Registro público
Informe de salud del softwareesquema 0.26.0 · métricas 1.13.0 · 2026-07-22 16:29 UTC

isaacs / minipass

A stream implementation that does more by doing less

TypeScript · JavaScriptBlueOak-1.0.0★ 262 estrellas⑂ 30 forksdesde mar 2017Ver en GitHub ↗

isaacs/minipass tiene un índice de salud de 56 sobre 100, lo que lo sitúa en la banda Moderado. Su puntuación más alta es Community & Adoption (75/100) y la más baja, Vitality (38/100). Se actualizó por última vez hace 153 días. Una sola persona concentra la mayor parte del trabajo reciente.

56
global / 100
Moderado

Índice de salud del software

Las métricas se agrupan en categorías ponderadas sobre una escala de 1 a 100. El resultado global parte de su media; cuando la evidencia pública activa la Política de Jurisdicciones de Alto Riesgo, la calificación se ajusta y recibe el límite 49 (En riesgo). Preparación para IA queda fuera.

56
Excelente85-100Ejemplar; cumple prácticamente todos los criterios evaluados
Bueno70-84Saludable; carencias menores
Moderado50-69Aceptable con carencias notables; se recomienda revisión
En riesgo30-49Debilidades significativas; su adopción exige cautela
Crítico1-29Problemas graves (proyecto abandonado, un solo mantenedor, sin higiene)
VitalidadComunidad yAdopciónSostenibilidady GobernanzaCalidad deIngenieríaSeguridadPreparaciónpara IA

Perfil de puntuación

Cada eje es una categoría. La forma importa más que la media: un proyecto sano llena toda la figura, mientras que un perfil de picos y cráteres indica que la fortaleza en una dimensión enmascara el riesgo en otra.

Titularidad

isaacsCuenta personal
16.219 seguidores488 repositorios públicosdesde may 2008

Este repositorio pertenece a una cuenta personal. Un proyecto con un único propietario conlleva más riesgo de continuidad que uno respaldado por una organización.

Ecosistemas de paquetes

RegistroPaqueteVersiónDescargas / mesVersionesÚltima publicaciónEtiquetas
npmminipass7.1.31.453.055.28695hace 153 díaspassthroughstream

Métricas por categoría

Vitalidad

¿Está vivo el proyecto: se escribe código y se publican versiones?

38En riesgo · 22% del índice global
Cómo se puntúa
9.9/36Recencia de push — último push hace 153 días
1.4/36Cadencia de commits — 2/52 semanas con commits
5.4/18Volumen de commits — 3 commits en el último año
0/10OpenSSF Scorecard: Maintained — 0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0
Datos de entrada utilizados
commits_last_year3
human_commit_share1
days_since_last_push153
active_weeks_last_year2
Cómo se puntúa
16.2/27Publica versiones — 95 etiquetas de versión (sin releases de GitHub)
27/36Recencia de las versiones — última versión hace 153 días
19.8/27Cadencia de publicación — una versión cada ~112 días
0/10OpenSSF Scorecard: Signed-Releases — sin datos
Datos de entrada utilizados
releases_count95
latest_release_tagv7.1.3
releases_from_tags
days_since_latest_release153
mean_days_between_releases112
Excluidos de la puntuación (sin datos o no aplicable): OpenSSF Scorecard: Signed-Releases. Los pesos restantes se han renormalizado.

Comunidad y Adopción

¿Tiene el proyecto usuarios, descargas, atención y unas condiciones acogedoras para quienes contribuyen?

75Bueno · 18% del índice global
Cómo se puntúa
39.2/60Estrellas — 262 estrellas
12.2/25Forks — 30 forks
0/15Observadores — 2 observadores
Datos de entrada utilizados
forks30
stars262
watchers2
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Cómo se puntúa
22.5/22.5README
22.5/22.5Licencia — licencia reconocida (BlueOak-1.0.0)
18/18Guía CONTRIBUTING
13.5/13.5Código de conducta
0/7.2Plantilla de issues
0/6.3Plantilla de PR
Datos de entrada utilizados
has_readme
has_license
has_contributing
has_issue_templateno
has_code_of_conduct
has_pull_request_templateno
Cómo se puntúa
80/80Descargas mensuales — 1.453.055.286 descargas/mes en npm
0/20Dependientes en el registro — no lo informa este ecosistema
Datos de entrada utilizados
packagesminipass
dependents
ecosystemsnpm
total_downloads
monthly_downloads1.453.055.286
Excluidos de la puntuación (sin datos o no aplicable): Dependientes en el registro. Los pesos restantes se han renormalizado.

Sostenibilidad y Gobernanza

¿Sobrevivirá el proyecto a sus personas: factor bus, capacidad de respuesta, quién lo respalda y mantenimiento del paquete?

61Moderado · 24% del índice global
Cómo se puntúa
9/54Factor bus — la mitad de los commits recae en 1 contribuyente(s)
1/22.5Distribución de commits — el principal contribuyente firma el 96% de los commits
13.5/13.5Amplitud de contribuyentes — 10 contribuyentes
6/10OpenSSF Scorecard: Contributors — project has 2 contributing companies or organizations -- score normalized to 6
Datos de entrada utilizados
bus_factor1
contributors_sampled10
top_contributor_share0,956
Cómo se puntúa
42.5/46.8Resolución de issues — 91% de issues cerradas
9.3/38.3Aceptación de PR — 8/33 PR decididos fusionados
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Datos de entrada utilizados
merged_prs8
open_issues2
closed_issues20
issue_closed_ratio0,909
closed_unmerged_prs25
Cómo se puntúa
10/30Respaldo de la propiedad — cuenta personal (usuario)
0/20Dominio verificado — no aplicable a cuentas de usuario
25/25Alcance del propietario — 16.219 seguidores de isaacs
25/25Trayectoria — 488 repos públicos, cuenta de ~18 años
Datos de entrada utilizados
followers16.219
owner_typeUser
is_verified
owner_loginisaacs
public_repos488
account_age_days6652
Excluidos de la puntuación (sin datos o no aplicable): Dominio verificado. Los pesos restantes se han renormalizado.
Cómo se puntúa
25/25Publicado y resoluble — 1 paquete(s) en npm
35/35Recencia de publicación — última publicación hace 153 días
20/20Historial de versiones — 95 versiones en el registro
20/20No obsoleto — activo, ni obsoleto ni retirado
Datos de entrada utilizados
packagesminipass
ecosystemsnpm
any_deprecatedno
min_days_since_publish153

Calidad de Ingeniería

¿Existen unas prácticas mínimas de ingeniería y documentación?

62Moderado · 20% del índice global
Cómo se puntúa
24/24Flujos de trabajo de CI — 2 flujo(s) de trabajo
24/24Pruebas presentes
0/16Configuración de linter
0/9.6Hooks de pre-commit
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — sin datos
Datos de entrada utilizados
has_ci
has_tests
has_editorconfigno
has_linter_configno
has_precommit_configno
Excluidos de la puntuación (sin datos o no aplicable): OpenSSF Scorecard: CI-Tests. Los pesos restantes se han renormalizado.

Documentación

65Moderado
Cómo se puntúa
30/30README
0/25Directorio de documentación
15/15Sitio de documentación / página del proyecto — https://twitter.com/izs/status/1174465160737509376
10/10Descripción del repositorio
0/10Topics
10/10Wiki
Datos de entrada utilizados
topics
has_wiki
homepagehttps://twitter.com/izs/status/1174465160737509376
has_readme
has_docs_dirno
has_description

Seguridad

¿Son sólidas las prácticas visibles de seguridad y de cadena de suministro, sin exposición jurisdiccional de alto riesgo sin resolver?

43En riesgo · 16% del índice global
Cómo se puntúa
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — sin datos
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
1.5/2.5Contributors — project has 2 contributing companies or organizations -- score normalized to 6
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Licencia — license file detected
0/7.5Maintained — 0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0
0/5Packaging — sin datos
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — no SAST tool detected
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — sin datos
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 26 existing vulnerabilities detected
Datos de entrada utilizados
sourceopenssf_scorecard
checks_evaluated15
scorecard_versionv5.5.0
checks_inconclusive3
scorecard_aggregate2,9
Excluidos de la puntuación (sin datos o no aplicable): ci_tests, packaging, signed_releases. Los pesos restantes se han renormalizado.
Cómo se puntúa
35/35Dependencias directas libres de avisos conocidos — ninguna dependencia directa tiene un aviso conocido
0/25Dependencias indirectas libres de avisos conocidos — el conjunto transitivo no es separable de las dependencias de desarrollo y prueba en este alcance
0/40Sin avisos pendientes — ningún aviso tiene fecha de publicación
Datos de entrada utilizados
sourceosv
advisories42
affected_packages19
assessed_packages329
unassessed_packages0
affected_by_severityhigh 13, moderate 6
direct_affected_packages0
Excluidos de la puntuación (sin datos o no aplicable): Dependencias indirectas libres de avisos conocidos, Sin avisos pendientes. Los pesos restantes se han renormalizado. Se cotejaron 329 dependencias resueltas con OSV. Este repositorio no publica ningún paquete que el índice resuelva, por lo que se evaluó en su lugar el grafo de dependencias del repositorio. Ese grafo mezcla fijaciones de desarrollo y prueba con las dependencias distribuidas, de modo que solo se puntúan las dependencias declaradas en tiempo de ejecución; los hallazgos transitivos se informan como contexto y quedan excluidos de la puntuación. No se analiza la alcanzabilidad.

Preparación para IA

¿Hasta qué punto está el repositorio preparado para desarrollarse y mantenerse con agentes de codificación de IA? Es una insignia independiente y experimental — peso 0,0, de modo que se presenta por separado y no afecta a la puntuación de salud global.

42En riesgo · 0% del índice global
Cómo se puntúa
0/45Instrucciones para agentes — sin CLAUDE.md / AGENTS.md / reglas de editor
0/15Documentación legible por máquinas (llms.txt)
12.3/40Historial de commits legible — 23 de 100 commits humanos declaran su intención (asunto estructurado o cuerpo explicativo)
Datos de entrada utilizados
has_llms_txtno
legible_history_share0,23
agent_instruction_files
agent_instruction_max_bytes
Cómo se puntúa
0/18Arranque con un solo comando
22/22Pruebas automatizadas
0/11Configuración de lint / formato
11/11Verificación estática de tipos — tsconfig.json
10/10Entorno reproducible — lockfile
0/10Práctica demostrada con agentes — ningún commit con autoría de agente entre los últimos 100
0/8Mantenimiento automatizado — no se observan actualizaciones automáticas de dependencias
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Datos de entrada utilizados
has_nixno
has_tests
lockfilespackage-lock.json
has_dockerfileno
typed_language
bootstrap_files
has_devcontainerno
has_linter_configno
typecheck_configstsconfig.json
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0
Cómo se puntúa
45/45Código verificable por tipos — TypeScript (tipado estático)
55/55Tamaños de archivo manejables — 0/52 archivos fuente de más de 60 KB
Datos de entrada utilizados
primary_languageTypeScript
largest_source_bytes37.849
source_files_sampled52
oversized_source_files0

Datos clave

262estrellas de GitHub
10contribuidores
3commits en los últimos 12 meses
153días desde el último push
95versiones publicadas
1factor bus
2issues abiertas
npmecosistemas de paquetes

Advertencias de recopilación de datos

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token

Más detalle

Historial de estrellas y forks 0 ★ / 30 ⇿
0Estrellas
30Forks
74Versiones

Cuándo se añadió cada estrella y fork, recopilado de GitHub y agrupado por día. El crecimiento acumulado se sitúa justo encima de las adiciones diarias que lo componen, de modo que ambos se leen en conjunto: la acumulación orgánica sostenida no se parece en nada a un pico abrupto y efímero. Cuando esa diferencia es medible, se informa como autenticidad del crecimiento.

0510152025303022017-062021-122026-06
Mayor 5Menor 14Parche 55

Cada punto abarca 9 días.

OpenSSF Scorecard 2.9 / 10
2.9agregado

Evaluación de seguridad independiente y agnóstica en cuanto a herramientas, procedente del proyecto de código abierto OpenSSF Scorecard. Cada comprobación premia una práctica de seguridad, no la herramienta de un proveedor concreto. Las comprobaciones que Scorecard no pudo determinar se marcan como n/d y se excluyen de la puntuación de seguridad (nunca se cuentan como cero).Scorecard v5.5.0 · 2026-07-22 16:29 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
n/dCI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
6Contributorsproject has 2 contributing companies or organizations -- score normalized to 6
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintained0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0
n/dPackagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTno SAST tool detected
10Security-Policysecurity policy file detected
n/dSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities26 existing vulnerabilities detected
Dependencias directas 7
RegistroPaqueteRestricción de versiónManifiesto
npm@npmcli/promise-spawn^2.0.0bench/package.json
npm@web-std/stream^1.0.1bench/package.json
npmminipass6bench/package.json
npmminipass5npm:minipass@5bench/package.json
npmminipass4npm:minipass@4bench/package.json
npmminipass3npm:minipass@3bench/package.json
npmthrough2^4.0.2bench/package.json
Todas las dependencias 329

Conjunto completo de dependencias resueltas según el grafo de dependencias de GitHub: 10 paquetes directos y 319 indirectos (transitivos). El cierre transitivo es completo cuando el repositorio incluye un lockfile.

RegistroPaqueteVersiónRelación
npm@npmcli/promise-spawn2.0.1directa
npm@npmcli/promise-spawn7.0.2directa
npm@web-std/stream1.0.1directa
npmminipass3.3.6directa
npmminipass4.2.8directa
npmminipass5.0.0directa
npmminipass6.0.2directa
npmminipass7.1.1directa
npmthrough22.0.5directa
npmthrough24.0.2directa
npm@alcalzone/ansi-tokenize0.1.3indirecta
npm@base2/pretty-print-object1.0.1indirecta
npm@bcoe/v8-coverage0.2.3indirecta
npm@cspotcode/source-map-support0.8.1indirecta
npm@isaacs/cliui8.0.2indirecta
npm@isaacs/ts-node-temp-fork-for-pr-200910.9.6indirecta
npm@istanbuljs/schema0.1.3indirecta
npm@jridgewell/resolve-uri3.1.2indirecta
npm@jridgewell/sourcemap-codec1.4.15indirecta
npm@jridgewell/trace-mapping0.3.25indirecta
npm@jridgewell/trace-mapping0.3.9indirecta
npm@npmcli/agent2.2.2indirecta
npm@npmcli/fs3.1.1indirecta
npm@npmcli/git5.0.7indirecta
npm@npmcli/installed-package-contents2.1.0indirecta
npm@npmcli/node-gyp3.0.0indirecta
npm@npmcli/package-json5.1.0indirecta
npm@npmcli/redact1.1.0indirecta
npm@npmcli/run-script7.0.4indirecta
npm@pkgjs/parseargs0.11.0indirecta
npm@sigstore/bundle2.3.2indirecta
npm@sigstore/core1.1.0indirecta
npm@sigstore/protobuf-specs0.3.2indirecta
npm@sigstore/sign2.3.2indirecta
npm@sigstore/tuf2.3.4indirecta
npm@sigstore/verify1.2.1indirecta
npm@tapjs/after1.1.23indirecta
npm@tapjs/after-each2.0.0indirecta
npm@tapjs/asserts2.0.0indirecta
npm@tapjs/before2.0.0indirecta
npm@tapjs/before-each2.0.0indirecta
npm@tapjs/config3.0.0indirecta
npm@tapjs/core2.0.0indirecta
npm@tapjs/error-serdes2.0.0indirecta
npm@tapjs/filter2.0.0indirecta
npm@tapjs/fixture2.0.0indirecta
npm@tapjs/intercept2.0.0indirecta
npm@tapjs/mock2.0.0indirecta
npm@tapjs/node-serialize2.0.0indirecta
npm@tapjs/processinfo3.1.7indirecta
npm@tapjs/reporter2.0.0indirecta
npm@tapjs/run2.0.0indirecta
npm@tapjs/snapshot2.0.0indirecta
npm@tapjs/spawn2.0.0indirecta
npm@tapjs/stack2.0.0indirecta
npm@tapjs/stdin2.0.0indirecta
npm@tapjs/test2.0.0indirecta
npm@tapjs/typescript1.4.5indirecta
npm@tapjs/worker2.0.0indirecta
npm@tsconfig/node1414.1.2indirecta
npm@tsconfig/node1616.1.3indirecta
npm@tsconfig/node1818.2.4indirecta
npm@tsconfig/node2020.1.4indirecta
npm@tufjs/canonical-json2.0.0indirecta
npm@tufjs/models2.0.1indirecta
npm@types/end-of-stream1.4.2indirecta
npm@types/istanbul-lib-coverage2.0.6indirecta
npm@types/node20.7.1indirecta
npmabbrev2.0.0indirecta
npmacorn8.11.3indirecta
npmacorn-walk8.3.2indirecta
npmagent-base7.1.1indirecta
npmaggregate-error3.1.0indirecta
npmansi-escapes6.2.1indirecta
npmansi-regex5.0.1indirecta
npmansi-regex6.0.1indirecta
npmansi-sequence-parser1.1.1indirecta
npmansi-styles4.3.0indirecta
npmansi-styles6.2.1indirecta
npmanymatch3.1.3indirecta
npmarg4.1.3indirecta
npmasync-hook-domain4.0.1indirecta
npmauto-bind5.0.1indirecta
npmbalanced-match1.0.2indirecta
npmbinary-extensions2.2.0indirecta
npmbrace-expansion1.1.11indirecta
npmbrace-expansion2.0.1indirecta
npmbraces3.0.2indirecta
npmc88.0.1indirecta
npmcacache18.0.3indirecta
npmchalk5.3.0indirecta
npmchokidar3.6.0indirecta
npmchownr2.0.0indirecta
npmci-info3.9.0indirecta
npmclean-stack2.2.0indirecta
npmcli-boxes3.0.0indirecta
npmcli-cursor4.0.0indirecta
npmcli-truncate3.1.0indirecta
npmcliui8.0.1indirecta
npmcode-excerpt4.0.0indirecta
npmcolor-convert2.0.1indirecta
npmcolor-name1.1.4indirecta
npmconcat-map0.0.1indirecta
npmconvert-source-map2.0.0indirecta
npmconvert-to-spaces2.0.1indirecta
npmcore-util-is1.0.3indirecta
npmcross-spawn7.0.3indirecta
npmdebug4.3.4indirecta
npmdiff4.0.2indirecta
npmdiff5.2.0indirecta
npmeastasianwidth0.2.0indirecta
npmemoji-regex8.0.0indirecta
npmemoji-regex9.2.2indirecta
npmencoding0.1.13indirecta
npmend-of-stream1.4.4indirecta
npmenv-paths2.2.1indirecta
npmerr-code2.0.3indirecta
npmescalade3.1.2indirecta
npmescape-string-regexp2.0.0indirecta
npmevents-to-array2.0.3indirecta
npmexponential-backoff3.1.1indirecta
npmfill-range7.0.1indirecta
npmfind-up5.0.0indirecta
npmforeground-child2.0.0indirecta
npmforeground-child3.1.1indirecta
npmfromentries1.3.2indirecta
npmfs-minipass2.1.0indirecta
npmfs-minipass3.0.3indirecta
npmfs.realpath1.0.0indirecta
npmfsevents2.3.3indirecta
npmfunction-bind1.1.2indirecta
npmfunction-loop4.0.0indirecta
npmget-caller-file2.0.5indirecta
npmglob10.3.16indirecta
npmglob7.2.3indirecta
npmglob-parent5.1.2indirecta
npmgraceful-fs4.2.11indirecta
npmhas-flag4.0.0indirecta
npmhasown2.0.2indirecta
npmhosted-git-info7.0.2indirecta
npmhtml-escaper2.0.2indirecta
npmhttp-cache-semantics4.1.1indirecta
npmhttp-proxy-agent7.0.2indirecta
npmhttps-proxy-agent7.0.4indirecta
npmiconv-lite0.6.3indirecta
npmignore-walk6.0.5indirecta
npmimurmurhash0.1.4indirecta
npmindent-string4.0.0indirecta
npmindent-string5.0.0indirecta
npminflight1.0.6indirecta
npminherits2.0.4indirecta
npmink4.4.1indirecta
npmip-address9.0.5indirecta
npmis-actual-promise1.0.2indirecta
npmis-binary-path2.1.0indirecta
npmis-ci3.0.1indirecta
npmis-core-module2.13.1indirecta
npmis-extglob2.1.1indirecta
npmis-fullwidth-code-point3.0.0indirecta
npmis-fullwidth-code-point4.0.0indirecta
npmis-glob4.0.3indirecta
npmis-lambda1.0.1indirecta
npmis-lower-case2.0.2indirecta
npmis-number7.0.0indirecta
npmis-plain-object5.0.0indirecta
npmis-upper-case2.0.2indirecta
npmisarray1.0.0indirecta
npmisexe2.0.0indirecta
npmisexe3.1.1indirecta
npmistanbul-lib-coverage3.2.2indirecta
npmistanbul-lib-report3.0.1indirecta
npmistanbul-reports3.1.7indirecta
npmjackspeak3.1.2indirecta
npmjs-tokens4.0.0indirecta
npmjsbn1.1.0indirecta
npmjson-parse-even-better-errors3.0.2indirecta
npmjsonc-parser3.2.0indirecta
npmjsonparse1.3.1indirecta
npmlocate-path6.0.0indirecta
npmlodash4.17.21indirecta
npmloose-envify1.4.0indirecta
npmlru-cache10.2.2indirecta
npmlunr2.3.9indirecta
npmmake-dir4.0.0indirecta
npmmake-error1.3.6indirecta
npmmake-fetch-happen13.0.1indirecta
npmmarked4.3.0indirecta
npmmimic-fn2.1.0indirecta
npmminimatch3.1.2indirecta
npmminimatch9.0.4indirecta
npmminipass-collect2.0.1indirecta
npmminipass-fetch3.0.5indirecta
npmminipass-flush1.0.5indirecta
npmminipass-json-stream1.0.1indirecta
npmminipass-pipeline1.2.4indirecta
npmminipass-sized1.0.3indirecta
npmminizlib2.1.2indirecta
npmmkdirp1.0.4indirecta
npmmkdirp3.0.1indirecta
npmms2.1.2indirecta
npmms2.1.3indirecta
npmnegotiator0.6.3indirecta
npmnode-abort-controller3.1.1indirecta
npmnode-gyp10.1.0indirecta
npmnopt7.2.1indirecta
npmnormalize-package-data6.0.1indirecta
npmnormalize-path3.0.0indirecta
npmnpm-bundled3.0.1indirecta
npmnpm-install-checks6.3.0indirecta
npmnpm-normalize-package-bin3.0.1indirecta
npmnpm-package-arg11.0.2indirecta
npmnpm-packlist8.0.2indirecta
npmnpm-pick-manifest9.0.1indirecta
npmnpm-registry-fetch16.2.1indirecta
npmonce1.4.0indirecta
npmonetime5.1.2indirecta
npmopener1.5.2indirecta
npmp-limit3.1.0indirecta
npmp-locate5.0.0indirecta
npmp-map4.0.0indirecta
npmpacote17.0.7indirecta
npmpatch-console2.0.0indirecta
npmpath-exists4.0.0indirecta
npmpath-is-absolute1.0.1indirecta
npmpath-key3.1.1indirecta
npmpath-scurry1.11.1indirecta
npmpicomatch2.3.1indirecta
npmpirates4.0.6indirecta
npmpolite-json4.0.1indirecta
npmprettier2.8.8indirecta
npmprismjs1.29.0indirecta
npmprismjs-terminal1.2.3indirecta
npmproc-log3.0.0indirecta
npmproc-log4.2.0indirecta
npmprocess-nextick-args2.0.1indirecta
npmprocess-on-spawn1.0.0indirecta
npmpromise-inflight1.0.1indirecta
npmpromise-retry2.0.1indirecta
npmreact18.3.1indirecta
npmreact-dom18.3.1indirecta
npmreact-element-to-jsx-string15.0.0indirecta
npmreact-is18.1.0indirecta
npmreact-reconciler0.29.2indirecta
npmread-package-json7.0.1indirecta
npmread-package-json-fast3.0.2indirecta
npmreadable-stream2.3.8indirecta
npmreadable-stream3.6.2indirecta
npmreaddirp3.6.0indirecta
npmrequire-directory2.1.1indirecta
npmresolve-import1.4.5indirecta
npmrestore-cursor4.0.0indirecta
npmretry0.12.0indirecta
npmrimraf3.0.2indirecta
npmrimraf5.0.5indirecta
npmsafe-buffer5.1.2indirecta
npmsafe-buffer5.2.1indirecta
npmsafer-buffer2.1.2indirecta
npmscheduler0.23.2indirecta
npmsemver7.6.2indirecta
npmshebang-command2.0.0indirecta
npmshebang-regex3.0.0indirecta
npmshiki0.14.4indirecta
npmsignal-exit3.0.7indirecta
npmsignal-exit4.1.0indirecta
npmsigstore2.3.1indirecta
npmslice-ansi5.0.0indirecta
npmslice-ansi6.0.0indirecta
npmsmart-buffer4.2.0indirecta
npmsocks2.8.3indirecta
npmsocks-proxy-agent8.0.3indirecta
npmspdx-correct3.2.0indirecta
npmspdx-exceptions2.5.0indirecta
npmspdx-expression-parse3.0.1indirecta
npmspdx-license-ids3.0.18indirecta
npmsprintf-js1.1.3indirecta
npmssri10.0.6indirecta
npmstack-utils2.0.6indirecta
npmstring-length6.0.0indirecta
npmstring-width4.2.3indirecta
npmstring-width5.1.2indirecta
npmstring_decoder1.1.1indirecta
npmstring_decoder1.3.0indirecta
npmstrip-ansi6.0.1indirecta
npmstrip-ansi7.1.0indirecta
npmsupports-color7.2.0indirecta
npmsync-content1.0.2indirecta
npmtap19.0.0indirecta
npmtap-parser16.0.0indirecta
npmtap-yaml2.2.2indirecta
npmtar6.2.1indirecta
npmtcompare7.0.0indirecta
npmtest-exclude6.0.0indirecta
npmto-regex-range5.0.1indirecta
npmtrivial-deferred2.0.0indirecta
npmtshy1.14.0indirecta
npmtslib2.6.2indirecta
npmtuf-js2.2.1indirecta
npmtype-fest0.12.0indirecta
npmtypedoc0.25.1indirecta
npmtypescript5.2.2indirecta
npmtypescript5.4.5indirecta
npmunique-filename3.0.0indirecta
npmunique-slug4.0.0indirecta
npmutil-deprecate1.0.2indirecta
npmuuid8.3.2indirecta
npmv8-compile-cache-lib3.0.1indirecta
npmv8-to-istanbul9.2.0indirecta
npmvalidate-npm-package-license3.0.4indirecta
npmvalidate-npm-package-name5.0.1indirecta
npmvscode-oniguruma1.7.0indirecta
npmvscode-textmate8.0.0indirecta
npmwalk-up-path3.0.1indirecta
npmweb-streams-polyfill3.2.1indirecta
npmwhich2.0.2indirecta
npmwhich4.0.0indirecta
npmwidest-line4.0.1indirecta
npmwrap-ansi7.0.0indirecta
npmwrap-ansi8.1.0indirecta
npmwrappy1.0.2indirecta
npmws8.17.0indirecta
npmxtend4.0.2indirecta
npmy18n5.0.8indirecta
npmyallist4.0.0indirecta
npmyaml2.4.2indirecta
npmyaml-types0.3.0indirecta
npmyargs17.7.2indirecta
npmyargs-parser21.1.1indirecta
npmyocto-queue0.1.0indirecta
npmyoga-wasm-web0.3.3indirecta
Avisos de dependencias 19

Este repositorio no publica ningún paquete que el índice resuelva, así que se evaluó su propio grafo de dependencias — 329 paquetes, que incluyen también fijaciones de desarrollo y prueba que nunca se distribuyen: 19 tienen avisos conocidos, de los cuales 0 son directas.

PaqueteVersiónRelaciónGravedadAvisosCorregido en
brace-expansion1.1.11indirectaalta35.0.7
brace-expansion2.0.1indirectaalta35.0.7
braces3.0.2indirectaalta13.0.3
cross-spawn7.0.3indirectaalta17.0.5
glob10.3.16indirectaalta111.1.0
lodash4.17.21indirectaalta34.18.0
minimatch3.1.2indirectaalta310.2.3
minimatch9.0.4indirectaalta310.2.3
picomatch2.3.1indirectaalta24.0.4
sigstore2.3.1indirectaalta14.1.1
tar6.2.1indirectaalta117.5.19
uuid8.3.2indirectaalta113.0.1
ws8.17.0indirectaalta38.21.0
@sigstore/core1.1.0indirectamoderada13.2.1
diff4.0.2indirectamoderada18.0.3
diff5.2.0indirectamoderada18.0.3
ip-address9.0.5indirectamoderada110.1.1
prismjs1.29.0indirectamoderada11.30.0
yaml2.4.2indirectamoderada12.8.3

Un aviso significa que la versión registrada en el grafo de dependencias cae dentro del rango afectado de un aviso. No se analiza la alcanzabilidad, y el grafo incluye fijaciones de desarrollo y prueba: un hallazgo puede referirse al utillaje y no al software distribuido.

Informe JSON sin procesar legible por máquina
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 865,
      "has_wiki": true,
      "homepage": "https://twitter.com/izs/status/1174465160737509376",
      "languages": {
        "JavaScript": 16994,
        "TypeScript": 96418
      },
      "pushed_at": "2026-02-19T00:34:22Z",
      "created_at": "2017-03-14T00:02:08Z",
      "owner_type": "User",
      "updated_at": "2026-07-01T15:52:54Z",
      "description": "A stream implementation that does more by doing less",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "BlueOak-1.0.0",
      "default_branch": "main",
      "license_spdx_raw": "BlueOak-1.0.0",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript",
        "JavaScript"
      ]
    },
    "owner": {
      "blog": "http://blog.izs.me",
      "name": "isaacs",
      "type": "User",
      "login": "isaacs",
      "company": null,
      "location": "Oakland CA",
      "followers": 16219,
      "avatar_url": "https://avatars.githubusercontent.com/u/9287?v=4",
      "created_at": "2008-05-04T19:43:46Z",
      "is_verified": null,
      "public_repos": 488,
      "account_age_days": 6652
    },
    "license": {
      "state": "standard",
      "spdx_id": "BlueOak-1.0.0",
      "raw_spdx": "BlueOak-1.0.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v7.1.3",
          "kind": "patch",
          "published_at": "2026-02-19T00:34:17Z"
        },
        {
          "tag": "v7.1.2",
          "kind": "patch",
          "published_at": "2024-05-24T00:42:07Z"
        },
        {
          "tag": "v7.1.1",
          "kind": "patch",
          "published_at": "2024-05-09T13:49:20Z"
        },
        {
          "tag": "v7.1.0",
          "kind": "minor",
          "published_at": "2024-05-04T02:00:21Z"
        },
        {
          "tag": "v7.0.4",
          "kind": "patch",
          "published_at": "2023-09-28T23:58:15Z"
        },
        {
          "tag": "v7.0.3",
          "kind": "patch",
          "published_at": "2023-08-12T19:10:39Z"
        },
        {
          "tag": "v7.0.2",
          "kind": "patch",
          "published_at": "2023-07-11T05:17:12Z"
        },
        {
          "tag": "v7.0.1",
          "kind": "patch",
          "published_at": "2023-07-08T00:23:01Z"
        },
        {
          "tag": "v7.0.0",
          "kind": "major",
          "published_at": "2023-07-08T00:14:26Z"
        },
        {
          "tag": "v6.0.2",
          "kind": "patch",
          "published_at": "2023-05-17T21:16:36Z"
        },
        {
          "tag": "v6.0.1",
          "kind": "patch",
          "published_at": "2023-05-15T22:26:02Z"
        },
        {
          "tag": "v6.0.0",
          "kind": "major",
          "published_at": "2023-05-15T04:40:54Z"
        },
        {
          "tag": "v5.0.0",
          "kind": "major",
          "published_at": "2023-04-09T21:53:57Z"
        },
        {
          "tag": "v4.2.8",
          "kind": "patch",
          "published_at": "2023-04-11T15:59:56Z"
        },
        {
          "tag": "v4.2.7",
          "kind": "patch",
          "published_at": "2023-04-09T21:24:06Z"
        },
        {
          "tag": "v4.2.6",
          "kind": "patch",
          "published_at": "2023-04-09T20:59:57Z"
        },
        {
          "tag": "v4.2.5",
          "kind": "patch",
          "published_at": "2023-03-11T19:27:16Z"
        },
        {
          "tag": "v4.2.4",
          "kind": "patch",
          "published_at": "2023-02-26T07:50:46Z"
        },
        {
          "tag": "v4.2.3",
          "kind": "patch",
          "published_at": "2023-02-26T07:45:32Z"
        },
        {
          "tag": "v4.2.2",
          "kind": "patch",
          "published_at": "2023-02-26T07:18:26Z"
        },
        {
          "tag": "v4.2.1",
          "kind": "patch",
          "published_at": "2023-02-24T04:48:16Z"
        },
        {
          "tag": "v4.2.0",
          "kind": "minor",
          "published_at": "2023-02-22T05:37:59Z"
        },
        {
          "tag": "v4.1.0",
          "kind": "minor",
          "published_at": "2023-02-22T04:19:54Z"
        },
        {
          "tag": "v4.0.3",
          "kind": "patch",
          "published_at": "2023-02-07T21:58:01Z"
        },
        {
          "tag": "v4.0.2",
          "kind": "patch",
          "published_at": "2023-02-05T17:49:12Z"
        },
        {
          "tag": "v4.0.1",
          "kind": "patch",
          "published_at": "2023-01-30T15:27:18Z"
        },
        {
          "tag": "v4.0.0",
          "kind": "major",
          "published_at": "2022-11-27T00:17:14Z"
        },
        {
          "tag": "v3.3.6",
          "kind": "patch",
          "published_at": "2022-11-25T07:54:32Z"
        },
        {
          "tag": "v3.3.5",
          "kind": "patch",
          "published_at": "2022-07-24T22:23:14Z"
        },
        {
          "tag": "v3.3.4",
          "kind": "patch",
          "published_at": "2022-06-28T18:43:18Z"
        },
        {
          "tag": "v3.3.3",
          "kind": "patch",
          "published_at": "2022-06-20T03:38:35Z"
        },
        {
          "tag": "v3.3.2",
          "kind": "patch",
          "published_at": "2022-06-20T02:57:10Z"
        },
        {
          "tag": "v3.3.1",
          "kind": "patch",
          "published_at": "2022-06-20T02:51:54Z"
        },
        {
          "tag": "v3.3.0",
          "kind": "minor",
          "published_at": "2022-06-20T02:15:37Z"
        },
        {
          "tag": "v3.2.1",
          "kind": "patch",
          "published_at": "2022-06-10T18:42:11Z"
        },
        {
          "tag": "v3.2.0",
          "kind": "minor",
          "published_at": "2022-06-08T17:22:40Z"
        },
        {
          "tag": "v3.1.6",
          "kind": "patch",
          "published_at": "2021-12-06T19:45:20Z"
        },
        {
          "tag": "v3.1.5",
          "kind": "patch",
          "published_at": "2021-09-14T19:36:33Z"
        },
        {
          "tag": "v3.1.4",
          "kind": "patch",
          "published_at": "2021-09-14T14:39:03Z"
        },
        {
          "tag": "v3.1.3",
          "kind": "patch",
          "published_at": "2020-05-13T01:00:23Z"
        },
        {
          "tag": "v3.1.2",
          "kind": "patch",
          "published_at": "2020-05-09T20:58:58Z"
        },
        {
          "tag": "v3.1.1",
          "kind": "patch",
          "published_at": "2019-10-24T21:34:42Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2019-10-20T04:53:15Z"
        },
        {
          "tag": "v3.0.1",
          "kind": "patch",
          "published_at": "2019-10-02T16:34:25Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2019-09-30T20:15:56Z"
        },
        {
          "tag": "v2.9.0",
          "kind": "minor",
          "published_at": "2019-09-24T23:42:42Z"
        },
        {
          "tag": "v2.8.6",
          "kind": "patch",
          "published_at": "2019-09-24T16:22:09Z"
        },
        {
          "tag": "v2.8.5",
          "kind": "patch",
          "published_at": "2019-09-24T07:56:02Z"
        },
        {
          "tag": "v2.8.4",
          "kind": "patch",
          "published_at": "2019-09-24T01:03:24Z"
        },
        {
          "tag": "v2.8.3",
          "kind": "patch",
          "published_at": "2019-09-23T18:48:26Z"
        },
        {
          "tag": "v2.8.2",
          "kind": "patch",
          "published_at": "2019-09-23T16:57:00Z"
        },
        {
          "tag": "v2.8.1",
          "kind": "patch",
          "published_at": "2019-09-23T00:04:39Z"
        },
        {
          "tag": "v2.8.0",
          "kind": "minor",
          "published_at": "2019-09-22T23:56:06Z"
        },
        {
          "tag": "v2.7.0",
          "kind": "minor",
          "published_at": "2019-09-22T06:39:08Z"
        },
        {
          "tag": "v2.6.5",
          "kind": "patch",
          "published_at": "2019-09-17T22:18:21Z"
        },
        {
          "tag": "v2.6.4",
          "kind": "patch",
          "published_at": "2019-09-17T16:20:13Z"
        },
        {
          "tag": "v2.6.3",
          "kind": "patch",
          "published_at": "2019-09-17T14:36:38Z"
        },
        {
          "tag": "v2.6.2",
          "kind": "patch",
          "published_at": "2019-09-16T21:58:11Z"
        },
        {
          "tag": "v2.6.1",
          "kind": "patch",
          "published_at": "2019-09-16T20:55:26Z"
        },
        {
          "tag": "v2.6.0",
          "kind": "minor",
          "published_at": "2019-09-16T06:12:32Z"
        },
        {
          "tag": "v2.5.1",
          "kind": "patch",
          "published_at": "2019-09-09T21:33:42Z"
        },
        {
          "tag": "v2.5.0",
          "kind": "minor",
          "published_at": "2019-08-28T23:19:51Z"
        },
        {
          "tag": "v2.4.0",
          "kind": "minor",
          "published_at": "2019-08-23T16:35:43Z"
        },
        {
          "tag": "v2.3.5",
          "kind": "patch",
          "published_at": "2018-10-23T21:46:07Z"
        },
        {
          "tag": "v2.3.4",
          "kind": "patch",
          "published_at": "2018-08-10T16:25:03Z"
        },
        {
          "tag": "v2.3.3",
          "kind": "patch",
          "published_at": "2018-05-22T18:58:25Z"
        },
        {
          "tag": "v2.3.2",
          "kind": "patch",
          "published_at": "2018-05-22T03:42:12Z"
        },
        {
          "tag": "v2.3.1",
          "kind": "patch",
          "published_at": "2018-05-18T23:25:38Z"
        },
        {
          "tag": "v2.3.0",
          "kind": "minor",
          "published_at": "2018-05-06T17:52:06Z"
        },
        {
          "tag": "v2.2.4",
          "kind": "patch",
          "published_at": "2018-03-20T16:44:18Z"
        },
        {
          "tag": "v2.2.3",
          "kind": "patch",
          "published_at": "2018-03-20T16:26:21Z"
        },
        {
          "tag": "v2.2.2",
          "kind": "patch",
          "published_at": "2018-03-20T16:23:14Z"
        },
        {
          "tag": "v2.2.1",
          "kind": "patch",
          "published_at": "2017-07-10T05:09:44Z"
        },
        {
          "tag": "v2.2.0",
          "kind": "minor",
          "published_at": "2017-07-09T05:17:44Z"
        },
        {
          "tag": "v2.1.1",
          "kind": "patch",
          "published_at": "2017-06-14T16:26:43Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2017-06-14T16:17:22Z"
        },
        {
          "tag": "v2.0.2",
          "kind": "patch",
          "published_at": "2017-05-10T17:07:16Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2017-05-04T20:46:47Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2017-05-04T07:59:49Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2017-04-30T04:14:27Z"
        },
        {
          "tag": "v1.1.11",
          "kind": "patch",
          "published_at": "2017-04-30T02:35:58Z"
        },
        {
          "tag": "v1.1.10",
          "kind": "patch",
          "published_at": "2017-04-28T00:40:32Z"
        },
        {
          "tag": "v1.1.9",
          "kind": "patch",
          "published_at": "2017-04-22T03:02:21Z"
        },
        {
          "tag": "v1.1.8",
          "kind": "patch",
          "published_at": "2017-04-10T17:52:54Z"
        },
        {
          "tag": "v1.1.7",
          "kind": "patch",
          "published_at": "2017-04-03T20:21:03Z"
        },
        {
          "tag": "v1.1.6",
          "kind": "patch",
          "published_at": "2017-03-29T06:46:47Z"
        },
        {
          "tag": "v1.1.5",
          "kind": "patch",
          "published_at": "2017-03-29T06:18:51Z"
        },
        {
          "tag": "v1.1.4",
          "kind": "patch",
          "published_at": "2017-03-29T01:25:14Z"
        },
        {
          "tag": "v1.1.3",
          "kind": "patch",
          "published_at": "2017-03-29T00:57:34Z"
        },
        {
          "tag": "v1.1.2",
          "kind": "patch",
          "published_at": "2017-03-28T08:14:51Z"
        },
        {
          "tag": "v1.1.1",
          "kind": "patch",
          "published_at": "2017-03-28T07:06:18Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2017-03-28T06:13:06Z"
        },
        {
          "tag": "v1.0.2",
          "kind": "patch",
          "published_at": "2017-03-22T04:40:02Z"
        },
        {
          "tag": "v1.0.1",
          "kind": "patch",
          "published_at": "2017-03-22T00:26:13Z"
        },
        {
          "tag": "v1.0.0",
          "kind": "major",
          "published_at": "2017-03-14T00:11:52Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "ab4b3b05d0d557ac6bb178f38501b11d0c96454e",
          "body": null,
          "is_bot": false,
          "headline": "7.1.3",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2026-02-19T00:34:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2fbb5beb6458d43ae801f79e47da72164ef7547",
          "body": null,
          "is_bot": false,
          "headline": "update tshy, etc",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2026-02-19T00:34:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "109d7f145e37cc2d7eb937d361bb3454e8edda92",
          "body": null,
          "is_bot": false,
          "headline": "BlueOak-1.0.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2025-10-25T19:05:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1fc7b914533c367ac00a982051849add2169f641",
          "body": null,
          "is_bot": false,
          "headline": "7.1.2",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2024-05-24T00:42:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd8b10cdb1bfd01b53e7bb0cebaedaaef6452258",
          "body": "It's always allowed to use {objectMode:true}, even if the RType and/or\nWType extend string or Buffer. Previously, this was being too strict\nabout requiring an encoding for strings (or no encoding for Buffers), but\nthere are cases where you want to consume strings/Buffers in ObjectMode.",
          "is_bot": false,
          "headline": "update devDeps, loosen constructor argument type",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2024-05-24T00:41:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9410c3e3bb5bccb4f11c4f9080c5f4d695f72870",
          "body": null,
          "is_bot": false,
          "headline": "7.1.1",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2024-05-09T13:49:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1270e6ac685fbc527fd43dd57e95c9a171f11bea",
          "body": "This adjusts Node built-in imports to use the `node:` prefix, so\nthat such imports work on all runtimes.\n\nFixes and closes isaacs/minipass#54\nRelates to isaacs/node-glob#580 and isaacs/path-scurry#16\n\nSigned-off-by: Sam Gammon <sam@elide.dev>\n\nPR-URL: https://github.com/isaacs/minipass/pull/55\nCredit: @sgammon\nClose: #55\nReviewed-by: @isaacs",
          "is_bot": false,
          "headline": "fix: use `node:`-prefixed requires for builtins",
          "author_name": "Sam Gammon",
          "author_login": "sgammon",
          "committed_at": "2024-05-09T13:48:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c95c13a5c565211abb004f34b78e3315cd52db90",
          "body": null,
          "is_bot": false,
          "headline": "npm audit fix",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2024-05-09T13:48:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1875e522c0ff22d0f5e51dbd7843423ca74b0c5c",
          "body": null,
          "is_bot": false,
          "headline": "7.1.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2024-05-04T02:00:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a333b49c3ea45939e74cc17612713feb5bb79e3a",
          "body": "Re: https://github.com/isaacs/node-tar/issues/409",
          "is_bot": false,
          "headline": "update write/end types to comply with NodeJS.WritableStream",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2024-05-04T02:00:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7231d422d71e96f5be5da51663af0ffac7ec47a7",
          "body": null,
          "is_bot": false,
          "headline": "remove FUNDING.yml (coming from .github repo now)",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-10-10T17:25:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a50aaf5af03303df27fcc9332fb2827bad7ec6d4",
          "body": null,
          "is_bot": false,
          "headline": "remove unused fixup script and sync-content dep",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-10-02T15:55:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4189eb4dd210fab906f27636329ef1adf6c33084",
          "body": null,
          "is_bot": false,
          "headline": "test: windows paths are too url-like",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-09-29T00:04:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5924336569c7a0c3acd37210ef174423489a6f0",
          "body": null,
          "is_bot": false,
          "headline": "remove makework gh action jobs",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-09-29T00:02:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c776c8778b25c479c7ea76601197db5c2dfbae8a",
          "body": null,
          "is_bot": false,
          "headline": "7.0.4",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-09-28T23:58:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae2782d5d44124ae7af005b78966ada115cb6e4c",
          "body": null,
          "is_bot": false,
          "headline": "build with tshy, test with tap 18",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-09-28T23:57:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c84f107b02a37a176eb11ce008418ab7f8422c50",
          "body": null,
          "is_bot": false,
          "headline": "add github link to typedocs",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-09-15T19:59:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8d95dcac2d3e769bbb8e66d721ce8359a1380d42",
          "body": null,
          "is_bot": false,
          "headline": "7.0.3",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-08-12T19:10:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "993d6ac9b08ae4c5cbda1c4995319041bf55f5e3",
          "body": null,
          "is_bot": false,
          "headline": "remove node: from imports",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-08-12T19:10:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b220db67d918c9717911ac5a05d427d2da6074d3",
          "body": null,
          "is_bot": false,
          "headline": "7.0.2",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-07-11T05:17:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a7ba1e31c6eeab5afc2fc97acf7ad9afdece4079",
          "body": null,
          "is_bot": false,
          "headline": "declare return type for concat(), promise(), collect()",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-07-11T05:16:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6baaade6726d1cac656426f89f15de631a56b3d1",
          "body": null,
          "is_bot": false,
          "headline": "7.0.1",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-07-08T00:23:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9fc5be045a4c76e2b9aa99f0cb3d12d50a1e2fff",
          "body": null,
          "is_bot": false,
          "headline": "pipe() should always return the dest, even if destroyed",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-07-08T00:22:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d63abffc8734d679177d2382ac1841caa82349f3",
          "body": null,
          "is_bot": false,
          "headline": "7.0.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-07-08T00:14:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "838c8554b1871e239cbb7debfd6c5bdea053ff2d",
          "body": "This is a big one, please read carefully before upgrading from\nprior versions, especially if you extend Minipass in a subclass.\n\n*** Breaking Changes ***\n\n- Rewritten in TypeScript as hybrid esm/cjs build, so a lot of\n  types changed in subtle ways, and several behaviors got\n  stricter.\n- Minipass n\n[…]\nve a `dataLength` property equal to 0, rather than\n  undefined.\n- `isStream` is moved from a static member on the Minipass class\n  to a named export.\n- `isWritable()` and `isReadable()` methods added.",
          "is_bot": false,
          "headline": "Rewrite in TypeScript",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-07-08T00:13:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "98531132ad1d2ce38429002171d7fe45ee977396",
          "body": null,
          "is_bot": false,
          "headline": "fix benchmarks, test against more mp versions",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-19T19:27:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15ab07809dab7a278f9c79027cf25a3a150b770a",
          "body": null,
          "is_bot": false,
          "headline": "6.0.2",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-17T21:16:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0c7b958a800186e63fd87d27e80cc7d93fe60e9e",
          "body": "This was hiding because I have 'skipLibCheck' in most of my packages,\nsince it makes TS builds so much faster, and it's typically not a\nproblem, since libs get checked in their own development anyway.  But in\nthe case of something like Minipass, where it's not *actually*\ntypescript, but just JavaScr\n[…]\nmeantime, this fixes the problem for node-glob.\n\nFix: https://github.com/isaacs/node-glob/issues/529\nFix: https://github.com/isaacs/minipass/issues/49\nClose: https://github.com/isaacs/minipass/pull/50",
          "is_bot": false,
          "headline": "allow symbol as an event type",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-17T21:16:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6125ceeddb721eb3f69749d4e71953adb48ad37d",
          "body": null,
          "is_bot": false,
          "headline": "6.0.1",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-15T22:26:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4eb8c16c4db364bf906a8e84bfd0e55c0b2fac3c",
          "body": "This was causing some errors when attempting to pipe to stdout, and\nother writable streams in node that have an fd member.",
          "is_bot": false,
          "headline": "loosen Readable and Writable types",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-15T22:25:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c2aa0b2196a5d622fdf08032753dd424f53a101b",
          "body": null,
          "is_bot": false,
          "headline": "6.0.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-15T04:40:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7d113131997bbec62bbd1f0bfcefb1b5522c43b6",
          "body": null,
          "is_bot": false,
          "headline": "changelog for v6",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-15T04:40:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f9845807ce452ec857cdd68c2735313cace748a5",
          "body": "may as well, since the type change is a semver major anyway",
          "is_bot": false,
          "headline": "bump supported node versions",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-15T04:39:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5fe51314f8613d4d8e44a04a3142bdb4f3daf42b",
          "body": "It's kind of annoying that Minipass subclasses have to either do a bunch\nof `declare` hackery and specify a ton of extra signatures for `emit`\nand `on` and `addListener`, or just accept every event being\nemitted/handled with `any[]` as the argument list.\n\nBecause this changes the default event argum\n[…]\nthe arguments really *are* \"unknown\"\nif not declared, it's important to err on the side of caution with\nsomething like Minipass, as it has the potential to disrupt a lot of\nother downstream consumers.",
          "is_bot": false,
          "headline": "Define event argument types extensibly",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-05-15T04:11:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3066600b811753bd9c85831a8ecd5c6ca248f2aa",
          "body": null,
          "is_bot": false,
          "headline": "5.0.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-04-09T21:53:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "252523f4f7c74b476b95419920bb44b125e4bcaa",
          "body": null,
          "is_bot": false,
          "headline": "No default export, only named",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-04-09T21:53:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "815a2efb09546d48f98c0817d0656aa7b6e83e99",
          "body": null,
          "is_bot": false,
          "headline": "4.2.7",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-04-09T21:24:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "de867c05c7323c2d256d14041f30985542f6116c",
          "body": null,
          "is_bot": false,
          "headline": "include index.d.mts with package",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-04-09T21:23:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f37bc74563af7f5c2ff131648112e5ed9e1d72d",
          "body": null,
          "is_bot": false,
          "headline": "4.2.6",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-04-09T20:59:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "deafe815281c175e3ec584901a24202fc0fa0ab6",
          "body": "PR-URL: https://github.com/isaacs/minipass/pull/46\nCredit: @manuth\nClose: #46\nReviewed-by: @isaacs",
          "is_bot": false,
          "headline": "Fix incorrect default export declaration",
          "author_name": "Manuel Thalmann",
          "author_login": "neurolag",
          "committed_at": "2023-04-09T20:59:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97e28b0b383b00cb605cb0b8a3ebd92cb72d9be7",
          "body": null,
          "is_bot": false,
          "headline": "Allow `CommonJS` version to be `default` imported",
          "author_name": "Manuel Thalmann",
          "author_login": "neurolag",
          "committed_at": "2023-03-21T09:56:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e12bd8eb73d5b610380e88c248a71ac8da96f136",
          "body": null,
          "is_bot": false,
          "headline": "Add types for the ESM version",
          "author_name": "Manuel Thalmann",
          "author_login": "neurolag",
          "committed_at": "2023-03-21T08:40:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3b98a071233fd4f4054ab7437f1d9a3bab71ce3",
          "body": null,
          "is_bot": false,
          "headline": "4.2.5",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-03-11T19:27:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc5a2525fe22b5ec4e0722e4116b26ec4711166b",
          "body": "Fix: https://github.com/isaacs/node-glob/issues/510",
          "is_bot": false,
          "headline": "remove DESTROYED listeners in iteration methods",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-03-11T19:27:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a5e3921179c0ca58683678858f9496d30bddbcc",
          "body": null,
          "is_bot": false,
          "headline": "4.2.4",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-26T07:50:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5831388ae8cbc9ca37805a827467d8c07baa90b6",
          "body": null,
          "is_bot": false,
          "headline": "pre-aborted stream is aborted",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-26T07:50:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3d63d733bdcb1eed77ed7947977d85643287af60",
          "body": null,
          "is_bot": false,
          "headline": "4.2.3",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-26T07:45:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "90c4648ee8570d9a5f9d51be5d4fbfb6cb915e83",
          "body": null,
          "is_bot": false,
          "headline": "no-op write() after aborting",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-26T07:45:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "16837bea69197dcfb3b3534d0747d062e17ac473",
          "body": null,
          "is_bot": false,
          "headline": "4.2.2",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-26T07:18:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d7c37d7b65745a4704c8f84c493920fa2bbf691e",
          "body": null,
          "is_bot": false,
          "headline": "readme formatting and typo",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-26T07:18:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "efce1dd9d7482fa36a399b74b1818ad1540dca32",
          "body": "Match Node's behavior on this.  Also means we can just use the existing\ndestroy() mechanism for handling abort signals, which frankly makes more\nsense, and makes the 'should it throw or just stop' question less of an\nissue, because you can listen on 'error' if you care to.",
          "is_bot": false,
          "headline": "'error' events are nonfatal if a signal is present",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-26T07:15:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef1f48933b9260b2664a942b1bc7ca9d8b640991",
          "body": null,
          "is_bot": false,
          "headline": "4.2.1",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-24T04:48:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f06a3c15850ecf7919dee2360064d9779a829654",
          "body": null,
          "is_bot": false,
          "headline": "allow falsey objectMode chunks to be buffered properly",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-24T04:47:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d105b3a7d582cb12d46b333b7edde2b27b37ce06",
          "body": null,
          "is_bot": false,
          "headline": "use cjs to transpile the mjs",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-22T05:45:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0b77950c7b87a41e58aee0983429d23f51e77e08",
          "body": null,
          "is_bot": false,
          "headline": "4.2.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-22T05:37:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2f3a540d61d8da986bc651c7934ed137947859d",
          "body": null,
          "is_bot": false,
          "headline": "add a changelog",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-22T05:37:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1b5e6cb7632d8a1478cb273b2025524d53ffeade",
          "body": null,
          "is_bot": false,
          "headline": "allow objectMode:true to emit falsey data",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-22T05:21:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98a5bf0b5c11f96da8bd4c903a60bcb0c6d110d8",
          "body": null,
          "is_bot": false,
          "headline": "add AbortSignal support",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-22T05:20:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1eb74cf5efce01c555afe55a2c21afc09ea75a1a",
          "body": null,
          "is_bot": false,
          "headline": "4.1.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-22T04:19:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "56a90aeb9dc4c6362ac219456241d856e797e355",
          "body": null,
          "is_bot": false,
          "headline": "hybrid module",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-22T04:19:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d9099429d9d1ee28e753e608d497a7f5d2300490",
          "body": null,
          "is_bot": false,
          "headline": "4.0.3",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-07T21:58:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c4eaa94b865d2216f2ddd85d63718c0c342cfe44",
          "body": null,
          "is_bot": false,
          "headline": "update benchmark spreadsheet link",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-07T21:57:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c3ecced436ad9c884e45220454fc17df0db38daa",
          "body": null,
          "is_bot": false,
          "headline": "4.0.2",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-05T17:49:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd43bc06a73859355dd1e635912a278e77bc13a2",
          "body": null,
          "is_bot": false,
          "headline": "formatting with prettier",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-05T17:48:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1c842ad97649d13a31edd87361443e79e5a0165",
          "body": null,
          "is_bot": false,
          "headline": "fix: iterator/asyncIterator method return Generator properly",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-05T17:48:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "979184022a8c751bb9924f4eecc7d242712928be",
          "body": null,
          "is_bot": false,
          "headline": "update benchmarks to test v3 against current",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-02-05T17:12:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "33e36a7327915b1143a08a99d8a944d32f5ab125",
          "body": null,
          "is_bot": false,
          "headline": "deploy typedocs to gh pages",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-01-31T00:13:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "147f9702a4de1137eec81c9491059f2f2cd02ca3",
          "body": null,
          "is_bot": false,
          "headline": "add link to projects homepage from gh page",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-01-30T23:07:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ed0727c2624ffee3673060047390d7419b5e38d",
          "body": null,
          "is_bot": false,
          "headline": "chore: add copyright year to license",
          "author_name": "License Year Bot",
          "author_login": null,
          "committed_at": "2023-01-30T15:27:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7c89949841a2a7ee24909f5775a1fcdd5a7a4e22",
          "body": null,
          "is_bot": false,
          "headline": "4.0.1",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-01-30T15:27:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "345e2784c3cf2d9023ace3cce4a4d339fdf249bc",
          "body": null,
          "is_bot": false,
          "headline": "add a tsconfig for typedoc",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-01-30T15:26:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7dbc86b9a8a685ee0af2d9387081c336e69136c8",
          "body": null,
          "is_bot": false,
          "headline": "add typedoc, rm unused yallist",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2023-01-30T15:23:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "425e9157f1cb6d1926aecd1d1f97e8d86efb48c9",
          "body": "PR-URL: https://github.com/isaacs/minipass/pull/43\nCredit: @Its-Just-Nans\nClose: #43\nReviewed-by: @isaacs",
          "is_bot": false,
          "headline": "fix: readme",
          "author_name": "n4n5",
          "author_login": "Its-Just-Nans",
          "committed_at": "2022-11-28T17:55:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "94124ea6c999e9f7ff76551950ff1ed79431151f",
          "body": null,
          "is_bot": false,
          "headline": "4.0.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-11-27T00:17:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae307fffadf998fe3a64000e14db91e7be5f4eff",
          "body": "BREAKING CHANGE: this removes .buffer and .pipes from the publicly\nexposed interface, allowing Minipass to be safely used as a base\nclass for exported TypeScript mixins.",
          "is_bot": false,
          "headline": "make buffer and pipes properties actually private",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-11-27T00:17:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "52ab642fa447419dca139ce29fad780dd61a27af",
          "body": null,
          "is_bot": false,
          "headline": "3.3.6",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-11-25T07:54:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71eace93692166ec572a0063b0cbcba44e166ebc",
          "body": "Stop issues like #41 from happening every publish\n\nFix: #41",
          "is_bot": false,
          "headline": "just publish as latest",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-11-25T07:51:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "47e7528a39e2d1cd3e5a55b8a8cda1cdf6d77b57",
          "body": "https://github.com/isaacs/minipass/commit/540540f64f6a65a78275509bbc08176426b49a42#r82836300\n\nThanks, @jimlindeman",
          "is_bot": false,
          "headline": "types: make options decl work for ts 3",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-09-02T07:38:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e5b768d2b89c5a5be776362e913e35a6707c6df7",
          "body": null,
          "is_bot": false,
          "headline": "3.3.5",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-07-24T22:23:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "540540f64f6a65a78275509bbc08176426b49a42",
          "body": "The acutal library uses CommonJS exports (`module.exports =`), but the\ntype definitions use ES6 exports (`export` and `export default`\nkeywords). This changes the types to use the `export =` syntax to match\nthe library.\n\nPR-URL: https://github.com/isaacs/minipass/pull/41\nCredit: @MysteryBlokHed\nClose: #41\nReviewed-by: @Timothy-Dement",
          "is_bot": false,
          "headline": "Change ES6 exports to CommonJS in index.d.ts",
          "author_name": "Adam Thompson-Sharpe",
          "author_login": "MysteryBlokHed",
          "committed_at": "2022-07-24T22:23:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "66a65348ec33823db3f8dc90e5a60348eb2da600",
          "body": null,
          "is_bot": false,
          "headline": "3.3.4",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-28T18:43:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "08750150d9faebbdb1925719476d67fb5c8f2f13",
          "body": "Re: https://github.com/isaacs/minipass/pull/38#issuecomment-1169073446",
          "is_bot": false,
          "headline": "types: define ctor options TS 3.x can understand",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-28T18:43:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "af6d2aeaa9254f547675f82cbde18aebf0126960",
          "body": null,
          "is_bot": false,
          "headline": "3.3.3",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T03:38:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7768aec0fc19a5e9066853a7300f3af4bcefe409",
          "body": null,
          "is_bot": false,
          "headline": "make minipass options exposed so it's extensible",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T03:38:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3802694369561391f1908f93c56420e5a8b1cca5",
          "body": null,
          "is_bot": false,
          "headline": "3.3.2",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:57:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ba370d037d39118b1171b595e9b47d71b2fcbbdc",
          "body": null,
          "is_bot": false,
          "headline": "type: actually export class as default",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:57:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d65917f5e5f592f0a9454b057f69c6abcff974ec",
          "body": null,
          "is_bot": false,
          "headline": "3.3.1",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:51:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "592944788805ab952014f19d3e5193ea0132be04",
          "body": null,
          "is_bot": false,
          "headline": "add types to package",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:51:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "80662a0ddf9e3795ec0e4d773aa2c9f34bc0dbd1",
          "body": null,
          "is_bot": false,
          "headline": "3.3.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:15:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "07dee845ffbceaee810570ae4e31cf80f821de68",
          "body": "PR-URL: https://github.com/isaacs/minipass/pull/38\nCredit: @isaacs\nClose: #38\nReviewed-by: @isaacs",
          "is_bot": false,
          "headline": "add type definitions",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:14:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ed5cbc0feb644e1226dfb5c8dea9083441b1d55e",
          "body": "Fix: #12\n\nPR-URL: https://github.com/isaacs/minipass/pull/37\nCredit: @isaacs\nClose: #37\nReviewed-by: @isaacs",
          "is_bot": false,
          "headline": "Add pipe(dest, { proxyErrors: true })",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:12:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9c5113edba083fb4469e90914f0d69745dcffbb2",
          "body": "PR-URL: https://github.com/isaacs/minipass/pull/39\nCredit: @isaacs\nClose: #39\nReviewed-by: @isaacs",
          "is_bot": false,
          "headline": "feature: add unpipe(dest) method",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-20T02:12:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "547db2981c1c301c9552f3158ccad13c1a106cfc",
          "body": null,
          "is_bot": false,
          "headline": "3.2.1",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-10T18:42:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "95232347b7f79e36657fceaf7fa760dab51a6e2d",
          "body": null,
          "is_bot": false,
          "headline": "benchmarks for async mode",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-10T18:42:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d80111d0905704929334ce097adf03bbb11f472",
          "body": null,
          "is_bot": false,
          "headline": "fix: async streams only end destinations 1 time",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-10T18:42:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b5962821660cfa51f570fa5c2aeb8373d98b2270",
          "body": null,
          "is_bot": false,
          "headline": "3.2.0",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-08T17:22:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18c2a43d996dc629af1acd792087b31bf84c62c9",
          "body": null,
          "is_bot": false,
          "headline": "update all deps, make audit happy",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-08T07:31:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a72f92f216940458ea5b94dfacfccd47aaf592cd",
          "body": null,
          "is_bot": false,
          "headline": "feature: add async behavior opt-in",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-08T05:49:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6472384be41273ae223280342fb9dcd632608a9e",
          "body": "Fix: https://github.com/isaacs/minipass/issues/36",
          "is_bot": false,
          "headline": "readable event emitted right away when listened for",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-08T05:49:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "781dd8638ad246b034e71edaec0cc58299034a74",
          "body": "- Get rid of try/finally, that's no longer performant in node 16 and 18\n- Handle OBJECTMODE up front, to avoid excess checks later\n- Remove reference to 'arguments'\n- Pull some common event handling into dedicated methods, to trim down\n  generic/spread behavior in emit()",
          "is_bot": false,
          "headline": "performance improvements",
          "author_name": "isaacs",
          "author_login": "isaacs",
          "committed_at": "2022-06-08T04:43:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 95,
      "commits_last_year": 3,
      "latest_release_at": "2026-02-19T00:34:17Z",
      "latest_release_tag": "v7.1.3",
      "releases_from_tags": true,
      "days_since_last_push": 153,
      "active_weeks_last_year": 2,
      "days_since_latest_release": 153,
      "mean_days_between_releases": 112
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 85,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "minipass",
          "exists": true,
          "license": "BlueOak-1.0.0",
          "keywords": [
            "passthrough",
            "stream"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/minipass",
          "is_deprecated": false,
          "latest_version": "7.1.3",
          "repository_url": "https://github.com/isaacs/minipass",
          "versions_count": 95,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 1453055286,
          "first_published_at": "2017-03-14T00:11:57.420000Z",
          "latest_published_at": "2026-02-19T00:34:33.886000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 153
        }
      ]
    },
    "popularity": {
      "forks": 30,
      "stars": 262,
      "watchers": 2,
      "fork_history": {
        "days": [
          {
            "date": "2017-06-21",
            "count": 1
          },
          {
            "date": "2017-08-17",
            "count": 1
          },
          {
            "date": "2018-03-17",
            "count": 1
          },
          {
            "date": "2018-06-25",
            "count": 1
          },
          {
            "date": "2020-01-09",
            "count": 1
          },
          {
            "date": "2020-02-18",
            "count": 1
          },
          {
            "date": "2020-05-12",
            "count": 1
          },
          {
            "date": "2020-05-13",
            "count": 1
          },
          {
            "date": "2020-12-12",
            "count": 1
          },
          {
            "date": "2021-12-01",
            "count": 1
          },
          {
            "date": "2022-01-29",
            "count": 1
          },
          {
            "date": "2022-05-14",
            "count": 1
          },
          {
            "date": "2022-06-20",
            "count": 1
          },
          {
            "date": "2022-08-04",
            "count": 1
          },
          {
            "date": "2022-08-24",
            "count": 1
          },
          {
            "date": "2022-08-31",
            "count": 1
          },
          {
            "date": "2023-03-21",
            "count": 1
          },
          {
            "date": "2023-05-15",
            "count": 1
          },
          {
            "date": "2023-06-14",
            "count": 1
          },
          {
            "date": "2023-07-26",
            "count": 1
          },
          {
            "date": "2024-02-11",
            "count": 1
          },
          {
            "date": "2024-03-31",
            "count": 1
          },
          {
            "date": "2024-11-07",
            "count": 1
          },
          {
            "date": "2025-01-03",
            "count": 1
          },
          {
            "date": "2025-10-04",
            "count": 1
          },
          {
            "date": "2026-02-16",
            "count": 1
          },
          {
            "date": "2026-03-11",
            "count": 1
          },
          {
            "date": "2026-03-19",
            "count": 1
          },
          {
            "date": "2026-04-16",
            "count": 1
          },
          {
            "date": "2026-06-17",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 30,
        "total_forks": 30
      },
      "star_history": null,
      "open_issues_and_prs": 4
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 37849,
      "source_files_sampled": 52,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "bench/package.json",
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.11",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp",
              "GHSA-f886-m6hf-6m8v",
              "GHSA-v6h2-p8h4-qcjw"
            ],
            "fixed_version": "5.0.7",
            "advisory_count": 3,
            "oldest_advisory_days": 407
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "2.0.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp",
              "GHSA-f886-m6hf-6m8v",
              "GHSA-v6h2-p8h4-qcjw"
            ],
            "fixed_version": "5.0.7",
            "advisory_count": 3,
            "oldest_advisory_days": 407
          },
          {
            "name": "braces",
            "direct": false,
            "version": "3.0.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-grv7-fg5c-xmjg"
            ],
            "fixed_version": "3.0.3",
            "advisory_count": 1,
            "oldest_advisory_days": 798
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.3",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3xgq-45jj-v275"
            ],
            "fixed_version": "7.0.5",
            "advisory_count": 1,
            "oldest_advisory_days": 621
          },
          {
            "name": "glob",
            "direct": false,
            "version": "10.3.16",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-5j98-mcp5-4vw2"
            ],
            "fixed_version": "11.1.0",
            "advisory_count": 1,
            "oldest_advisory_days": 246
          },
          {
            "name": "lodash",
            "direct": false,
            "version": "4.17.21",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 8.1,
            "advisory_ids": [
              "GHSA-f23m-r3pf-42rh",
              "GHSA-r5fr-rjxr-66jc",
              "GHSA-xxjr-mmjv-4gpg"
            ],
            "fixed_version": "4.18.0",
            "advisory_count": 3,
            "oldest_advisory_days": 181
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "3.1.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23c5-xmqv-rm74",
              "GHSA-3ppc-4f35-3m26",
              "GHSA-7r86-cg39-jmmj"
            ],
            "fixed_version": "10.2.3",
            "advisory_count": 3,
            "oldest_advisory_days": 153
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "9.0.4",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23c5-xmqv-rm74",
              "GHSA-3ppc-4f35-3m26",
              "GHSA-7r86-cg39-jmmj"
            ],
            "fixed_version": "10.2.3",
            "advisory_count": 3,
            "oldest_advisory_days": 153
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "2.3.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3v7f-55p6-f55p",
              "GHSA-c2c7-rcm5-vvqj"
            ],
            "fixed_version": "4.0.4",
            "advisory_count": 2,
            "oldest_advisory_days": 118
          },
          {
            "name": "sigstore",
            "direct": false,
            "version": "2.3.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-52v5-jr5w-gjxr"
            ],
            "fixed_version": "4.1.1",
            "advisory_count": 1,
            "oldest_advisory_days": 20
          },
          {
            "name": "tar",
            "direct": false,
            "version": "6.2.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 8.8,
            "advisory_ids": [
              "GHSA-23hp-3jrh-7fpw",
              "GHSA-34x7-hfp2-rc4v",
              "GHSA-83g3-92jg-28cx",
              "GHSA-8qq5-rm4j-mr97",
              "GHSA-8x88-c5mf-7j5w",
              "GHSA-9ppj-qmqm-q256",
              "GHSA-gvwx-54wh-qm9j",
              "GHSA-qffp-2rhf-9h96",
              "GHSA-r6q2-hw4h-h46w",
              "GHSA-vmf3-w455-68vh"
            ],
            "fixed_version": "7.5.19",
            "advisory_count": 11,
            "oldest_advisory_days": 186
          },
          {
            "name": "uuid",
            "direct": false,
            "version": "8.3.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-w5hq-g745-h8pq"
            ],
            "fixed_version": "13.0.1",
            "advisory_count": 1,
            "oldest_advisory_days": 90
          },
          {
            "name": "ws",
            "direct": false,
            "version": "8.17.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3h5v-q93c-6h6q",
              "GHSA-58qx-3vcg-4xpx",
              "GHSA-96hv-2xvq-fx4p"
            ],
            "fixed_version": "8.21.0",
            "advisory_count": 3,
            "oldest_advisory_days": 764
          },
          {
            "name": "@sigstore/core",
            "direct": false,
            "version": "1.1.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.4,
            "advisory_ids": [
              "GHSA-jfc7-64v2-mr8c"
            ],
            "fixed_version": "3.2.1",
            "advisory_count": 1,
            "oldest_advisory_days": 25
          },
          {
            "name": "diff",
            "direct": false,
            "version": "4.0.2",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-73rr-hh4g-fpgx"
            ],
            "fixed_version": "8.0.3",
            "advisory_count": 1,
            "oldest_advisory_days": 188
          },
          {
            "name": "diff",
            "direct": false,
            "version": "5.2.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-73rr-hh4g-fpgx"
            ],
            "fixed_version": "8.0.3",
            "advisory_count": 1,
            "oldest_advisory_days": 188
          },
          {
            "name": "ip-address",
            "direct": false,
            "version": "9.0.5",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": null,
            "advisory_ids": [
              "GHSA-v2v4-37r5-5v8g"
            ],
            "fixed_version": "10.1.1",
            "advisory_count": 1,
            "oldest_advisory_days": 77
          },
          {
            "name": "prismjs",
            "direct": false,
            "version": "1.29.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 4.9,
            "advisory_ids": [
              "GHSA-x7hr-w5r2-h6wg"
            ],
            "fixed_version": "1.30.0",
            "advisory_count": 1,
            "oldest_advisory_days": 506
          },
          {
            "name": "yaml",
            "direct": false,
            "version": "2.4.2",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 4.3,
            "advisory_ids": [
              "GHSA-48c2-rrv3-qjmp"
            ],
            "fixed_version": "2.8.3",
            "advisory_count": 1,
            "oldest_advisory_days": 118
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "high": 13,
          "moderate": 6
        },
        "advisory_count": 42,
        "affected_count": 19,
        "assessed_count": 329,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@npmcli/promise-spawn",
          "manifest": "bench/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.0.0"
        },
        {
          "name": "@web-std/stream",
          "manifest": "bench/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.0.1"
        },
        {
          "name": "minipass",
          "manifest": "bench/package.json",
          "ecosystem": "npm",
          "version_constraint": "6"
        },
        {
          "name": "minipass5",
          "manifest": "bench/package.json",
          "ecosystem": "npm",
          "version_constraint": "npm:minipass@5"
        },
        {
          "name": "minipass4",
          "manifest": "bench/package.json",
          "ecosystem": "npm",
          "version_constraint": "npm:minipass@4"
        },
        {
          "name": "minipass3",
          "manifest": "bench/package.json",
          "ecosystem": "npm",
          "version_constraint": "npm:minipass@3"
        },
        {
          "name": "through2",
          "manifest": "bench/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.2"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "@npmcli/promise-spawn",
            "direct": true,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/promise-spawn",
            "direct": true,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@web-std/stream",
            "direct": true,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": true,
            "version": "3.3.6",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": true,
            "version": "4.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": true,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": true,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": true,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "through2",
            "direct": true,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "through2",
            "direct": true,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@alcalzone/ansi-tokenize",
            "direct": false,
            "version": "0.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "@base2/pretty-print-object",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bcoe/v8-coverage",
            "direct": false,
            "version": "0.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "@cspotcode/source-map-support",
            "direct": false,
            "version": "0.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/cliui",
            "direct": false,
            "version": "8.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/ts-node-temp-fork-for-pr-2009",
            "direct": false,
            "version": "10.9.6",
            "ecosystem": "npm"
          },
          {
            "name": "@istanbuljs/schema",
            "direct": false,
            "version": "0.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/resolve-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/sourcemap-codec",
            "direct": false,
            "version": "1.4.15",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/trace-mapping",
            "direct": false,
            "version": "0.3.25",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/trace-mapping",
            "direct": false,
            "version": "0.3.9",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/agent",
            "direct": false,
            "version": "2.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/fs",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/git",
            "direct": false,
            "version": "5.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/installed-package-contents",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/node-gyp",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/package-json",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/redact",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/run-script",
            "direct": false,
            "version": "7.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@pkgjs/parseargs",
            "direct": false,
            "version": "0.11.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/bundle",
            "direct": false,
            "version": "2.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/core",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/protobuf-specs",
            "direct": false,
            "version": "0.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/sign",
            "direct": false,
            "version": "2.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/tuf",
            "direct": false,
            "version": "2.3.4",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/verify",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/after",
            "direct": false,
            "version": "1.1.23",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/after-each",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/asserts",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/before",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/before-each",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/config",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/core",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/error-serdes",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/filter",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/fixture",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/intercept",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/mock",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/node-serialize",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/processinfo",
            "direct": false,
            "version": "3.1.7",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/reporter",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/run",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/snapshot",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/spawn",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/stack",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/stdin",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/test",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/typescript",
            "direct": false,
            "version": "1.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "@tapjs/worker",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tsconfig/node14",
            "direct": false,
            "version": "14.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@tsconfig/node16",
            "direct": false,
            "version": "16.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "@tsconfig/node18",
            "direct": false,
            "version": "18.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@tsconfig/node20",
            "direct": false,
            "version": "20.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "@tufjs/canonical-json",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tufjs/models",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@types/end-of-stream",
            "direct": false,
            "version": "1.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/istanbul-lib-coverage",
            "direct": false,
            "version": "2.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "20.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "abbrev",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "acorn",
            "direct": false,
            "version": "8.11.3",
            "ecosystem": "npm"
          },
          {
            "name": "acorn-walk",
            "direct": false,
            "version": "8.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "agent-base",
            "direct": false,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "aggregate-error",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-escapes",
            "direct": false,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-sequence-parser",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "anymatch",
            "direct": false,
            "version": "3.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "arg",
            "direct": false,
            "version": "4.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "async-hook-domain",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "auto-bind",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "binary-extensions",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.11",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "braces",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "c8",
            "direct": false,
            "version": "8.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "cacache",
            "direct": false,
            "version": "18.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "chalk",
            "direct": false,
            "version": "5.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "chokidar",
            "direct": false,
            "version": "3.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "chownr",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ci-info",
            "direct": false,
            "version": "3.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "clean-stack",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "cli-boxes",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cli-cursor",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cli-truncate",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "cliui",
            "direct": false,
            "version": "8.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "code-excerpt",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "color-convert",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "color-name",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "concat-map",
            "direct": false,
            "version": "0.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "convert-source-map",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "convert-to-spaces",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "core-util-is",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.3.4",
            "ecosystem": "npm"
          },
          {
            "name": "diff",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "diff",
            "direct": false,
            "version": "5.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "eastasianwidth",
            "direct": false,
            "version": "0.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "9.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "encoding",
            "direct": false,
            "version": "0.1.13",
            "ecosystem": "npm"
          },
          {
            "name": "end-of-stream",
            "direct": false,
            "version": "1.4.4",
            "ecosystem": "npm"
          },
          {
            "name": "env-paths",
            "direct": false,
            "version": "2.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "err-code",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "escalade",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "escape-string-regexp",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "events-to-array",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "exponential-backoff",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "fill-range",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "find-up",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "foreground-child",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "foreground-child",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "fromentries",
            "direct": false,
            "version": "1.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "fs-minipass",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs-minipass",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "fs.realpath",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fsevents",
            "direct": false,
            "version": "2.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "function-bind",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "function-loop",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-caller-file",
            "direct": false,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": false,
            "version": "10.3.16",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": false,
            "version": "7.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "glob-parent",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "graceful-fs",
            "direct": false,
            "version": "4.2.11",
            "ecosystem": "npm"
          },
          {
            "name": "has-flag",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "hasown",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "hosted-git-info",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "html-escaper",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "http-cache-semantics",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "http-proxy-agent",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "https-proxy-agent",
            "direct": false,
            "version": "7.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "iconv-lite",
            "direct": false,
            "version": "0.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "ignore-walk",
            "direct": false,
            "version": "6.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "imurmurhash",
            "direct": false,
            "version": "0.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "indent-string",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "indent-string",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "inflight",
            "direct": false,
            "version": "1.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "inherits",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "ink",
            "direct": false,
            "version": "4.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "ip-address",
            "direct": false,
            "version": "9.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "is-actual-promise",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "is-binary-path",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-ci",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-core-module",
            "direct": false,
            "version": "2.13.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-extglob",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-fullwidth-code-point",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-fullwidth-code-point",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-glob",
            "direct": false,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "is-lambda",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-lower-case",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "is-number",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-plain-object",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-upper-case",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "isarray",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-coverage",
            "direct": false,
            "version": "3.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-report",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-reports",
            "direct": false,
            "version": "3.1.7",
            "ecosystem": "npm"
          },
          {
            "name": "jackspeak",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "js-tokens",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "jsbn",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-parse-even-better-errors",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "jsonc-parser",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jsonparse",
            "direct": false,
            "version": "1.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "locate-path",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "lodash",
            "direct": false,
            "version": "4.17.21",
            "ecosystem": "npm"
          },
          {
            "name": "loose-envify",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "10.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "lunr",
            "direct": false,
            "version": "2.3.9",
            "ecosystem": "npm"
          },
          {
            "name": "make-dir",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "make-error",
            "direct": false,
            "version": "1.3.6",
            "ecosystem": "npm"
          },
          {
            "name": "make-fetch-happen",
            "direct": false,
            "version": "13.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "marked",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-fn",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "9.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-collect",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-fetch",
            "direct": false,
            "version": "3.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-flush",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-json-stream",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-pipeline",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-sized",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "minizlib",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "mkdirp",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "mkdirp",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "negotiator",
            "direct": false,
            "version": "0.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "node-abort-controller",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "node-gyp",
            "direct": false,
            "version": "10.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "nopt",
            "direct": false,
            "version": "7.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "normalize-package-data",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "normalize-path",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-bundled",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "npm-install-checks",
            "direct": false,
            "version": "6.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-normalize-package-bin",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "npm-package-arg",
            "direct": false,
            "version": "11.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "npm-packlist",
            "direct": false,
            "version": "8.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "npm-pick-manifest",
            "direct": false,
            "version": "9.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "npm-registry-fetch",
            "direct": false,
            "version": "16.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "once",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "onetime",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "opener",
            "direct": false,
            "version": "1.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "p-limit",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "p-locate",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "p-map",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "pacote",
            "direct": false,
            "version": "17.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "patch-console",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "path-exists",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "path-is-absolute",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-key",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-scurry",
            "direct": false,
            "version": "1.11.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "2.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "pirates",
            "direct": false,
            "version": "4.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "polite-json",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "prettier",
            "direct": false,
            "version": "2.8.8",
            "ecosystem": "npm"
          },
          {
            "name": "prismjs",
            "direct": false,
            "version": "1.29.0",
            "ecosystem": "npm"
          },
          {
            "name": "prismjs-terminal",
            "direct": false,
            "version": "1.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "proc-log",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "proc-log",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "process-nextick-args",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "process-on-spawn",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "promise-inflight",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "promise-retry",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "react",
            "direct": false,
            "version": "18.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "react-dom",
            "direct": false,
            "version": "18.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "react-element-to-jsx-string",
            "direct": false,
            "version": "15.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "react-is",
            "direct": false,
            "version": "18.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "react-reconciler",
            "direct": false,
            "version": "0.29.2",
            "ecosystem": "npm"
          },
          {
            "name": "read-package-json",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "read-package-json-fast",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "readable-stream",
            "direct": false,
            "version": "2.3.8",
            "ecosystem": "npm"
          },
          {
            "name": "readable-stream",
            "direct": false,
            "version": "3.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "readdirp",
            "direct": false,
            "version": "3.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "require-directory",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "resolve-import",
            "direct": false,
            "version": "1.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "restore-cursor",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "retry",
            "direct": false,
            "version": "0.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "rimraf",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "rimraf",
            "direct": false,
            "version": "5.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "safe-buffer",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "safe-buffer",
            "direct": false,
            "version": "5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "safer-buffer",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "scheduler",
            "direct": false,
            "version": "0.23.2",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-command",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shiki",
            "direct": false,
            "version": "0.14.4",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "3.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "sigstore",
            "direct": false,
            "version": "2.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "slice-ansi",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "slice-ansi",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "smart-buffer",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "socks",
            "direct": false,
            "version": "2.8.3",
            "ecosystem": "npm"
          },
          {
            "name": "socks-proxy-agent",
            "direct": false,
            "version": "8.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-correct",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-exceptions",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-expression-parse",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-license-ids",
            "direct": false,
            "version": "3.0.18",
            "ecosystem": "npm"
          },
          {
            "name": "sprintf-js",
            "direct": false,
            "version": "1.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "ssri",
            "direct": false,
            "version": "10.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "stack-utils",
            "direct": false,
            "version": "2.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "string-length",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "4.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "string_decoder",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "string_decoder",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-ansi",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-ansi",
            "direct": false,
            "version": "7.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "supports-color",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "sync-content",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "tap",
            "direct": false,
            "version": "19.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tap-parser",
            "direct": false,
            "version": "16.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tap-yaml",
            "direct": false,
            "version": "2.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "tar",
            "direct": false,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "tcompare",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "test-exclude",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "to-regex-range",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "trivial-deferred",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tshy",
            "direct": false,
            "version": "1.14.0",
            "ecosystem": "npm"
          },
          {
            "name": "tslib",
            "direct": false,
            "version": "2.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "tuf-js",
            "direct": false,
            "version": "2.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "type-fest",
            "direct": false,
            "version": "0.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "typedoc",
            "direct": false,
            "version": "0.25.1",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "unique-filename",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "unique-slug",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "util-deprecate",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "uuid",
            "direct": false,
            "version": "8.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "v8-compile-cache-lib",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "v8-to-istanbul",
            "direct": false,
            "version": "9.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "validate-npm-package-license",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "validate-npm-package-name",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "vscode-oniguruma",
            "direct": false,
            "version": "1.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "vscode-textmate",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "walk-up-path",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "web-streams-polyfill",
            "direct": false,
            "version": "3.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "widest-line",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "8.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrappy",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "ws",
            "direct": false,
            "version": "8.17.0",
            "ecosystem": "npm"
          },
          {
            "name": "xtend",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "y18n",
            "direct": false,
            "version": "5.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "yaml",
            "direct": false,
            "version": "2.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "yaml-types",
            "direct": false,
            "version": "0.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "yargs",
            "direct": false,
            "version": "17.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "yargs-parser",
            "direct": false,
            "version": "21.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "yocto-queue",
            "direct": false,
            "version": "0.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "yoga-wasm-web",
            "direct": false,
            "version": "0.3.3",
            "ecosystem": "npm"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 329,
        "direct_count": 10,
        "indirect_count": 319
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 2,
        "merged_prs": 8,
        "open_issues": 2,
        "closed_ratio": 0.909,
        "closed_issues": 20,
        "closed_unmerged_prs": 25
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "isaacs",
          "commits": 260,
          "avatar_url": "https://avatars.githubusercontent.com/u/9287?v=4"
        },
        {
          "type": "User",
          "login": "neurolag",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/7085564?v=4"
        },
        {
          "type": "User",
          "login": "everett1992",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/650035?v=4"
        },
        {
          "type": "User",
          "login": "MysteryBlokHed",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/13910387?v=4"
        },
        {
          "type": "User",
          "login": "JamesMGreene",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/417751?v=4"
        },
        {
          "type": "User",
          "login": "josephfrazier",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/6473925?v=4"
        },
        {
          "type": "User",
          "login": "mgred",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/2325260?v=4"
        },
        {
          "type": "User",
          "login": "mcollina",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/52195?v=4"
        },
        {
          "type": "User",
          "login": "sgammon",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/171897?v=4"
        },
        {
          "type": "User",
          "login": "Its-Just-Nans",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/56606507?v=4"
        }
      ],
      "contributors_sampled": 10,
      "top_contributor_share": 0.956
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "static.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 6,
            "reason": "project has 2 contributing companies or organizations -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "26 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "ab4b3b05d0d557ac6bb178f38501b11d0c96454e",
        "ran_at": "2026-07-22T16:29:08Z",
        "aggregate_score": 2.9,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-02-19T00:35:42Z",
      "oldest_open_prs": [
        {
          "number": 58,
          "created_at": "2026-03-19T01:10:33Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 59,
          "created_at": "2026-04-16T21:50:33Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2023-05-15T04:41:15Z",
      "ci_last_conclusion": "FAILURE",
      "oldest_open_issues": [
        {
          "number": 56,
          "created_at": "2024-05-21T19:55:53Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 57,
          "created_at": "2025-04-26T06:18:23Z",
          "last_comment_at": "2026-04-16T08:58:32Z",
          "last_comment_author": "jonkoops"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/isaacs/minipass",
    "host": "github.com",
    "name": "minipass",
    "owner": "isaacs"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 56,
      "inputs": {
        "security": 43,
        "vitality": 38,
        "community": 75,
        "governance": 61,
        "engineering": 62
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "at_risk",
        "name": "Vitality",
        "value": 38,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "critical",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 17,
            "inputs": {
              "commits_last_year": 3,
              "human_commit_share": 1,
              "days_since_last_push": 153,
              "active_weeks_last_year": 2
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 153 days ago",
                "points": 9.9,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 153
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "2/52 weeks with commits",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 2
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "3 commits in the last year",
                "points": 5.4,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "good",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 70,
            "inputs": {
              "releases_count": 95,
              "latest_release_tag": "v7.1.3",
              "releases_from_tags": true,
              "days_since_latest_release": 153,
              "mean_days_between_releases": 112
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "95 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 95
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 153 days ago",
                "points": 27,
                "status": "partial",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 153
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~112 days",
                "points": 19.8,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 112
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 153,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 153 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 153
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "good",
        "name": "Community & Adoption",
        "value": 75,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "moderate",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 51,
            "inputs": {
              "forks": 30,
              "stars": 262,
              "watchers": 2,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "262 stars",
                "points": 39.2,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 262
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "30 forks",
                "points": 12.2,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 30
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "2 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (BlueOak-1.0.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "BlueOak-1.0.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "excellent",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "packages": [
                "minipass"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 1453055286
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "1,453,055,286 downloads/month across npm",
                "points": 80,
                "status": "met",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 1453055286,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 61,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "at_risk",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 30,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 10,
              "top_contributor_share": 0.956
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 96% of commits",
                "points": 1,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 96
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "10 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 52,
            "inputs": {
              "merged_prs": 8,
              "open_issues": 2,
              "closed_issues": 20,
              "issue_closed_ratio": 0.909,
              "closed_unmerged_prs": 25
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "91% of issues closed",
                "points": 42.5,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 91
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "8/33 decided PRs merged",
                "points": 9.3,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 8,
                      "decided": 33
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 75,
            "inputs": {
              "followers": 16219,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "isaacs",
              "public_repos": 488,
              "account_age_days": 6652
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "16,219 followers of isaacs",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 16219,
                      "login": "isaacs"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "488 public repos, account ~18 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 488
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 18
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "minipass"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 153
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 153 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 153
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "95 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 95
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 62,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 60,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "2 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 65,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": "https://twitter.com/izs/status/1174465160737509376",
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://twitter.com/izs/status/1174465160737509376",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 43,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "critical",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 29,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 15,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 3,
              "scorecard_aggregate": 2.9
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "26 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 329 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories",
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 329
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 42,
              "affected_packages": 19,
              "assessed_packages": 329,
              "unassessed_packages": 0,
              "affected_by_severity": "high 13, moderate 6",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 329,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 24
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "at_risk",
        "name": "AI Readiness",
        "value": 42,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "critical",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 12,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.23,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "23 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 12.3,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 23,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "at_risk",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 43,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "package-lock.json"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "tsconfig.json"
              ],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 37849,
              "source_files_sampled": 52,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/52 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 52,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T16:29:17.279618Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/i/isaacs/minipass.svg",
  "full_name": "isaacs/minipass",
  "license_state": "standard",
  "license_spdx": "BlueOak-1.0.0"
}

Las puntuaciones son señales, no garantías. Reflejan prácticas públicamente visibles en GitHub; no son una auditoría de código ni una garantía de seguridad.

Los datos ausentes se excluyen y los pesos se renormalizan; nunca se puntúan como cero. La metodología es versionada y abierta: métricas v1.13.0, esquema v0.26.0 — metodología completa · wiki de métricas.

Cómo se sitúa un resultado dentro del registro general: estadísticas agregadasnpm.