patch",
          "published_at": "2025-09-08T21:57:22Z"
        },
        {
          "tag": "v2.11.14",
          "kind": "patch",
          "published_at": "2025-09-08T21:57:18Z"
        },
        {
          "tag": "v2.10.20",
          "kind": "patch",
          "published_at": "2025-09-08T20:15:08Z"
        },
        {
          "tag": "v2.10.19",
          "kind": "patch",
          "published_at": "2025-09-08T18:52:18Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "7f2d7a9b56b471da40b30367c1000fa0fe8d765d",
          "body": "The CRD kind is Application, so apps.hanzo.ai reads naturally\n(applications/applicationsets/appprojects.apps.hanzo.ai). Flips the group\nconstant (pkg/apis/application/register.go), all annotation/label/finalizer\ndomains (tracking-id, installation-id, secret-type, refresh, hydrate,\nresources-finalizer, etc.), the node.Group check, and the 3 CRD manifests.\nModule path github.com/hanzoai/deploy and hanzocd-* object names unchanged.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "rebrand: API group deploy.hanzo.ai -> apps.hanzo.ai",
          "author_name": "z",
          "author_login": null,
          "committed_at": "2026-07-23T02:15:05Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "76540c85a1ce376f12de5a43c55acecb449d2b1f",
          "body": "The askpass server sets GIT_ASKPASS=hanzocd + ARGOCD_BINARY_NAME=argocd-git-ask-pass;\ncmd/main.go dispatches on ARGOCD_BINARY_NAME (env override) matched against\ncommon.CommandGitAskPass. The rebrand moved the constant to hanzocd-git-ask-pass but\nthis hardcoded override value stayed argocd-git-ask-p\n[…]\n exec a plugin 'argocd-Username...' -> git auth failed.\nPoint the override at hanzocd-git-ask-pass. No symlink needed (dispatch is env-driven).\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "rebrand: askpass binary-name dispatch override -> hanzocd-git-ask-pass",
          "author_name": "z",
          "author_login": null,
          "committed_at": "2026-07-23T01:22:22Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "1e3458b4a2de52b8c488f761f9f99c3c1d565273",
          "body": "…up, config dir, session issuer)\n\nThe git credential askpass hardcoded GIT_ASKPASS=argocd (util/askpass/server.go),\nbut the rebuilt image ships /usr/local/bin/hanzocd — so 'git fetch' failed with\n'cannot run argocd' -> 'could not read Username for github.com' -> repo-server\ncould not render manifests. Point it (and the web-terminal LookPath, CLI config\ndir, and session issuer) at hanzocd. This is the last runtime argocd binary ref.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "rebrand: runtime binary refs argocd -> hanzocd (git askpass, CLI look…",
          "author_name": "z",
          "author_login": null,
          "committed_at": "2026-07-23T01:09:19Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "3cf142517a3bcf1cf62ff54a16c5bbd9c6b3a5c6",
          "body": "Extends the served-surface sweep into controller/reposerver/applicationset/\ncommitserver/cmpserver/notification_controller/util/pkg: git commit author\nname (\"Argo CD\" -> \"Hanzo CD\"), TLS certificate Organization fields, user/API\nerror messages, and operator log banners. Identifiers, env vars, argocd-*\nnames, argoproj.io/argocd label values, and testdata/examples left intact.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "rebrand: white-label served surfaces in library packages -> Hanzo CD",
          "author_name": "zeekay",
          "author_login": "zeekay",
          "committed_at": "2026-07-23T00:58:58Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "c3fd37fbaed13835e97e3c7214b5e7e5e053e502",
          "body": "Sweep residual upstream brand from Hanzo-served surfaces (UI, CLI, API docs,\nnotifications). Imports, identifiers, env vars, and k8s object/command names\nare left intact.\n\n- UI: HelpIcon tooltips, help-page + cluster-management doc links ->\n  docs.hanzo.ai, login + sidebar logos -> hanzo-logo-white.\n[…]\nRGOCD_* env vars, argocd-* binary/command names, ArgoCD* Go identifiers,\nargoproj.io/argocd label values, argo-* CSS classes, k8s object names.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "rebrand: white-label served surfaces Argo CD -> Hanzo CD",
          "author_name": "zeekay",
          "author_login": "zeekay",
          "committed_at": "2026-07-23T00:56:24Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "5a79d357080f5ec39548bc481812d0555351cf45",
          "body": "The config-map/secret settings informer filtered on a HARDCODED literal\n'app.kubernetes.io/part-of=argocd' (util/settings/settings.go partOfArgoCDSelector\n+ isSettingsObject), not a common.go constant — so the rebuilt binary could not\ndiscover hanzocd-cm/hanzocd-secret labeled part-of=hanzocd and fa\n[…]\nigmap \"hanzocd-cm\" not found'. Point the selector + the admin cluster/repo\nsecret labels at part-of=hanzocd. Completes the operational rebrand.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "rebrand: settings informer selects part-of=hanzocd (not argocd)",
          "author_name": "z",
          "author_login": null,
          "committed_at": "2026-07-23T00:39:52Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "dc01380e634663ebcf8653b9459b9a533e92f6e9",
          "body": "…is fork)\n\nset-vars always emitted quay_image_name, so the quay docker/login-action ran with\nempty RELEASE_QUAY_* secrets → 'Username and password required' failed the build.\nEmpty quay_image_name skips the quay login and drops quay from TAGS; GHCR push\nuses github.actor + GITHUB_TOKEN (packages: write).\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci(image): GHCR-only build — drop quay tag/login (no quay creds on th…",
          "author_name": "z",
          "author_login": null,
          "committed_at": "2026-07-22T21:29:51Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "b5396726d3933eb4adff5bbeff27681ba0fe9239",
          "body": "…argocd-* names) (#3)\n\nThe API group was already deploy.hanzo.ai, but the operational layer still\nemitted upstream argocd naming, blending two brands on the live controller:\n\n- annotation/label/finalizer domain argocd.argoproj.io -> deploy.hanzo.ai\n  (tracking-id, installation-id, secret-type, refre\n[…]\nlayout, Docker build-stage aliases,\nbuild-target names, and the runtime uid. These are invisible to ops/kubectl.\n\nCo-authored-by: z <z@hanzo.ai>\nCo-authored-by: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "rebrand: finish hanzocd operational layer (drop argocd.argoproj.io + …",
          "author_name": "z",
          "author_login": "zeekay",
          "committed_at": "2026-07-22T21:23:49Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3f7e1cc8f4c39860192de21bee5a81611be7c955",
          "body": "…hanzo.ai (#1)\n\n* feat(api): hard-fork CRD API group argoproj.io -> deploy.hanzo.ai\n\nHanzo CD hard-fork, phase 1.1. Single source of truth is\npkg/apis/application/register.go's Group constant (Application/AppProject/\nApplicationSet all derive their FullName from it); every other Go call-site\nthat ha\n[…]\nh are accurate historical/test-data\nreferences, not stale self-references.\n\nClaude-Session: https://claude.ai/code/session_015Z1iLf7QBrq1LhignJrzDw\n\n---------\n\nCo-authored-by: Hanzo Dev <dev@hanzo.ai>",
          "is_bot": false,
          "headline": "refactor(cd): hard-fork - rename CRD API group argoproj.io -> deploy.…",
          "author_name": "z",
          "author_login": "zeekay",
          "committed_at": "2026-07-19T18:27:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1ed43e6fbdac4d43bca33047ff3c3b6afd08e0fc",
          "body": "…ochrome dashboard SPA on hanzoai/spa)",
          "is_bot": false,
          "headline": "ci(deploy): register cd-ui workflow (builds ghcr.io/hanzoai/cd-ui mon…",
          "author_name": "z",
          "author_login": "zeekay",
          "committed_at": "2026-07-18T21:22:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f9e7daf12c175bf7a151edca47582927f2a45be9",
          "body": "…/deploy-ui-embed monochrome UI)",
          "is_bot": false,
          "headline": "ci(deploy): register deploy-ui-embed workflow (builds ghcr.io/hanzoai…",
          "author_name": "z",
          "author_login": "zeekay",
          "committed_at": "2026-07-18T19:41:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ee2ae0cf42cc5501eb957e3648f66beb0e3008c",
          "body": "…619)\n\nSigned-off-by: Alexandre Gaudreault <alexandre_gaudreault@intuit.com>",
          "is_bot": false,
          "headline": "fix(sync): reduce unnecessary sync operation caused by refreshes (#28…",
          "author_name": "Alexandre Gaudreault",
          "author_login": "agaudreault",
          "committed_at": "2026-07-14T19:58:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf8bdaa3a55bf4620198f0e9ec2ddb2555037213",
          "body": "… health bar (#28700)\n\nSigned-off-by: Molaryy <molaryyios@gmail.com>\nSigned-off-by: Jan Kučera <jankucera254@gmail.com>\nCo-authored-by: kuci-JK <jankucera254@gmail.com>",
          "is_bot": false,
          "headline": "fix: tooltips that are cut in half when the window is to small in the…",
          "author_name": "Mohammed J.",
          "author_login": "Molaryy",
          "committed_at": "2026-07-14T13:17:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fea95e66c423f71c393f1303dc6a2a85a858b5d5",
          "body": "… (#28645)\n\nSigned-off-by: Rick Brouwer <rickbrouwer@gmail.com>\nCo-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "fix(appset): fall back to create when patch returns NotFound (#17312)…",
          "author_name": "Rick Brouwer",
          "author_login": "rickbrouwer",
          "committed_at": "2026-07-14T13:01:02Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "7fe7110f65a16f0bd2ee6ac8a4ea5535ea684228",
          "body": "…s (#28699)\n\nSigned-off-by: choejwoo <jaewoo45@gmail.com>",
          "is_bot": false,
          "headline": "fix: return InvalidArgument for non-existent app path in GetAppDetail…",
          "author_name": "Jaewoo Choi",
          "author_login": "choejwoo",
          "committed_at": "2026-07-14T12:35:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1afe1eb93814e8d62ce7073bada3ace638ca84fb",
          "body": "Signed-off-by: Alexandre Gaudreault <alexandre_gaudreault@intuit.com>",
          "is_bot": false,
          "headline": "chore: do not update app object in indexer (#28705)",
          "author_name": "Alexandre Gaudreault",
          "author_login": "agaudreault",
          "committed_at": "2026-07-14T11:37:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dcdf8e4026450611d23077271705a44a9f21d10b",
          "body": "Signed-off-by: choejwoo <jaewoo45@gmail.com>",
          "is_bot": false,
          "headline": "feat: add clear all button to ApplicationSet filters (#28593)",
          "author_name": "Jaewoo Choi",
          "author_login": "choejwoo",
          "committed_at": "2026-07-14T11:09:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dcf03494eff98102a44ea10f1a66d80b8644b948",
          "body": "Signed-off-by: Aditya Raj <adityaraj10600@gmail.com>\nCo-authored-by: Nitish Kumar <justnitish06@gmail.com>\nCo-authored-by: Pasha Kostohrys <pasha.kostohrys@gmail.com>",
          "is_bot": false,
          "headline": "fix(UI): display sync option dropdowns on separate lines (#28438)",
          "author_name": "Aditya Raj",
          "author_login": "adityaraj178",
          "committed_at": "2026-07-14T10:40:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c38a6a680f9c28a2a46717d6f3b653e4aa7f1b2",
          "body": "Signed-off-by: choejwoo <jaewoo45@gmail.com>",
          "is_bot": false,
          "headline": "fix(ui): vertical alignment of application tile content (#28412)",
          "author_name": "Jaewoo Choi",
          "author_login": "choejwoo",
          "committed_at": "2026-07-14T10:40:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7a1da579b8f7bc07d671d23b341d67ee958fcf2e",
          "body": "Signed-off-by: RealFakeAccount <63186767+RealFakeAccount@users.noreply.github.com>",
          "is_bot": false,
          "headline": "ci: harden gitops-engine tag step to use GITHUB_REF_NAME (#28706)",
          "author_name": "RealFakeAccount",
          "author_login": "RealFakeAccount",
          "committed_at": "2026-07-14T07:43:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "494b13848f551707256366068b411668c844ca0d",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump the aws-sdk-v2 group with 5 updates (#28710)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-14T07:04:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8bad8aab63b2feb81ca2b1773035116cc9360eb",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/setup-node from 6.4.0 to 7.0.0 (#28709)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-14T07:03:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b1a0e3d782beb0a6cf47968f4675b4bc684c7da5",
          "body": "…ver (#28698)\n\nSigned-off-by: nitishfy <justnitish06@gmail.com>",
          "is_bot": false,
          "headline": "fix(repo-server): honor `ARGOCD_REPO_SERVER_OTLP_HEADERS` in repo-ser…",
          "author_name": "Nitish Kumar",
          "author_login": "nitishfy",
          "committed_at": "2026-07-13T21:22:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2b719ad65d7b09002e0b17b8f1bdf8640c6e7e8",
          "body": "Signed-off-by: Blake Pettersson <blake.pettersson@gmail.com>",
          "is_bot": false,
          "headline": "feat(otel): add spans with configurable sampling (#28396)",
          "author_name": "Blake Pettersson",
          "author_login": "blakepettersson",
          "committed_at": "2026-07-13T17:51:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3fcc10ac46b6dcb2b011e42f83430b8f69066a03",
          "body": "Signed-off-by: Jan Kučera <jankucera254@gmail.com>",
          "is_bot": false,
          "headline": "test: Remove t.Parallel() from test checking stderr output (#28652)",
          "author_name": "kuci-JK",
          "author_login": "kuci-JK",
          "committed_at": "2026-07-13T15:20:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7043070e5fe69cedc58cea60a1b3659898faf573",
          "body": "Signed-off-by: Akanksha Trehun <akankshatrehun@gmail.com>\nSigned-off-by: Nitish Kumar <justnitish06@gmail.com>\nCo-authored-by: Nitish Kumar <justnitish06@gmail.com>",
          "is_bot": false,
          "headline": "chore: fix typos in code comments and documentation (#28682)",
          "author_name": "Akanksha Trehun",
          "author_login": "magic-peach",
          "committed_at": "2026-07-13T12:16:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1af0be15cdd69d0b237cbaf4f9ba9440d0334ab2",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump oras.land/oras-go/v2 from 2.6.1 to 2.6.2 (#28696)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-13T10:13:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8b9adadb4146c5e02e0a41a9fe39b43672907aef",
          "body": "…#28697)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump renovatebot/github-action from 46.1.18 to 46.1.19 (…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-13T09:07:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "49b779344abe7245f7c8f680485d9ce8a9c90409",
          "body": "Signed-off-by: Nikhil Jathar <22786232+mailnike@users.noreply.github.com>",
          "is_bot": false,
          "headline": "docs: fix broken sealed-secrets Helm repoURL in examples (#28683)",
          "author_name": "Nikhil J",
          "author_login": "mailnike",
          "committed_at": "2026-07-12T11:49:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "992d6878054ad37d212ae29245e12ccdc12dfe2e",
          "body": "Signed-off-by: Akanksha Trehun <akankshatrehun@gmail.com>",
          "is_bot": false,
          "headline": "fix: correct variable expansion in Makefile and typo in .snyk (#28674)",
          "author_name": "Akanksha Trehun",
          "author_login": "magic-peach",
          "committed_at": "2026-07-12T11:47:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "523ae9d9d26142e391e27d3fb61828a5b93bca9b",
          "body": "…9) (#27777)\n\nSigned-off-by: ris-tlp <omarkhantlp@gmail.com>",
          "is_bot": false,
          "headline": "fix: use OIDC refresh tokens to renew expired sessions (#27041, #1218…",
          "author_name": "Omar",
          "author_login": "ris-tlp",
          "committed_at": "2026-07-12T11:04:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "79e1229469403a4e9cbab5043f9128948711a330",
          "body": "Signed-off-by: Alexandre Gaudreault <alexandre_gaudreault@intuit.com>",
          "is_bot": false,
          "headline": "feat: add which resources caused the app health to change (#28455)",
          "author_name": "Alexandre Gaudreault",
          "author_login": "agaudreault",
          "committed_at": "2026-07-10T17:28:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "abe9a37fbea70f99569df7959d149824762827d8",
          "body": "…tions (#28679)\n\nSigned-off-by: Akanksha Trehun <akankshatrehun@gmail.com>",
          "is_bot": false,
          "headline": "docs: fix missing word in SECURITY.md vulnerability reporting instruc…",
          "author_name": "Akanksha Trehun",
          "author_login": "magic-peach",
          "committed_at": "2026-07-10T13:19:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4af7b5d899b995414cdd99d2283ed52d82753fac",
          "body": "Signed-off-by: Akanksha Trehun <akankshatrehun@gmail.com>",
          "is_bot": false,
          "headline": "docs: fix grammatical error in CI troubleshooting documentation (#28680)",
          "author_name": "Akanksha Trehun",
          "author_login": "magic-peach",
          "committed_at": "2026-07-10T12:20:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "55cf4ce7d8cf8e3ede2692985254a7996ef9f144",
          "body": "Signed-off-by: Akanksha Trehun <akankshatrehun@gmail.com>",
          "is_bot": false,
          "headline": "docs: fix typos in documentation and CI stale workflow (#28672)",
          "author_name": "Akanksha Trehun",
          "author_login": "magic-peach",
          "committed_at": "2026-07-10T11:17:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6774c9aef2b3cfd08343be8fde202cedcc76d9f3",
          "body": "Signed-off-by: Akanksha Trehun <akankshatrehun@gmail.com>",
          "is_bot": false,
          "headline": "docs: fix typos and grammar in documentation (#28673)",
          "author_name": "Akanksha Trehun",
          "author_login": "magic-peach",
          "committed_at": "2026-07-10T10:58:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "114cde4dd336ff398871dcb1418258d5dcae2748",
          "body": "…#28656)\n\nSigned-off-by: Akanksha Trehun <akankshatrehun@gmail.com>\nSigned-off-by: Akanksha Trehun <146705736+magic-peach@users.noreply.github.com>\nCo-authored-by: Nitish Kumar <justnitish06@gmail.com>",
          "is_bot": false,
          "headline": "fix: use Entra ID uti claim as token id when jti is absent (#28625) (…",
          "author_name": "Akanksha Trehun",
          "author_login": "magic-peach",
          "committed_at": "2026-07-10T10:51:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aeda334c73e682fa2ea0ea0b0a93766e9ebf42a8",
          "body": "Signed-off-by: Blake Pettersson <blake.pettersson@gmail.com>",
          "is_bot": false,
          "headline": "fix(progressivesync): check if error == notfound (#28663)",
          "author_name": "Blake Pettersson",
          "author_login": "blakepettersson",
          "committed_at": "2026-07-10T09:06:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "40931a3d3ae4979a042332f5444d83b6885b6a25",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/stale from 10.3.0 to 10.4.0 (#28664)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-10T04:13:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "df18a45d3c307cd5fa3e4b6aed85d2030c2c1a42",
          "body": "Signed-off-by: Michael Crenshaw <350466+crenshaw-dev@users.noreply.github.com>",
          "is_bot": false,
          "headline": "chore(ci): dependabot groups for golang.org/x and codeql (#28651)",
          "author_name": "Michael Crenshaw",
          "author_login": "crenshaw-dev",
          "committed_at": "2026-07-09T16:40:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4fd5f8bd183e06541d1c644e5e0ba3bf0a0e77cd",
          "body": "…Error (#25775)\n\nSigned-off-by: Cecil Wöbker <me@cwoebker.com>",
          "is_bot": false,
          "headline": "fix: incorrect GitHub path in TestGitHubListReturnsRepositoryNotFound…",
          "author_name": "Cecil Wöbker",
          "author_login": "cwoebker",
          "committed_at": "2026-07-09T14:18:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "244235d758fad78bd67942e9d23e55ce6f9297f7",
          "body": "…est-e2e` (#28579) (#28578)\n\nSigned-off-by: Eugene Doudine <eugene.doudine@octopus.com>",
          "is_bot": false,
          "headline": "test(hydrator): fix hydrator e2e tests failures when run with `make t…",
          "author_name": "dudinea",
          "author_login": "dudinea",
          "committed_at": "2026-07-09T12:19:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "349e35411bd1de56224e020993d6c561f543b706",
          "body": "…37.0 (#28635)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github/codeql-action/upload-sarif from 4.36.3 to 4.…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T09:16:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "648e73e99e96a4a04f312beaf9e2397645d55ff0",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/checkout from 6.0.2 to 7.0.0 (#28637)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T08:21:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "639b1e75be5a1998577b8942240cce265bb49d45",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump golang.org/x/net from 0.56.0 to 0.57.0 (#28640)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T08:20:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5f7eeb992386e04c19e11eb614f4caa9cede398",
          "body": "…8636)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github/codeql-action/init from 4.36.3 to 4.37.0 (#2…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T08:19:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "17ccbdf0e4c016572c7db6d46ee3ed1a72cf0918",
          "body": "…(#28643)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github.com/coreos/go-oidc/v3 from 3.19.0 to 3.20.0 …",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T07:19:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fe39b236d561f96f5c48483f482a1b33be27aa11",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump the aws-sdk-v2 group with 2 updates (#28639)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T06:22:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d66ebb4e55360cf058fb29db49fa7a66faaf6186",
          "body": "Signed-off-by: Rishabh Pandey <32699563+allexistence@users.noreply.github.com>",
          "is_bot": false,
          "headline": "docs: fix minor typos in bug triage guidelines (#28634)",
          "author_name": "Rishabh Pandey",
          "author_login": "allexistence",
          "committed_at": "2026-07-09T06:22:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "207e2ba397f12ed965babc785abba66851d8ed59",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump golang.org/x/term from 0.44.0 to 0.45.0 (#28642)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T06:19:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e8ea39ca215a7f4c4df2d159dc3a88a8e60d994",
          "body": "Signed-off-by: Michael Crenshaw <350466+crenshaw-dev@users.noreply.github.com>\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(ci): enable Zizmor to enforce secure config (#27304)",
          "author_name": "Michael Crenshaw",
          "author_login": "crenshaw-dev",
          "committed_at": "2026-07-08T18:07:04Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "f5ba2794fb570d0f733ad37e229d331b874b1b44",
          "body": "Signed-off-by: Rishabh Pandey <32699563+allexistence@users.noreply.github.com>",
          "is_bot": false,
          "headline": "docs: Fix minor typo in API authorization documentation (#28633)",
          "author_name": "Rishabh Pandey",
          "author_login": "allexistence",
          "committed_at": "2026-07-08T17:03:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "956b479ef59fad0b70fd0fd2856420e75c52990f",
          "body": "Signed-off-by: rumstead <37445536+rumstead@users.noreply.github.com>",
          "is_bot": false,
          "headline": "ci(gitops-engine): support tagged releases for gitops-engine (#27740)",
          "author_name": "rumstead",
          "author_login": "rumstead",
          "committed_at": "2026-07-08T15:26:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74d0f9207b670a41f0a0f4a337c8217b5c363a3c",
          "body": "Signed-off-by: choejwoo <jaewoo45@gmail.com>",
          "is_bot": false,
          "headline": "fix: return InvalidArgument for invalid repo URL in ListRefs (#28631)",
          "author_name": "Jaewoo Choi",
          "author_login": "choejwoo",
          "committed_at": "2026-07-08T14:58:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2059770487d0a73a767eafb7761a34b88383d8f",
          "body": "Signed-off-by: argoproj-renovate[bot] <161757507+argoproj-renovate[bot]@users.noreply.github.com>\nCo-authored-by: argoproj-renovate[bot] <161757507+argoproj-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): update group golang to v1.26.5 (#28628)",
          "author_name": "argoproj-renovate[bot]",
          "author_login": "argoproj-renovate[bot]",
          "committed_at": "2026-07-08T13:16:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3d7df262202470ab0dc2848541fc15501007b659",
          "body": "Signed-off-by: Michael Crenshaw <350466+crenshaw-dev@users.noreply.github.com>\nCo-authored-by: Blake Pettersson <blake.pettersson@gmail.com>",
          "is_bot": false,
          "headline": "chore(refactor): remove dupe type (#28617)",
          "author_name": "Michael Crenshaw",
          "author_login": "crenshaw-dev",
          "committed_at": "2026-07-08T09:59:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a79a2ea9eebeb8bac44f9d782cb1b3fd871d77d",
          "body": "Signed-off-by: Michael Crenshaw <350466+crenshaw-dev@users.noreply.github.com>",
          "is_bot": false,
          "headline": "chore(ci): automate Dex bumps (#28612)",
          "author_name": "Michael Crenshaw",
          "author_login": "crenshaw-dev",
          "committed_at": "2026-07-08T09:52:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18e1c065ba10495ed795c71dad8aa044b97ccffe",
          "body": "Signed-off-by: argoproj-renovate[bot] <161757507+argoproj-renovate[bot]@users.noreply.github.com>\nCo-authored-by: argoproj-renovate[bot] <161757507+argoproj-renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): update dependency pymdown-extensions to v11.0.1 (#28627)",
          "author_name": "argoproj-renovate[bot]",
          "author_login": "argoproj-renovate[bot]",
          "committed_at": "2026-07-08T09:24:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76eb1da6ecb31f329a44edca846781b602bf6f55",
          "body": "Signed-off-by: Oliver Gondža <ogondza@gmail.com>",
          "is_bot": false,
          "headline": "chore: Remove accidentally committed test file (#28626)",
          "author_name": "Oliver Gondža",
          "author_login": "olivergondza",
          "committed_at": "2026-07-08T08:53:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "91081237988bb21069d663b38138ed239914d81c",
          "body": "…6.4.2 (#28622)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump sigs.k8s.io/structured-merge-diff/v6 from 6.4.1 to …",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-08T08:20:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b0da1145147108e4843c08c5d591133289acd9d7",
          "body": "…#28621)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump step-security/harden-runner from 2.19.4 to 2.20.0 (…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-08T08:18:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec1e2a93157e64d9981545e645451ff2a31e0ab5",
          "body": "Signed-off-by: Michael Crenshaw <350466+crenshaw-dev@users.noreply.github.com>",
          "is_bot": false,
          "headline": "test: fix flake in cluster cache test (#28618)",
          "author_name": "Michael Crenshaw",
          "author_login": "crenshaw-dev",
          "committed_at": "2026-07-07T21:49:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59ea458a7771f04b6a16f160482f9a856edfc679",
          "body": "Signed-off-by: Julie Vogelman <julie_vogelman@intuit.com>\nCo-authored-by: Blake Pettersson <blake.pettersson@gmail.com>",
          "is_bot": false,
          "headline": "fix: lua script for Pipeline not to use strings library (#28602)",
          "author_name": "Julie Vogelman",
          "author_login": "juliev0",
          "committed_at": "2026-07-07T20:47:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "09b2595a495826de1671ca9befa1214d78f2f543",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Blake Pettersson <blake.pettersson@gmail.com>",
          "is_bot": true,
          "headline": "chore(deps): bump the aws-sdk-v2 group with 5 updates (#28603)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-07T13:53:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e841eb36f3eb459dcafd6c5b68e666684f75796",
          "body": "…6.4.1 (#28604)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Blake Pettersson <blake.pettersson@gmail.com>",
          "is_bot": true,
          "headline": "chore(deps): bump sigs.k8s.io/structured-merge-diff/v6 from 6.4.0 to …",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-07T13:22:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dcc635c353df4d3e8a7c5286e842a64f95752d76",
          "body": "Signed-off-by: Aditya Raj <adityaraj10600@gmail.com>",
          "is_bot": false,
          "headline": "fix: fix flaky tests (#28609)",
          "author_name": "Aditya Raj",
          "author_login": "adityaraj178",
          "committed_at": "2026-07-07T11:31:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "669b2f6564680b554fb805f02059dda7b3e2e793",
          "body": "Signed-off-by: Matthias Baur <m.baur@syseleven.de>",
          "is_bot": false,
          "headline": "chore: Update Redis to 8.6.4 (#28589)",
          "author_name": "Matthias Baur",
          "author_login": "baurmatt",
          "committed_at": "2026-07-07T05:22:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8dbd4a4a868bbf3b528b470a8582a22d573d6fd",
          "body": "chore: disable pause on a numaflow resource when owned by a numaplane resource",
          "is_bot": false,
          "headline": "Merge pull request #28538 from juliev0/pause-disable",
          "author_name": "Julie Vogelman",
          "author_login": "juliev0",
          "committed_at": "2026-07-06T17:11:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec3ebaa6415bc6486d0be2e143c95172ad3fde98",
          "body": "…ct-fixes\n\nchore(ui): fix Rules-of-React violations for React Compiler readiness",
          "is_bot": false,
          "headline": "Merge pull request #28417 from jwinters01/react-compiler-rules-of-rea…",
          "author_name": "jwinters01",
          "author_login": "jwinters01",
          "committed_at": "2026-07-06T17:09:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "db31394bc1a62324a2a0b85f9d18fe49fe6c7ae9",
          "body": "The react-hooks v7 (React Compiler) ESLint config enabled by this\nbranch flagged pre-existing errors across the UI that fail the build:\n\n- source-panel: ref writes inside a DropDownMenu click handler are\n  safe (run on interaction, not render) — scoped-disable react-hooks/refs\n- application-node-info: drop unused destructured managedFields binding\n- application-parameters, pod-terminal-viewer: prettier formatting\n\nSigned-off-by: Jonathan Winters <wintersjonathan0@gmail.com>",
          "is_bot": false,
          "headline": "chore(ui): fix lint errors surfaced by React Compiler ruleset",
          "author_name": "Jonathan Winters",
          "author_login": "jwinters01",
          "committed_at": "2026-07-06T16:51:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1990594a7ce6ed85dc0f03989d2e5d702792dcae",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'master' into react-compiler-rules-of-react-fixes",
          "author_name": "jwinters01",
          "author_login": "jwinters01",
          "committed_at": "2026-07-06T16:12:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9f858a457220b1a5272dfa3d7b2f3a0857f61203",
          "body": "…s-of-react-fixes\n\nSigned-off-by: Jonathan Winters <wintersjonathan0@gmail.com>\n\n# Conflicts:\n#\tui/src/app/applications/components/application-details/application-resource-list.tsx\n#\tui/src/app/applications/components/application-status-panel/application-status-panel.tsx",
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'origin/master' into react-compiler-rule…",
          "author_name": "Jonathan Winters",
          "author_login": "jwinters01",
          "committed_at": "2026-07-06T16:11:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c2df91b70ff69c24b1b5fc457e384fafab573544",
          "body": "…7573)\n\nSigned-off-by: Alexandre Gaudreault <alexandre_gaudreault@intuit.com>",
          "is_bot": false,
          "headline": "feat(impersonation): allow to disable strict enforcement (#27084) (#2…",
          "author_name": "Alexandre Gaudreault",
          "author_login": "agaudreault",
          "committed_at": "2026-07-06T15:12:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9cf8d7c125ac534aa58c1ee089fb48dbe80cd1d4",
          "body": null,
          "is_bot": false,
          "headline": "feat(ui): sidebar anchors (#28527)",
          "author_name": "Blake Pettersson",
          "author_login": "blakepettersson",
          "committed_at": "2026-07-06T10:59:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eced2caca4b15de259a4ee97249c86cd816634ba",
          "body": "Signed-off-by: nitishfy <justnitish06@gmail.com>",
          "is_bot": false,
          "headline": "test(repo-server): add tests to fetch git references (#28586)",
          "author_name": "Nitish Kumar",
          "author_login": "nitishfy",
          "committed_at": "2026-07-06T10:39:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8dc512ed01ccb9a878c8f5badbbaf527298bf88f",
          "body": "…#28581)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump renovatebot/github-action from 46.1.17 to 46.1.18 (…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T07:51:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9b87468de9ae3d9308f6d0ff65b7b01bfba6fb5a",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump docker/login-action from 4.3.0 to 4.4.0 (#28582)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T07:51:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f9d9f185c54612b98a3c0a3dde60faf8715e9a7",
          "body": "…36.3 (#28583)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github/codeql-action/upload-sarif from 4.36.2 to 4.…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T07:51:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3c5af0d9dc49a1c8f55fa2a32cc75eeacbea7d8b",
          "body": "…s server (#27643)\n\nSigned-off-by: SAY-5 <say.apm35@gmail.com>\nCo-authored-by: Pasha Kostohrys <pasha.kostohrys@gmail.com>",
          "is_bot": false,
          "headline": "fix(headless): enable SyncWithReplaceAllowed by default for in-proces…",
          "author_name": "Sai Asish Y",
          "author_login": "SAY-5",
          "committed_at": "2026-07-06T07:26:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f02203d06f4938b15bf3b43fcee2a074fab95ee0",
          "body": "…561)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump docker/setup-buildx-action from 4.1.0 to 4.2.0 (#28…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-05T22:33:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "773fcb2fa579663b514fb2d965d27972378a3bb5",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump docker/login-action from 4.2.0 to 4.3.0 (#28562)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-05T16:12:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5bf628ce64c70334fdadea1a11fb9a5a491fa0c",
          "body": "…3 (#28563)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github/codeql-action/autobuild from 4.36.2 to 4.36.…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-05T16:12:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8e5ba20f7a2449a254cc2a380c293099159da38",
          "body": "Signed-off-by: Patroklos Papapetrou <ppapapetrou76@gmail.com>\nSigned-off-by: Papapetrou Patroklos <1743100+ppapapetrou76@users.noreply.github.com>\nCo-authored-by: Nitish Kumar <justnitish06@gmail.com>",
          "is_bot": false,
          "headline": "feat: adds a server-proxy-url flag in cluster add command (#28134)",
          "author_name": "Papapetrou Patroklos",
          "author_login": "ppapapetrou76",
          "committed_at": "2026-07-05T08:31:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be23caeb356c2e9739a48d6d40761a47262d5cf9",
          "body": "…8565)\n\nSigned-off-by: handsome <handsome@handsomedeMacBook-Pro.local>\nCo-authored-by: handsome <handsome@handsomedeMacBook-Pro.local>\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "docs: clarify namespaceResourceWhitelist affects UI resource tree (#2…",
          "author_name": "handsome",
          "author_login": "lzb12",
          "committed_at": "2026-07-05T07:53:42Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "4761512f1cb1d828273d8a889e41fb1942414a4f",
          "body": "Signed-off-by: CI <ci@argoproj.com>\nCo-authored-by: CI <ci@argoproj.com>",
          "is_bot": true,
          "headline": "[Bot] docs: Update Snyk report (#28575)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-05T07:06:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0984033236c695ee20ae344c402fa0d30e8a30fd",
          "body": "Signed-off-by: suii2210 <work8758@gmail.com>\nSigned-off-by: Shruti Singh <work8758@gmail.com>\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: Papapetrou Patroklos <1743100+ppapapetrou76@users.noreply.github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Regina Voloshin <regina.voloshin@codefresh.io>",
          "is_bot": false,
          "headline": "feat: support REDIS_SENTINEL and REDIS_SENTINELMASTER env vars (#28391)",
          "author_name": "Shruti Singh",
          "author_login": "suii2210",
          "committed_at": "2026-07-05T07:06:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a817e9aac691c7309fb1e1599c467d932e9d564d",
          "body": "Signed-off-by: choejwoo <jaewoo45@gmail.com>",
          "is_bot": false,
          "headline": "fix(ui): update title in appset details page (#28529)",
          "author_name": "Jaewoo Choi",
          "author_login": "choejwoo",
          "committed_at": "2026-07-03T10:55:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "effa730fe4b62aa2c65b215f0755063ffa0b29ed",
          "body": "Signed-off-by: choejwoo <jaewoo45@gmail.com>",
          "is_bot": false,
          "headline": "fix(ui): update icon for consistency in appset list (#28528)",
          "author_name": "Jaewoo Choi",
          "author_login": "choejwoo",
          "committed_at": "2026-07-03T10:55:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "66c3591a05d179356e060763ef4189f70a31146a",
          "body": "…1 (#28560)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github.com/google/gnostic-models from 0.7.0 to 0.7.…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-03T10:46:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "63e1252ea1cf83e6d267e1d278f47428544e1f52",
          "body": "…mitation (#28555) (#28557)\n\nSigned-off-by: Michael Crenshaw <350466+crenshaw-dev@users.noreply.github.com>",
          "is_bot": false,
          "headline": "docs(hydrator): manifest-generate-paths and hydrator.metadata note li…",
          "author_name": "Michael Crenshaw",
          "author_login": "crenshaw-dev",
          "committed_at": "2026-07-02T23:25:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1b1c88439fe39bbf1f3d4e6d07d42072c3f82e3f",
          "body": "Signed-off-by: Jonathan Winters <wintersjonathan0@gmail.com>",
          "is_bot": false,
          "headline": "tie argo-ui to appropriate commit",
          "author_name": "Jonathan Winters",
          "author_login": "jwinters01",
          "committed_at": "2026-07-02T21:14:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "291bfab82175b7580165a7a11be282151eac0ad8",
          "body": "…leted (#28532)\n\nSigned-off-by: Julie Vogelman <julie_vogelman@intuit.com>",
          "is_bot": false,
          "headline": "feat(health): enable a Pipeline labeled 'recyclable-expired' to be de…",
          "author_name": "Julie Vogelman",
          "author_login": "juliev0",
          "committed_at": "2026-07-02T17:47:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8e3800cdf18588fe9da415ede5fd5562209aa87",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump docker/setup-qemu-action from 4.1.0 to 4.2.0 (#28535)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-02T16:18:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a14697c598120a667cb0cdfb0bdfe1f9db8e2959",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump docker/build-push-action from 7.2.0 to 7.3.0 (#28536)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-02T16:18:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c82ae30d81e8b449f5ce7faae0429bd7e3e29635",
          "body": "…ngine (#28540)\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump golang.org/x/net from 0.53.0 to 0.55.0 in /gitops-e…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-02T10:08:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d7efbae049ef822fa6f18d9cda60486c70898c8d",
          "body": "… (#28220)\n\nSigned-off-by: nitishfy <justnitish06@gmail.com>\nSigned-off-by: Nitish Kumar <justnitish06@gmail.com>\nSigned-off-by: Blake Pettersson <blake.pettersson@gmail.com>\nCo-authored-by: Blake Pettersson <blake.pettersson@gmail.com>",
          "is_bot": false,
          "headline": "fix: respect ignore differences for individual array elements in CRDs…",
          "author_name": "Nitish Kumar",
          "author_login": "nitishfy",
          "committed_at": "2026-07-02T08:04:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9abf4d4810e254ddeec695bd6ab45e04cb2d4a10",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump the aws-sdk-v2 group with 6 updates (#28537)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-02T05:48:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b49c22a5cbccb60cec855aeef465ee8949b91fe8",
          "body": "Signed-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump google.golang.org/grpc from 1.81.1 to 1.82.0 (#28525)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-01T07:57:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "82c4d4691401f9d21b163c2f83f4d87468b7f6b7",
          "body": "…ials (#28453) (#28510)\n\nSigned-off-by: Abhishek Kumar <abhishek22512@gmail.com>\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix: relogin with --argocd-context does not correctly persist credent…",
          "author_name": "Abhishek Kumar",
          "author_login": "octonawish-akcodes",
          "committed_at": "2026-07-01T06:58:58Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "7f84e8c911d052fc2a9ae9e25ceb8583b879e8d9",
          "body": "…ed-configuration (#28421) (#28440)\n\nSigned-off-by: Eugene Doudine <eugene.doudine@octopus.com>",
          "is_bot": false,
          "headline": "fix: fix failure on Sync of resources that do not fit into last-appli…",
          "author_name": "dudinea",
          "author_login": "dudinea",
          "committed_at": "2026-06-30T21:02:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 98,
      "commits_last_year": 2008,
      "latest_release_at": "2026-07-09T16:08:02Z",
      "latest_release_tag": "v3.4.5",
      "releases_from_tags": true,
      "days_since_last_push": 1,
      "active_weeks_last_year": 52,
      "days_since_latest_release": 15,
      "mean_days_between_releases": 8.8
    },
    "community": {
      "has_readme": false,
      "has_license": false,
      "has_description": false,
      "has_contributing": false,
      "health_percentage": null,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/hanzoai/deploy",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/hanzoai/deploy",
          "is_deprecated": false,
          "latest_version": "v1.8.7",
          "repository_url": "https://github.com/hanzoai/deploy",
          "versions_count": 143,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2021-03-03T07:02:37Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 1969
        },
        {
          "name": "github.com/hanzoai/deploy/gitops-engine",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/hanzoai/deploy/gitops-engine",
          "is_deprecated": false,
          "latest_version": "v0.7.2",
          "repository_url": "https://github.com/hanzoai/deploy",
          "versions_count": 1,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-18T15:57:17Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 6
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0,
        "collected_at": null
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "gitops-engine/Makefile",
        "test/remote/Makefile"
      ],
      "api_schema_files": [
        "assets/swagger.json",
        "cmpserver/plugin/plugin.proto",
        "commitserver/commit/commit.proto",
        "pkg/apis/application/v1alpha1/generated.proto",
        "reposerver/repository/repository.proto",
        "server/account/account.proto",
        "server/application/application.proto",
        "server/applicationset/applicationset.proto",
        "server/certificate/certificate.proto",
        "server/cluster/cluster.proto",
        "server/events/events.proto",
        "server/gpgkey/gpgkey.proto",
        "server/notification/notification.proto",
        "server/project/project.proto",
        "server/repocreds/repocreds.proto",
        "server/repository/repository.proto",
        "server/session/session.proto",
        "server/settings/oidc/claims.proto",
        "server/settings/settings.proto",
        "server/version/version.proto",
        "util/askpass/askpass.proto"
      ],
      "has_devcontainer": false,
      "typecheck_configs": [
        "ui/src/app/tsconfig.json",
        "ui/tsconfig.json"
      ],
      "toolchain_manifests": [
        "gitops-engine/go.mod",
        "go.mod",
        "hack/get-previous-release/go.mod"
      ],
      "largest_source_bytes": 1517316,
      "source_files_sampled": 1261,
      "oversized_source_files": 55,
      "agent_instruction_files": [
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 3818
    },
    "dependencies": {
      "manifests": [
        "docs/requirements.txt",
        "gitops-engine/go.mod",
        "go.mod",
        "ui/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "npm",
        "pypi"
      ],
      "dependencies": [
        {
          "name": "github.com/davecgh/go-spew",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.2-0.20180830191138-d8f796af33cc"
        },
        {
          "name": "github.com/evanphx/json-patch/v5",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.9.11"
        },
        {
          "name": "github.com/go-logr/logr",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.3"
        },
        {
          "name": "github.com/google/gnostic-models",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.1-0.20241114170450-2d3c2a9cc518"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "go.opentelemetry.io/otel",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.41.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.0"
        },
        {
          "name": "google.golang.org/protobuf",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.36.12-0.20260120151049-f2248ac996af"
        },
        {
          "name": "k8s.io/api",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/apiextensions-apiserver",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/apimachinery",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/cli-runtime",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/client-go",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/klog/v2",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.140.0"
        },
        {
          "name": "k8s.io/kube-aggregator",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/kube-openapi",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260317180543-43fb72c5454a"
        },
        {
          "name": "k8s.io/kubectl",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/kubernetes",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.36.1"
        },
        {
          "name": "sigs.k8s.io/structured-merge-diff/v6",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v6.3.2"
        },
        {
          "name": "sigs.k8s.io/yaml",
          "manifest": "gitops-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "code.gitea.io/sdk/gitea",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.25.1"
        },
        {
          "name": "dario.cat/mergo",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.2"
        },
        {
          "name": "github.com/Azure/azure-sdk-for-go/sdk/azcore",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.22.0"
        },
        {
          "name": "github.com/Azure/azure-sdk-for-go/sdk/azidentity",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.0"
        },
        {
          "name": "github.com/Azure/kubelogin",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.19"
        },
        {
          "name": "github.com/Masterminds/semver/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.4.0"
        },
        {
          "name": "github.com/Masterminds/sprig/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.3.0"
        },
        {
          "name": "github.com/TomOnTime/utfutil",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/alicebob/miniredis/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.38.0"
        },
        {
          "name": "github.com/argoproj/notifications-engine",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.5.1-0.20260503100631-0cff13b8a717"
        },
        {
          "name": "github.com/argoproj/pkg/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.1"
        },
        {
          "name": "github.com/aws/aws-sdk-go-v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.42.1"
        },
        {
          "name": "github.com/aws/aws-sdk-go-v2/config",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.32.30"
        },
        {
          "name": "github.com/aws/aws-sdk-go-v2/credentials",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.19.29"
        },
        {
          "name": "github.com/aws/aws-sdk-go-v2/service/codecommit",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.35.1"
        },
        {
          "name": "github.com/aws/aws-sdk-go-v2/service/resourcegroupstaggingapi",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.34.1"
        },
        {
          "name": "github.com/aws/aws-sdk-go-v2/service/sts",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.1"
        },
        {
          "name": "github.com/aws/smithy-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.27.3"
        },
        {
          "name": "github.com/bmatcuk/doublestar/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.10.0"
        },
        {
          "name": "github.com/bombsimon/logrusr/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.1.0"
        },
        {
          "name": "github.com/bradleyfalzon/ghinstallation/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.19.0"
        },
        {
          "name": "github.com/casbin/casbin/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.135.0"
        },
        {
          "name": "github.com/casbin/govaluate",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.0"
        },
        {
          "name": "github.com/cenkalti/backoff/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.0.3"
        },
        {
          "name": "github.com/cespare/xxhash/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.3.0"
        },
        {
          "name": "github.com/chainguard-dev/git-urls",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.2"
        },
        {
          "name": "github.com/coreos/go-oidc/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.20.0"
        },
        {
          "name": "github.com/cyphar/filepath-securejoin",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/dlclark/regexp2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.12.0"
        },
        {
          "name": "github.com/dustin/go-humanize",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.1"
        },
        {
          "name": "github.com/evanphx/json-patch",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.9.11+incompatible"
        },
        {
          "name": "github.com/expr-lang/expr",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.17.8"
        },
        {
          "name": "github.com/felixge/httpsnoop",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "github.com/fsnotify/fsnotify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.1"
        },
        {
          "name": "github.com/gfleury/go-bitbucket-v1",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240917142304-df385efaac68"
        },
        {
          "name": "github.com/go-git/go-git/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.19.1"
        },
        {
          "name": "github.com/go-jose/go-jose/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.1.4"
        },
        {
          "name": "github.com/go-logr/logr",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.3"
        },
        {
          "name": "github.com/go-openapi/loads",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.24.0"
        },
        {
          "name": "github.com/go-playground/webhooks/v6",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v6.4.0"
        },
        {
          "name": "github.com/go-redis/cache/v9",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v9.0.0"
        },
        {
          "name": "github.com/gobwas/glob",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.3"
        },
        {
          "name": "github.com/gogits/go-gogs-client",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20210131175652-1d7215cd8d85"
        },
        {
          "name": "github.com/gogo/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.2"
        },
        {
          "name": "github.com/golang-jwt/jwt/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.3.1"
        },
        {
          "name": "github.com/golang/groupcache",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20241129210726-2c02b8208cf8"
        },
        {
          "name": "github.com/golang/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.4"
        },
        {
          "name": "github.com/google/btree",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.3"
        },
        {
          "name": "github.com/google/gnostic-models",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.1"
        },
        {
          "name": "github.com/google/go-cmp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/google/go-github/v69",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v69.2.0"
        },
        {
          "name": "github.com/google/go-jsonnet",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.22.0"
        },
        {
          "name": "github.com/google/shlex",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20191202100458-e7afc7fbc510"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.1-0.20241114170450-2d3c2a9cc518"
        },
        {
          "name": "github.com/gorilla/handlers",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.2"
        },
        {
          "name": "github.com/gorilla/websocket",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.4-0.20250319132907-e064f32e3674"
        },
        {
          "name": "github.com/gosimple/slug",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.15.0"
        },
        {
          "name": "github.com/grpc-ecosystem/go-grpc-middleware/providers/prometheus",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "github.com/grpc-ecosystem/go-grpc-middleware/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.3.3"
        },
        {
          "name": "github.com/grpc-ecosystem/grpc-gateway",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.16.0"
        },
        {
          "name": "github.com/hanzoai/deploy/gitops-engine",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-00010101000000-000000000000"
        },
        {
          "name": "github.com/hashicorp/go-retryablehttp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.8"
        },
        {
          "name": "github.com/improbable-eng/grpc-web",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.15.1-0.20230209220825-1d9bbb09a099"
        },
        {
          "name": "github.com/itchyny/gojq",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.12.19"
        },
        {
          "name": "github.com/jarcoal/httpmock",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.1"
        },
        {
          "name": "github.com/jeremywohl/flatten",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.2-0.20211013061545-07e4a09fb8e4"
        },
        {
          "name": "github.com/kballard/go-shellquote",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20180428030007-95032a82bc51"
        },
        {
          "name": "github.com/ktrysmt/go-bitbucket",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.10.0"
        },
        {
          "name": "github.com/mattn/go-isatty",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.22"
        },
        {
          "name": "github.com/mattn/go-zglob",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.6"
        },
        {
          "name": "github.com/microsoft/azure-devops-go-api/azuredevops/v7",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v7.1.1-0.20241014080628-3045bdf43455"
        },
        {
          "name": "github.com/minio/blake2b-simd",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20160723061019-3f5f724cb5b1"
        },
        {
          "name": "github.com/oauth2-proxy/mockoidc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240214162133-caebfff84d25"
        },
        {
          "name": "github.com/olekukonko/tablewriter",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.4"
        },
        {
          "name": "github.com/opencontainers/go-digest",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/opencontainers/image-spec",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.1"
        },
        {
          "name": "github.com/patrickmn/go-cache",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.1.1-0.20191004192108-46f407853014+incompatible"
        },
        {
          "name": "github.com/prometheus/client_golang",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.23.2"
        },
        {
          "name": "github.com/prometheus/client_model",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.2"
        },
        {
          "name": "github.com/r3labs/diff/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.2"
        },
        {
          "name": "github.com/redis/go-redis/v9",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v9.21.0"
        },
        {
          "name": "github.com/robfig/cron/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.2-0.20210106135023-bc59245fe10e"
        },
        {
          "name": "github.com/sirupsen/logrus",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.9.4"
        },
        {
          "name": "github.com/skratchdot/open-golang",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20200116055534-eef842397966"
        },
        {
          "name": "github.com/soheilhy/cmux",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.5"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/spf13/pflag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.10"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/valyala/fasttemplate",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.2"
        },
        {
          "name": "github.com/yuin/gopher-lua",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.2"
        },
        {
          "name": "gitlab.com/gitlab-org/api/client-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.46.0"
        },
        {
          "name": "go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.69.0"
        },
        {
          "name": "go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.69.0"
        },
        {
          "name": "go.opentelemetry.io/otel",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.0"
        },
        {
          "name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.0"
        },
        {
          "name": "go.opentelemetry.io/otel/sdk",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.0"
        },
        {
          "name": "go.opentelemetry.io/otel/trace",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.44.0"
        },
        {
          "name": "go.yaml.in/yaml/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.4"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.54.0"
        },
        {
          "name": "golang.org/x/net",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.57.0"
        },
        {
          "name": "golang.org/x/oauth2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.22.0"
        },
        {
          "name": "golang.org/x/term",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.45.0"
        },
        {
          "name": "golang.org/x/time",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.15.0"
        },
        {
          "name": "google.golang.org/genproto/googleapis/api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260526163538-3dc84a4a5aaa"
        },
        {
          "name": "google.golang.org/grpc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.82.0"
        },
        {
          "name": "google.golang.org/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.36.12-0.20260120151049-f2248ac996af"
        },
        {
          "name": "gopkg.in/yaml.v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.4.0"
        },
        {
          "name": "k8s.io/api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/apiextensions-apiserver",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/apimachinery",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/client-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/code-generator",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/component-helpers",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/klog/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.140.0"
        },
        {
          "name": "k8s.io/kube-openapi",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260317180543-43fb72c5454a"
        },
        {
          "name": "k8s.io/kubectl",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/utils",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260210185600-b8788abfbbc2"
        },
        {
          "name": "layeh.com/gopher-json",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20190114024228-97fed8db8427"
        },
        {
          "name": "oras.land/oras-go/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.6.2"
        },
        {
          "name": "sigs.k8s.io/controller-runtime",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.24.1"
        },
        {
          "name": "sigs.k8s.io/structured-merge-diff/v6",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v6.4.2"
        },
        {
          "name": "sigs.k8s.io/yaml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/skeema/knownhosts",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.2"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "github.com/go-openapi/runtime/server-middleware",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.32.4"
        },
        {
          "name": "k8s.io/streaming",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "@fortawesome/fontawesome-free",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.7.2"
        },
        {
          "name": "@types/react-virtualized",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.21.21"
        },
        {
          "name": "@types/superagent",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^8.1.6"
        },
        {
          "name": "ansi-to-react",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.1.6"
        },
        {
          "name": "argo-ui",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "git+https://github.com/argoproj/argo-ui.git#ad616de862f60d5348fe41ccaa72d7b74f9c3a13"
        },
        {
          "name": "buffer",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.0.3"
        },
        {
          "name": "classnames",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.2.5"
        },
        {
          "name": "color",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.2.1"
        },
        {
          "name": "dagre",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.8.5"
        },
        {
          "name": "date-fns",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.30.0"
        },
        {
          "name": "deepmerge",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.3.1"
        },
        {
          "name": "foundation-sites",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.8.1"
        },
        {
          "name": "git-url-parse",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.1.0"
        },
        {
          "name": "history",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.7.2"
        },
        {
          "name": "js-yaml",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.1.1"
        },
        {
          "name": "json-merge-patch",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.2.3"
        },
        {
          "name": "lodash-es",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.18.1"
        },
        {
          "name": "minimatch",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.4"
        },
        {
          "name": "moment",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.29.4"
        },
        {
          "name": "monaco-editor",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.33.0"
        },
        {
          "name": "path",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.12.7"
        },
        {
          "name": "prop-types",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^15.8.1"
        },
        {
          "name": "react",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.0.0"
        },
        {
          "name": "react-autocomplete",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.8.1"
        },
        {
          "name": "react-diff-view",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "3.3.3"
        },
        {
          "name": "react-dom",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.0.0"
        },
        {
          "name": "react-ga",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.7.0"
        },
        {
          "name": "react-helmet",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.1.0"
        },
        {
          "name": "react-hot-loader",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.3"
        },
        {
          "name": "react-moment",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.3"
        },
        {
          "name": "react-paginate",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^8.2.0"
        },
        {
          "name": "react-router",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.3.4"
        },
        {
          "name": "react-router-dom",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.3.4"
        },
        {
          "name": "react-svg-piechart",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.2"
        },
        {
          "name": "react-virtualized",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.22.3"
        },
        {
          "name": "redoc",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.0"
        },
        {
          "name": "rxjs",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.6.6"
        },
        {
          "name": "superagent",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^8.1.2"
        },
        {
          "name": "timezones-list",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "3.0.1"
        },
        {
          "name": "tsx",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.4.0"
        },
        {
          "name": "unidiff",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.0.2"
        },
        {
          "name": "url",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.11.0"
        },
        {
          "name": "xterm",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.19.0"
        },
        {
          "name": "xterm-addon-fit",
          "manifest": "ui/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.5.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 3,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 8,
      "bot_contributors": 4,
      "top_contributors": [
        {
          "type": "User",
          "login": "crenshaw-dev",
          "commits": 695,
          "avatar_url": "https://avatars.githubusercontent.com/u/350466?v=4"
        },
        {
          "type": "User",
          "login": "alexmt",
          "commits": 484,
          "avatar_url": "https://avatars.githubusercontent.com/u/426437?v=4"
        },
        {
          "type": "User",
          "login": "jessesuen",
          "commits": 397,
          "avatar_url": "https://avatars.githubusercontent.com/u/12677113?v=4"
        },
        {
          "type": "User",
          "login": "jannfis",
          "commits": 279,
          "avatar_url": "https://avatars.githubusercontent.com/u/3942683?v=4"
        },
        {
          "type": "User",
          "login": "alexec",
          "commits": 273,
          "avatar_url": "https://avatars.githubusercontent.com/u/1142830?v=4"
        },
        {
          "type": "User",
          "login": "pasha-codefresh",
          "commits": 160,
          "avatar_url": "https://avatars.githubusercontent.com/u/39732895?v=4"
        },
        {
          "type": "User",
          "login": "mmorel-35",
          "commits": 144,
          "avatar_url": "https://avatars.githubusercontent.com/u/6032561?v=4"
        },
        {
          "type": "User",
          "login": "agaudreault",
          "commits": 128,
          "avatar_url": "https://avatars.githubusercontent.com/u/47184027?v=4"
        },
        {
          "type": "User",
          "login": "blakepettersson",
          "commits": 118,
          "avatar_url": "https://avatars.githubusercontent.com/u/1227954?v=4"
        },
        {
          "type": "User",
          "login": "leoluz",
          "commits": 108,
          "avatar_url": "https://avatars.githubusercontent.com/u/44989?v=4"
        }
      ],
      "contributors_sampled": 96,
      "top_contributor_share": 0.136
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "bump-major-version.yaml",
        "cd-ui.yml",
        "cherry-pick-single.yml",
        "cherry-pick.yml",
        "ci-build.yaml",
        "cicd.yml",
        "codeql.yml",
        "deploy-ui-embed.yml",
        "image-reuse.yaml",
        "image.yaml",
        "init-release.yaml",
        "pr-title-check.yml",
        "release.yaml",
        "renovate.yaml",
        "scorecard.yaml",
        "stale.yaml",
        "update-snyk.yaml",
        "zizmor.yaml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yaml",
        "eslint.config.mjs"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum",
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 43 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 6,
            "reason": "dependency not pinned by hash detected -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 8,
            "reason": "SAST tool detected but not run on all commits",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "44 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "7f2d7a9b56b471da40b30367c1000fa0fe8d765d",
        "ran_at": "2026-07-24T20:21:01Z",
        "aggregate_score": 5.1,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": true,
      "has_security_policy": true,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-24T20:10:02Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-22T21:23:50Z",
      "ci_last_conclusion": "SKIPPED",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/hanzoai/deploy",
    "host": "github.com",
    "name": "deploy",
    "owner": "hanzoai"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 64,
      "inputs": {
        "security": 51,
        "vitality": 89,
        "community": 12,
        "governance": 84,
        "engineering": 70
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 89,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "excellent",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "commits_last_year": 2008,
              "human_commit_share": 0.69,
              "days_since_last_push": 1,
              "active_weeks_last_year": 52
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 1 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 1
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "52/52 weeks with commits",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 52
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "2008 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 2008
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "releases_count": 98,
              "latest_release_tag": "v3.4.5",
              "releases_from_tags": true,
              "days_since_latest_release": 15,
              "mean_days_between_releases": 8.8
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "98 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 98
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 15 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 15
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~8.8 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 8.8
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "critical",
        "name": "Community & Adoption",
        "value": 12,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "critical",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 25,
            "inputs": {
              "has_readme": false,
              "has_license": false,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "good",
        "name": "Sustainability & Governance",
        "value": 84,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "excellent",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 97,
            "inputs": {
              "bus_factor": 8,
              "contributors_sampled": 96,
              "top_contributor_share": 0.136
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "8 contributor(s) cover half of all commits",
                "points": 54,
                "status": "met",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 8
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 14% of commits",
                "points": 19.4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 14
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "96 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 96
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 43 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 72,
            "inputs": {
              "merged_prs": 3,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "3/3 decided PRs merged",
                "points": 38.2,
                "status": "met",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 3,
                      "decided": 3
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 66,
            "inputs": {
              "followers": 37,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "hanzoai",
              "public_repos": 129,
              "account_age_days": 3878
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "37 followers of hanzoai",
                "points": 11.4,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 37,
                      "login": "hanzoai"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "129 public repos, account ~10 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 129
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 10
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/hanzoai/deploy",
                "github.com/hanzoai/deploy/gitops-engine"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 6
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "2 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 2,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 6 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 6
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "143 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 143
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 70,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "18 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 18
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yaml, eslint.config.mjs",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yaml, eslint.config.mjs"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": "https://hanzoai.github.io/deploy/",
              "has_readme": false,
              "has_docs_dir": true,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://hanzoai.github.io/deploy/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 51,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 51,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 5.1
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 43 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool detected but not run on all commits",
                "points": 4,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "44 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 14
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "excellent",
        "name": "AI Readiness",
        "value": 91,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.971,
              "agent_instruction_files": [
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 3818
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "67 of 69 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 67,
                      "sampled": 69
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "excellent",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 96,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum",
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "gitops-engine/Makefile",
                "test/remote/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "ui/src/app/tsconfig.json",
                "ui/tsconfig.json"
              ],
              "agent_commit_share": 0.12,
              "toolchain_manifests": [
                "gitops-engine/go.mod",
                "go.mod",
                "hack/get-previous-release/go.mod"
              ],
              "dependency_bot_commit_share": 0.28
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, gitops-engine/Makefile, test/remote/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, gitops-engine/Makefile, test/remote/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yaml, eslint.config.mjs",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yaml, eslint.config.mjs"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "ui/src/app/tsconfig.json, ui/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "ui/src/app/tsconfig.json, ui/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "12 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 12,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "28 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 28,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 98,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 1517316,
              "source_files_sampled": 1261,
              "oversized_source_files": 55
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "55/1261 source files over 60KB",
                "points": 52.6,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 1261,
                      "oversized": 55
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "good",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 80,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": [
                "assets/swagger.json",
                "cmpserver/plugin/plugin.proto",
                "commitserver/commit/commit.proto",
                "pkg/apis/application/v1alpha1/generated.proto",
                "reposerver/repository/repository.proto",
                "server/account/account.proto",
                "server/application/application.proto",
                "server/applicationset/applicationset.proto",
                "server/certificate/certificate.proto",
                "server/cluster/cluster.proto",
                "server/events/events.proto",
                "server/gpgkey/gpgkey.proto",
                "server/notification/notification.proto",
                "server/project/project.proto",
                "server/repocreds/repocreds.proto",
                "server/repository/repository.proto",
                "server/session/session.proto",
                "server/settings/oidc/claims.proto",
                "server/settings/settings.proto",
                "server/version/version.proto",
                "util/askpass/askpass.proto"
              ]
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": "assets/swagger.json, cmpserver/plugin/plugin.proto, commitserver/commit/commit.proto, pkg/apis/application/v1alpha1/generated.proto, reposerver/repository/repository.proto, server/account/account.proto, server/application/application.proto, server/applicationset/applicationset.proto, server/certificate/certificate.proto, server/cluster/cluster.proto, server/events/events.proto, server/gpgkey/gpgkey.proto, server/notification/notification.proto, server/project/project.proto, server/repocreds/repocreds.proto, server/repository/repository.proto, server/session/session.proto, server/settings/oidc/claims.proto, server/settings/settings.proto, server/version/version.proto, util/askpass/askpass.proto",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "assets/swagger.json, cmpserver/plugin/plugin.proto, commitserver/commit/commit.proto, pkg/apis/application/v1alpha1/generated.proto, reposerver/repository/repository.proto, server/account/account.proto, server/application/application.proto, server/applicationset/applicationset.proto, server/certificate/certificate.proto, server/cluster/cluster.proto, server/events/events.proto, server/gpgkey/gpgkey.proto, server/notification/notification.proto, server/project/project.proto, server/repocreds/repocreds.proto, server/repository/repository.proto, server/session/session.proto, server/settings/oidc/claims.proto, server/settings/settings.proto, server/version/version.proto, util/askpass/askpass.proto"
                    }
                  }
                ],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Community profile unavailable",
    "Could not fetch npm package 'hanzo-cd-ui' from its registry",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-24T20:21:45.211224Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/h/hanzoai/deploy.svg",
  "full_name": "hanzoai/deploy",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Las puntuaciones son señales, no garantías. Reflejan prácticas públicamente visibles en GitHub; no son una auditoría de código ni una garantía de seguridad.

Los datos ausentes se excluyen y los pesos se renormalizan; nunca se puntúan como cero. La metodología es versionada y abierta: métricas v1.13.0, esquema v0.27.0 — metodología completa · wiki de métricas.

Cómo se sitúa un resultado dentro del registro general: estadísticas agregadasGo.