Registro público
Informe de salud del softwareesquema 0.27.0 · métricas 2.5.0 · 2026-08-01 01:43 UTC

vizzly-testing / cli

Visual testing CLI with local TDD workflow. Catch UI bugs before you commit.

JavaScriptMIT★ 34 estrellas⑂ 2 forksdesde jul 2025Ver en GitHub ↗
TipoHerramienta de línea de comandosBibliotecaInterfaz webcómo se determina

vizzly-testing/cli tiene un índice de salud de 80 sobre 100, lo que lo sitúa en la banda Excelente. Su puntuación más alta es Vitality (94/100) y la más baja, Community & Adoption (46/100). Se actualizó por última vez hace 2 días. Una sola persona concentra la mayor parte del trabajo reciente.

80
global / 100
Excelente

Índice de salud del software

Las métricas se agrupan en categorías ponderadas sobre una escala estandarizada de 1 a 100. El resultado global parte de su media ponderada, calibrada contra la distribución del registro público para que las bandas tengan significado percentil; cuando la evidencia pública activa la Política de Jurisdicciones de Alto Riesgo, la calificación se ajusta y recibe un límite «En riesgo» de 34.

80
Excepcional93-100El nivel más alto del registro (≈ el 5% superior); cumple prácticamente todos los criterios evaluados
Excelente80-92Sólido en todos los frentes; carencias menores
Bueno65-79Saludable; carencias limitadas y manejables
Moderado50-64Aceptable con carencias notables; se recomienda revisión
Débil35-49Debilidades sustanciales en varias áreas
En riesgo20-34Debilidades significativas; su adopción exige cautela
Crítico1-19Problemas graves (proyecto abandonado, un solo mantenedor, sin higiene)
VitalidadComunidad yAdopciónSostenibilidady GobernanzaCalidad deIngenieríaSeguridadPreparaciónpara IA

Perfil de puntuación

Cada eje es una categoría. La forma importa más que la media: un proyecto sano llena toda la figura, mientras que un perfil de picos y cráteres indica que la fortaleza en una dimensión enmascara el riesgo en otra.

El resultado global ponderado 68 se calibra a 80 en la escala publicada del índice (calibración del registro 2026-08-02).

Titularidad

VizzlyOrganización
3 seguidores5 repositorios públicosdesde jun 2025

Este repositorio está respaldado por una organización: una custodia compartida y responsable que puede sobrevivir a cualquier mantenedor individual.

Ecosistemas de paquetes

RegistroPaqueteVersiónDescargas / mesVersionesÚltima publicaciónEtiquetas
npm@vizzly-testing/cli0.35.229.23879hace 41 díasllm-contextvisual-contextapproved-baselinesvisual-testingscreenshot-testingvisual-reviewui-testingcollaborationtestingcli

Métricas por categoría

Vitalidad

¿Está vivo el proyecto: se escribe código y se publican versiones?

94Excepcional · 21% del índice global
Cómo se puntúa
36/36Recencia de push — último push hace 2 días
33.2/36Cadencia de commits — 48/52 semanas con commits
18/18Volumen de commits — 485 commits en el último año
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Datos de entrada utilizados
commits_last_year485
human_commit_share0,8
days_since_last_push2
active_weeks_last_year48
Cómo se puntúa
27/27Publica versiones — 100 versiones publicadas
36/36Recencia de las versiones — última versión hace 9 días
27/27Cadencia de publicación — una versión cada ~5,7 días
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Datos de entrada utilizados
releases_count100
latest_release_tagv0.35.3-beta.0
releases_from_tagsno
days_since_latest_release9
mean_days_between_releases5,7

Comunidad y Adopción

¿Tiene el proyecto usuarios, descargas, atención y unas condiciones acogedoras para quienes contribuyen?

46Débil · 17% del índice global
Cómo se puntúa
24.6/60Estrellas — 34 estrellas
0/25Forks — 2 forks
0/15Observadores — 2 observadores
Datos de entrada utilizados
forks2
stars34
watchers2
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Cómo se puntúa
22.5/22.5README
22.5/22.5Licencia — licencia reconocida (MIT)
0/18Guía CONTRIBUTING
0/13.5Código de conducta
0/7.2Plantilla de issues
0/6.3Plantilla de PR
Datos de entrada utilizados
has_readme
has_license
readme_badges
has_contributingno
has_issue_templateno
has_code_of_conductno
readme_badge_services
has_pull_request_templateno
Cómo se puntúa
59.5/80Descargas mensuales — 29.238 descargas/mes en npm
0/20Dependientes en el registro — no lo informa este ecosistema
Datos de entrada utilizados
packages@vizzly-testing/cli
dependents
ecosystemsnpm
total_downloads
monthly_downloads29.238
Excluidos de la puntuación (sin datos o no aplicable): Dependientes en el registro. Los pesos restantes se han renormalizado.

Sostenibilidad y Gobernanza

¿Sobrevivirá el proyecto a sus personas: factor bus, capacidad de respuesta, quién lo respalda y mantenimiento del paquete?

55Moderado · 23% del índice global
Cómo se puntúa
9/54Factor bus — la mitad de los commits recae en 1 contribuyente(s)
0.3/22.5Distribución de commits — el principal contribuyente firma el 99% de los commits
4.1/13.5Amplitud de contribuyentes — 3 contribuyentes
6/10OpenSSF Scorecard: Contributors — project has 2 contributing companies or organizations -- score normalized to 6
Datos de entrada utilizados
bus_factor1
contributors_sampled3
top_contributor_share0,986
Cómo se puntúa
37/42Resolución de issues — 88% de issues cerradas
27.3/30Aceptación de PR — 278/306 PR decididos fusionados
0/13Newcomer PR acceptance — ningún PR de un contribuyente primerizo decidido en 30 d
0/15OpenSSF Scorecard: Code-Review — Found 0/23 approved changesets -- score normalized to 0
Datos de entrada utilizados
merged_prs278
open_issues3
closed_issues22
prs_merged_7d
prs_decided_7d
prs_merged_30d
prs_decided_30d
issue_closed_ratio0,88
closed_unmerged_prs28
first_time_authors_30d
first_time_prs_merged_30d
first_time_prs_decided_30d
Excluidos de la puntuación (sin datos o no aplicable): newcomer_pr_acceptance. Los pesos restantes se han renormalizado.
Cómo se puntúa
30/30Respaldo de la propiedad — propiedad de una organización
0/20Dominio verificado
4.3/25Alcance del propietario — 3 seguidores de vizzly-testing
7.8/25Trayectoria — 5 repos públicos, cuenta de ~1 años
Datos de entrada utilizados
followers3
owner_typeOrganization
is_verified
owner_loginvizzly-testing
public_repos5
account_age_days398
Cómo se puntúa
25/25Publicado y resoluble — 1 paquete(s) en npm
35/35Recencia de publicación — última publicación hace 41 días
20/20Historial de versiones — 79 versiones en el registro
20/20No obsoleto — activo, ni obsoleto ni retirado
Datos de entrada utilizados
packages@vizzly-testing/cli
ecosystemsnpm
any_deprecatedno
min_days_since_publish41

Calidad de Ingeniería

¿Existen unas prácticas mínimas de ingeniería y documentación?

86Excelente · 19% del índice global
Cómo se puntúa
24/24Flujos de trabajo de CI — 12 flujo(s) de trabajo
24/24Pruebas presentes
16/16Configuración de linter — .eslintrc.cjs, .rubocop.yml, biome.json
0/9.6Hooks de pre-commit
6.4/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 28 out of 28 merged PRs checked by a CI test -- score normalized to 10
Datos de entrada utilizados
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_configno

Documentación

80Excelente
Cómo se puntúa
30/30README
25/25Directorio de documentación
15/15Sitio de documentación / página del proyecto — https://docs.vizzly.dev
10/10Descripción del repositorio
0/10Topics
0/10Wiki
Datos de entrada utilizados
topics
has_wikino
homepagehttps://docs.vizzly.dev
has_readme
has_docs_dir
has_description

Seguridad

¿Son sólidas las prácticas visibles de seguridad y de cadena de suministro, sin exposición jurisdiccional de alto riesgo sin resolver?

56Moderado · 16% del índice global
Cómo se puntúa
7.5/7.5Binary-Artifacts — no binaries found in the repo
0.8/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 28 out of 28 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/23 approved changesets -- score normalized to 0
1.5/2.5Contributors — project has 2 contributing companies or organizations -- score normalized to 6
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Licencia — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
2.5/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 5
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 24 existing vulnerabilities detected
Datos de entrada utilizados
sourceopenssf_scorecard
checks_evaluated18
scorecard_versionv5.5.0
checks_inconclusive0
scorecard_aggregate4,5
Cómo se puntúa
35/35Dependencias directas libres de avisos conocidos — ninguna dependencia directa tiene un aviso conocido
25/25Dependencias indirectas libres de avisos conocidos — ninguna dependencia indirecta tiene un aviso conocido
0/40Sin avisos pendientes — ningún aviso tiene fecha de publicación
Datos de entrada utilizados
sourceosv
advisories0
affected_packages0
assessed_packages56
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Excluidos de la puntuación (sin datos o no aplicable): Sin avisos pendientes. Los pesos restantes se han renormalizado. Se cotejó el cierre de dependencias en tiempo de ejecución de npm:@vizzly-testing/cli@0.35.2 —lo que arrastra la instalación del paquete publicado—: 56 paquetes. No se analiza la alcanzabilidad.

Preparación para IA

¿Hasta qué punto está el repositorio preparado para desarrollarse y mantenerse con agentes de codificación de IA? Tiene un peso deliberadamente pequeño (4%): las herramientas para agentes son una señal real de mantenimiento, pero un repositorio sin ninguna puede alcanzar igualmente 100/100.

62Moderado · 4% del índice global
Cómo se puntúa
45/45Instrucciones para agentes — AGENTS.md
0/15Documentación legible por máquinas (llms.txt)
40/40Historial de commits legible — 63 de 80 commits humanos declaran su intención (asunto estructurado o cuerpo explicativo)
Datos de entrada utilizados
has_llms_txtno
legible_history_share0,787
agent_instruction_filesAGENTS.md
agent_instruction_max_bytes2908
Cómo se puntúa
0/18Arranque con un solo comando
22/22Pruebas automatizadas
11/11Configuración de lint / formato — .eslintrc.cjs, .rubocop.yml, biome.json
0/11Verificación estática de tipos
10/10Entorno reproducible — Dockerfile, lockfile
0/10Práctica demostrada con agentes — ningún commit con autoría de agente entre los últimos 100
8/8Mantenimiento automatizado — 20 de los últimos 100 commits son actualizaciones automáticas de dependencias
5/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 5
Datos de entrada utilizados
has_nixno
has_tests
lockfilespnpm-lock.yaml
has_dockerfile
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_config
typecheck_configs
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0,2
Cómo se puntúa
0/45Código verificable por tipos — JavaScript sin configuración de verificación de tipos
54.9/55Tamaños de archivo manejables — 1/433 archivos fuente de más de 60 KB
Datos de entrada utilizados
primary_languageJavaScript
largest_source_bytes74.109
source_files_sampled433
oversized_source_files1
Cómo se puntúa
0/40Esquema de API (OpenAPI/GraphQL/proto)
0/20Servidor MCP
40/40Ejemplos ejecutables — example, examples
Datos de entrada utilizados
example_dirsexample, examples
has_mcp_signalno
api_schema_files

Datos clave

34estrellas de GitHub
3contribuidores
485commits en los últimos 12 meses
2días desde el último push
100versiones publicadas
1factor bus
3issues abiertas
npmecosistemas de paquetes

Advertencias de recopilación de datos

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • Could not fetch npm package 'fluffycloud-test-site' from its registry
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Más detalle

Historial de estrellas y forks 0 ★ / 2 ⇿
0Estrellas
2Forks
66Versiones

Cuándo se añadió cada estrella y fork, recopilado de GitHub y agrupado por día. El crecimiento acumulado se sitúa justo encima de las adiciones diarias que lo componen, de modo que ambos se leen en conjunto: la acumulación orgánica sostenida no se parece en nada a un pico abrupto y efímero. Cuando esa diferencia es medible, se informa como autenticidad del crecimiento.

111222212025-112026-022026-05
Mayor 0Menor 18Parche 26
OpenSSF Scorecard 4.5 / 10
4.5agregado

Evaluación de seguridad independiente y agnóstica en cuanto a herramientas, procedente del proyecto de código abierto OpenSSF Scorecard. Cada comprobación premia una práctica de seguridad, no la herramienta de un proveedor concreto. Las comprobaciones que Scorecard no pudo determinar se marcan como n/d y se excluyen de la puntuación de seguridad (nunca se cuentan como cero).Scorecard v5.5.0 · 2026-08-01 01:42 UTC

10Binary-Artifactsno binaries found in the repo
1Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests28 out of 28 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/23 approved changesets -- score normalized to 0
6Contributorsproject has 2 contributing companies or organizations -- score normalized to 6
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
5Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 5
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities24 existing vulnerabilities detected
Dependencias directas 11
RegistroPaqueteRestricción de versiónManifiesto
npm@vizzly-testing/bear-den0.1.4package.json
npm@vizzly-testing/honeydiff^0.11.1package.json
npmansis^4.2.0package.json
npmcommander^15.0.0package.json
npmcosmiconfig^9.0.0package.json
npmdotenv^17.2.1package.json
npmform-data^4.0.0package.json
npmglob^13.0.0package.json
npmreact^19.1.1package.json
npmreact-dom^19.1.1package.json
npmzod^4.1.12package.json
Todas las dependencias no recopilado

No fue posible recopilar el conjunto de dependencias resuelto para este informe: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Avisos de dependencias 0

Instalar npm:@vizzly-testing/cli@0.35.2 arrastra 56 paquetes, directos y transitivos: 0 tienen avisos conocidos, de los cuales 0 son dependencias directas.

Ningún aviso conocido afecta a las dependencias evaluadas.

Un aviso significa que la versión registrada en el grafo de dependencias cae dentro del rango afectado de un aviso. No se analiza la alcanzabilidad, y el grafo incluye fijaciones de desarrollo y prueba: un hallazgo puede referirse al utillaje y no al software distribuido.

Informe JSON sin procesar legible por máquina
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 9479,
      "has_wiki": false,
      "homepage": "https://docs.vizzly.dev",
      "languages": {
        "CSS": 27097,
        "HTML": 103154,
        "Ruby": 37818,
        "Shell": 1385,
        "Swift": 47122,
        "Dockerfile": 1777,
        "JavaScript": 3082093,
        "TypeScript": 17830
      },
      "pushed_at": "2026-07-29T20:32:44Z",
      "created_at": "2025-07-23T06:32:36Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-26T17:39:56Z",
      "description": "Visual testing CLI with local TDD workflow. Catch UI bugs before you commit.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "JavaScript",
      "significant_languages": [
        "JavaScript"
      ]
    },
    "owner": {
      "blog": "https://vizzly.dev",
      "name": "Vizzly",
      "type": "Organization",
      "login": "vizzly-testing",
      "company": null,
      "location": null,
      "followers": 3,
      "avatar_url": "https://avatars.githubusercontent.com/u/218377636?v=4",
      "created_at": "2025-06-28T13:57:32Z",
      "is_verified": null,
      "public_repos": 5,
      "account_age_days": 398
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.35.3-beta.0",
          "kind": "prerelease",
          "published_at": "2026-07-22T16:58:29Z"
        },
        {
          "tag": "v0.35.2",
          "kind": "patch",
          "published_at": "2026-06-20T16:48:02Z"
        },
        {
          "tag": "v0.35.1",
          "kind": "patch",
          "published_at": "2026-06-19T19:21:10Z"
        },
        {
          "tag": "swift/v0.1.0",
          "kind": "other",
          "published_at": "2026-06-01T03:12:32Z"
        },
        {
          "tag": "ruby/v0.3.0",
          "kind": "other",
          "published_at": "2026-06-01T02:57:18Z"
        },
        {
          "tag": "ember/v0.1.0",
          "kind": "other",
          "published_at": "2026-06-01T02:36:52Z"
        },
        {
          "tag": "vitest/v0.2.0",
          "kind": "other",
          "published_at": "2026-06-01T02:33:20Z"
        },
        {
          "tag": "storybook/v0.8.0",
          "kind": "other",
          "published_at": "2026-06-01T02:30:35Z"
        },
        {
          "tag": "static-site/v0.3.0",
          "kind": "other",
          "published_at": "2026-06-01T01:43:41Z"
        },
        {
          "tag": "v0.35.0",
          "kind": "minor",
          "published_at": "2026-05-31T23:12:42Z"
        },
        {
          "tag": "v0.34.0",
          "kind": "minor",
          "published_at": "2026-05-27T23:10:14Z"
        },
        {
          "tag": "v0.33.0",
          "kind": "minor",
          "published_at": "2026-05-27T04:59:58Z"
        },
        {
          "tag": "v0.32.0",
          "kind": "minor",
          "published_at": "2026-05-23T19:52:24Z"
        },
        {
          "tag": "v0.31.0",
          "kind": "minor",
          "published_at": "2026-05-22T03:16:10Z"
        },
        {
          "tag": "v0.30.0",
          "kind": "minor",
          "published_at": "2026-05-02T06:03:14Z"
        },
        {
          "tag": "v0.29.6",
          "kind": "patch",
          "published_at": "2026-02-17T13:46:43Z"
        },
        {
          "tag": "v0.29.5",
          "kind": "patch",
          "published_at": "2026-02-16T23:09:48Z"
        },
        {
          "tag": "storybook/v0.7.0",
          "kind": "other",
          "published_at": "2026-02-16T20:00:20Z"
        },
        {
          "tag": "v0.29.4",
          "kind": "patch",
          "published_at": "2026-02-16T19:56:43Z"
        },
        {
          "tag": "v0.29.3",
          "kind": "patch",
          "published_at": "2026-02-14T04:52:32Z"
        },
        {
          "tag": "storybook/v0.6.0",
          "kind": "other",
          "published_at": "2026-02-13T00:24:02Z"
        },
        {
          "tag": "v0.29.2",
          "kind": "patch",
          "published_at": "2026-02-11T18:35:11Z"
        },
        {
          "tag": "v0.29.1",
          "kind": "patch",
          "published_at": "2026-02-10T02:53:22Z"
        },
        {
          "tag": "v0.29.0",
          "kind": "minor",
          "published_at": "2026-02-09T06:49:42Z"
        },
        {
          "tag": "v0.28.1",
          "kind": "patch",
          "published_at": "2026-02-09T04:06:51Z"
        },
        {
          "tag": "v0.28.0",
          "kind": "minor",
          "published_at": "2026-02-09T01:58:47Z"
        },
        {
          "tag": "v0.27.1",
          "kind": "patch",
          "published_at": "2026-02-09T00:18:58Z"
        },
        {
          "tag": "v0.27.0",
          "kind": "minor",
          "published_at": "2026-02-05T09:51:56Z"
        },
        {
          "tag": "v0.26.2",
          "kind": "patch",
          "published_at": "2026-02-03T09:15:06Z"
        },
        {
          "tag": "v0.26.1",
          "kind": "patch",
          "published_at": "2026-02-03T07:10:00Z"
        },
        {
          "tag": "v0.26.0",
          "kind": "minor",
          "published_at": "2026-02-03T06:10:01Z"
        },
        {
          "tag": "v0.25.1",
          "kind": "patch",
          "published_at": "2026-02-02T09:53:59Z"
        },
        {
          "tag": "storybook/v0.4.0",
          "kind": "other",
          "published_at": "2026-01-30T06:47:53Z"
        },
        {
          "tag": "static-site/v0.2.0",
          "kind": "other",
          "published_at": "2026-01-30T06:46:26Z"
        },
        {
          "tag": "v0.25.0",
          "kind": "minor",
          "published_at": "2026-01-30T06:44:53Z"
        },
        {
          "tag": "static-site/v0.1.0",
          "kind": "other",
          "published_at": "2026-01-30T03:51:48Z"
        },
        {
          "tag": "storybook/v0.3.0",
          "kind": "other",
          "published_at": "2026-01-30T03:50:03Z"
        },
        {
          "tag": "v0.24.1",
          "kind": "patch",
          "published_at": "2026-01-30T03:48:30Z"
        },
        {
          "tag": "storybook/v0.2.0",
          "kind": "other",
          "published_at": "2026-01-29T17:33:02Z"
        },
        {
          "tag": "storybook/v0.1.3",
          "kind": "other",
          "published_at": "2026-01-28T18:30:03Z"
        },
        {
          "tag": "v0.24.0",
          "kind": "minor",
          "published_at": "2026-01-28T07:30:28Z"
        },
        {
          "tag": "v0.23.2",
          "kind": "patch",
          "published_at": "2026-01-26T14:28:51Z"
        },
        {
          "tag": "v0.23.1",
          "kind": "patch",
          "published_at": "2026-01-19T23:38:53Z"
        },
        {
          "tag": "vitest/v0.1.1",
          "kind": "other",
          "published_at": "2026-01-15T06:47:22Z"
        },
        {
          "tag": "v0.23.0",
          "kind": "minor",
          "published_at": "2026-01-15T06:45:42Z"
        },
        {
          "tag": "ember/v0.0.3",
          "kind": "other",
          "published_at": "2026-01-07T05:07:56Z"
        },
        {
          "tag": "vitest/v0.1.0",
          "kind": "other",
          "published_at": "2026-01-07T03:44:52Z"
        },
        {
          "tag": "v0.22.2",
          "kind": "patch",
          "published_at": "2026-01-07T03:19:05Z"
        },
        {
          "tag": "v0.22.1",
          "kind": "patch",
          "published_at": "2026-01-07T01:03:43Z"
        },
        {
          "tag": "static-site/v0.0.11",
          "kind": "other",
          "published_at": "2026-01-06T22:10:34Z"
        },
        {
          "tag": "ember/v0.0.2",
          "kind": "other",
          "published_at": "2026-01-06T18:56:18Z"
        },
        {
          "tag": "ember/v0.0.1",
          "kind": "other",
          "published_at": "2026-01-06T08:21:42Z"
        },
        {
          "tag": "v0.22.0",
          "kind": "minor",
          "published_at": "2026-01-05T08:18:23Z"
        },
        {
          "tag": "v0.21.2",
          "kind": "patch",
          "published_at": "2026-01-03T00:29:16Z"
        },
        {
          "tag": "v0.21.1",
          "kind": "patch",
          "published_at": "2025-12-23T22:27:10Z"
        },
        {
          "tag": "static-site/v0.0.10",
          "kind": "other",
          "published_at": "2025-12-22T17:20:25Z"
        },
        {
          "tag": "static-site/v0.0.9",
          "kind": "other",
          "published_at": "2025-12-22T06:51:20Z"
        },
        {
          "tag": "static-site/v0.0.8",
          "kind": "other",
          "published_at": "2025-12-22T05:42:11Z"
        },
        {
          "tag": "v0.21.0",
          "kind": "minor",
          "published_at": "2025-12-21T01:45:47Z"
        },
        {
          "tag": "v0.20.1",
          "kind": "patch",
          "published_at": "2025-12-19T20:11:31Z"
        },
        {
          "tag": "v0.20.1-beta.1",
          "kind": "prerelease",
          "published_at": "2025-12-17T09:25:03Z"
        },
        {
          "tag": "v0.20.1-beta.0",
          "kind": "prerelease",
          "published_at": "2025-12-15T00:52:26Z"
        },
        {
          "tag": "v0.20.0",
          "kind": "minor",
          "published_at": "2025-12-13T01:42:57Z"
        },
        {
          "tag": "v0.19.2",
          "kind": "patch",
          "published_at": "2025-12-12T08:48:26Z"
        },
        {
          "tag": "v0.19.1",
          "kind": "patch",
          "published_at": "2025-12-12T02:01:13Z"
        },
        {
          "tag": "v0.19.0",
          "kind": "minor",
          "published_at": "2025-12-11T22:54:21Z"
        },
        {
          "tag": "v0.18.0",
          "kind": "minor",
          "published_at": "2025-12-10T10:34:56Z"
        },
        {
          "tag": "v0.17.0",
          "kind": "minor",
          "published_at": "2025-12-04T07:26:39Z"
        },
        {
          "tag": "v0.16.4",
          "kind": "patch",
          "published_at": "2025-12-03T06:08:16Z"
        },
        {
          "tag": "v0.16.3",
          "kind": "patch",
          "published_at": "2025-12-01T08:15:23Z"
        },
        {
          "tag": "v0.16.2",
          "kind": "patch",
          "published_at": "2025-12-01T03:37:05Z"
        },
        {
          "tag": "v0.16.1",
          "kind": "patch",
          "published_at": "2025-12-01T00:12:06Z"
        },
        {
          "tag": "storybook/v0.1.2",
          "kind": "other",
          "published_at": "2025-11-30T23:37:47Z"
        },
        {
          "tag": "static-site/v0.0.7",
          "kind": "other",
          "published_at": "2025-11-30T23:30:22Z"
        },
        {
          "tag": "v0.16.0",
          "kind": "minor",
          "published_at": "2025-11-29T09:02:34Z"
        },
        {
          "tag": "v0.15.1",
          "kind": "patch",
          "published_at": "2025-11-29T04:32:48Z"
        },
        {
          "tag": "vitest/v0.0.3",
          "kind": "other",
          "published_at": "2025-11-29T04:19:05Z"
        },
        {
          "tag": "v0.15.0",
          "kind": "minor",
          "published_at": "2025-11-29T04:15:50Z"
        },
        {
          "tag": "v0.14.0",
          "kind": "minor",
          "published_at": "2025-11-22T01:50:21Z"
        },
        {
          "tag": "v0.13.4",
          "kind": "patch",
          "published_at": "2025-11-18T04:49:57Z"
        },
        {
          "tag": "v0.13.3",
          "kind": "patch",
          "published_at": "2025-11-18T04:27:28Z"
        },
        {
          "tag": "v0.13.2",
          "kind": "patch",
          "published_at": "2025-11-17T23:28:50Z"
        },
        {
          "tag": "v0.13.1",
          "kind": "patch",
          "published_at": "2025-10-26T00:53:47Z"
        },
        {
          "tag": "v0.13.0",
          "kind": "minor",
          "published_at": "2025-10-25T23:46:30Z"
        },
        {
          "tag": "vitest/v0.0.2",
          "kind": "other",
          "published_at": "2025-10-25T23:44:33Z"
        },
        {
          "tag": "v0.12.0",
          "kind": "minor",
          "published_at": "2025-10-21T06:43:42Z"
        },
        {
          "tag": "v0.11.2",
          "kind": "patch",
          "published_at": "2025-10-21T04:45:34Z"
        },
        {
          "tag": "static-site/v0.0.6",
          "kind": "other",
          "published_at": "2025-10-18T03:33:54Z"
        },
        {
          "tag": "static-site/v0.0.5",
          "kind": "other",
          "published_at": "2025-10-18T00:30:29Z"
        },
        {
          "tag": "v0.11.1",
          "kind": "patch",
          "published_at": "2025-10-18T00:28:04Z"
        },
        {
          "tag": "v0.11.0",
          "kind": "minor",
          "published_at": "2025-10-17T05:22:07Z"
        },
        {
          "tag": "static-site/v0.0.4",
          "kind": "other",
          "published_at": "2025-10-12T00:59:34Z"
        },
        {
          "tag": "v0.10.3",
          "kind": "patch",
          "published_at": "2025-10-12T00:57:08Z"
        },
        {
          "tag": "storybook/v0.1.1",
          "kind": "other",
          "published_at": "2025-10-11T23:40:37Z"
        },
        {
          "tag": "static-site/v0.0.3",
          "kind": "other",
          "published_at": "2025-10-11T23:38:45Z"
        },
        {
          "tag": "static-site/v0.0.2",
          "kind": "other",
          "published_at": "2025-10-11T23:25:59Z"
        },
        {
          "tag": "v0.10.2",
          "kind": "patch",
          "published_at": "2025-10-11T22:59:03Z"
        },
        {
          "tag": "v0.10.1",
          "kind": "patch",
          "published_at": "2025-10-11T19:22:57Z"
        },
        {
          "tag": "v0.10.0",
          "kind": "minor",
          "published_at": "2025-10-11T05:32:54Z"
        },
        {
          "tag": "storybook/v0.1.0",
          "kind": "other",
          "published_at": "2025-10-08T18:14:58Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "4797835ea1255a6ef21d3716649d6157c6e66f4b",
          "body": "## Why\n\nVizzly now owns compact versus complete dynamic-region response detail\nin API PR #653. The CLI should preserve those server-provided facts\nwithout understanding exclusion reasons or duplicating API rules.\n\n## What changed\n\nThe real CLI boundary test now serves distinct compact and complete A\n[…]\nThis follow-on is intentionally test-only because the existing client\npass-through was already the correct implementation once the API owned\nresponse detail.\n\nDepends on the merged Vizzly API PR #653.",
          "is_bot": false,
          "headline": "🧪 Preserve API-owned region context (#331)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-26T17:39:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "80764d68fafdf57e835f4112c4dfada360fdbec6",
          "body": "…s (#311)\n\nBumps the major-dependencies group with 8 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n|\n[@babel/cli](https://github.com/babel/babel/tree/HEAD/packages/babel-cli)\n| `7.29.7` | `8.0.1` |\n|\n[@babel/core](https://github.com/babel/babel/tree/HEAD/packages/babel-cor\n[…]\n/github.com/babel/babel/commit/f297c4238cb0405977d2a300c5f4297891814dfe\"><code>f297c42</code></a>\nAdd testing for plugin options (<a\nhref=\"https://github.com/babel/babel/tree/HEAD/packages/babel-pres…",
          "is_bot": true,
          "headline": "⬆️ Bump the major-dependencies group across 1 directory with 8 update…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-26T05:51:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6362199682eae8f734f761de9ca50b902fd08878",
          "body": "## Why\n\nThe development package script sourced one ignored env file for every\nrun, which could pair the localhost API with production project\ncredentials. This is dogfood ergonomics, not a reason to add public CLI\nprofiles, commands, migrations, or auth behavior.\n\n## Approach\n\nRoute the two developm\n[…]\ncontinues to resolve production from the released `~/.vizzly` schema.\n\nThe launcher and scripts directory are excluded from the published\npackage files, so this does not add a user-facing CLI surface.",
          "is_bot": false,
          "headline": "🔧 Isolate CLI dogfood targets (#330)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-26T05:43:01Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bb427a48e79e25cc93bf39803fe51ba5e742c83c",
          "body": "## Why\n\nThe context API exposes the evidence an agent needs to explain a visual\nchange: Honeydiff artifact manifests for downloading and verifying the\nexact diff mask, build-wide dynamic-region review data, and a compact\ncomparison proof naming the policy facts that caused automatic\nresolution. The \n[…]\n, matching\nassignment, hashes, counts, and timestamps. Build context separately\npreserves its policy/proposal review projection. The complete CLI suite,\nproduction build, and full lint pass are clean.",
          "is_bot": false,
          "headline": "✨ Preserve visual evidence in agent context (#327)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-26T05:33:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "17eabf40b0242a4136baeeb2af55257d8b48411d",
          "body": "## Why\n\nA production context check showed that raw API responses contain\ncomplete Honeydiff artifact evidence, but the compact `--agent`\nprojection drops that manifest. That leaves an agent without the\nauthoritative mask URL, digest, dimensions, and versioned identities it\nneeds to inspect a diff.\n\n\n[…]\ny and confirms the complete manifest survives\nwhile raw region arrays remain opt-in. The broader context and\nnormalizer coverage, full CLI suite, build, and a read-only production\ncheck are all clean.",
          "is_bot": false,
          "headline": "🐛 Preserve artifacts in agent context (#326)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-23T21:05:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "48c3ad5b349781ff2d7ebd16da0d8d3079e03f42",
          "body": "## Why\n\nLarge visual builds could only hand an agent the first ten actionable\ncomparisons or the entire raw build payload. Focused comparison context\nalso exposed the same Honeydiff evidence under a different shape, while\ntransport failures collapsed useful configuration clues into a generic\n`fetch \n[…]\ntion all pass.\n\n`--offset` pages the bounded agent projection rather than the HTTP\nresponse itself. Its purpose is to keep prompt context manageable while\npreserving API order and lossless raw access.",
          "is_bot": false,
          "headline": "✨ Improve agent context drill-downs (#324)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T23:32:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c76f3d90d4a8948103997b85190a64e49953d787",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.35.3-beta.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T16:57:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "986b2682362341630fdeb2c4fe726590febc79e6",
          "body": "## Why\n\nnpm allows only one trusted publisher workflow per package, so the\nseparate beta workflow could not authenticate while `release.yml` owns\nthe package's trusted-publisher connection. That workflow also exposed\nrelease Git state before proving the package could build and publish.\n\n## Approach\n\n[…]\nerves the existing\nunpublished-version check, build, and npm publish before pushing the\nversion commit or tag. Stable releases remain the default and continue\npublishing without a prerelease dist-tag.",
          "is_bot": false,
          "headline": "🔧 Unify CLI beta releases (#323)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T16:56:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8511a1976cff6571116bdb6b6339a4a5c3660c65",
          "body": null,
          "is_bot": false,
          "headline": "🐛 Preserve API context evidence (#322)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T12:32:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "750e23eb65006173ccc1f26aaa81727a610635e5",
          "body": null,
          "is_bot": false,
          "headline": "🐛 Keep run wait results API-truthful (#321)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T12:09:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7168935f723d9327a5a677b1d78d5af26c1f3231",
          "body": "Bumps the dependencies group with 5 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n|\n[@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome)\n| `2.5.2` | `2.5.3` |\n| [postcss](https://github.com/postcss/postcss) | `8.5.16` | `8.5.18` |\n| [vite](https://github.com/v\n[…]\n of the specified dependency and ignore\nconditions\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 5 updates (#310)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-22T05:40:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7130db6533e7ec211eec8f1ae750f5cc09001277",
          "body": "## Why\n\nA cloud run session can coexist with persisted local TDD evidence. The\nlocal provider was borrowing that cloud build identity, so automatic\nresolution could return stale local comparisons while claiming they\nbelonged to the requested cloud build. Generated follow-up commands were\nalso ambigu\n[…]\noving the requested cloud build comes\nfrom the API. Local integration coverage proves generated TDD\ndrill-downs remain local. The complete test suite, lint, formatting, and\nproduction build are green.",
          "is_bot": false,
          "headline": "🐛 Preserve visual context source provenance (#320)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T05:32:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0670378c469309c4491b01a34ef57efd332c3999",
          "body": null,
          "is_bot": false,
          "headline": "♻️ Make the Vizzly skill portable (#318)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T04:49:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89ff905fc5d48d537a53974fdcb7a0e18e938ebb",
          "body": null,
          "is_bot": false,
          "headline": "🐛 Emit structured context commands (#319)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T04:11:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4cbf76b74d0566b46d0ced2dede6a9ecf45d5b3",
          "body": null,
          "is_bot": false,
          "headline": "✨ Use API-backed build status (#317)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T03:36:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2736ef94d5780c0d7f8f872b02c3a20ff0171dbe",
          "body": "## Why\n\nThe compact build handoff could still overwhelm an agent with duplicated\ngroup trees while also hiding the render and Honeydiff facts needed to\nexplain a visual change. Worse, it filled missing status and summary\nfields with client-authored booleans and zeroes, so unknown API state\ncould loo\n[…]\nract changes by removing `next_actions`. That\nis intentional: these consumers can follow concrete CLI commands, and\nkeeping both fields would preserve vague client-authored guidance we no\nlonger want.",
          "is_bot": false,
          "headline": "✨ Bound agent visual context (#316)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T03:20:10Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3ab92a2108b2016a679eb6298f420f038bb67f4c",
          "body": "## Why\n\nBuild context can arrive as either legacy flat comparisons or the API's\ngrouped visual-review response. The human CLI currently understands only\nthe flat shape, so grouped builds can hide review aggregates, variants,\nand failed captures even though the API returned those facts.\n\n## Approach\n\n[…]\n\naggregate facts, and failed captures. It verifies both the pure response\ncontract and the terminal output users see. The full test suite and\nrelease-facing build, lint, type, and package checks pass.",
          "is_bot": false,
          "headline": "✨ Normalize grouped build context (#315)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T02:53:10Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "26bef2f835cc0932341f2c5cadabd302c1b0e140",
          "body": "## Why\n\nThe comparisons command currently treats the API's processing `status`\nas the visual outcome. That makes current comparison responses harder\nfor agents and humans to interpret, and hides useful review and\nHoneydiff evidence the API already returns.\n\n## What changed\n\n- Preserve the existing c\n[…]\nluding preservation of existing fields and filtering by\nvisual result. The full test, lint, build, type-definition, and package\nchecks pass, and the packaged CLI includes the new normalization module.",
          "is_bot": false,
          "headline": "✨ Expose factual comparison evidence (#314)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T02:28:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "99213c2fbc85c19048d244ba415b5008f63be991",
          "body": "## Why\n\nThe CLI included a release smoke script that copied a real user login,\nlinked a live production project, created a scoped token, and queried\nproduction builds. Even with cleanup logic, release verification should\nnot mutate customer-facing infrastructure or depend on personal\nproduction cred\n[…]\ncement live-system workflow.\n\n## Confidence\n\nThe complete CLI test suite and local release checks pass, the package\nstill builds correctly, and no production-smoke references remain in the\nrepository.",
          "is_bot": false,
          "headline": "🔥 Remove production smoke harness (#313)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-22T02:27:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "eca5dbfd5cc051b7db116c76ac35e537b5c34e08",
          "body": "## Why\n\nVizzly observes a user test suite; it should never become the reason\nthat suite fails. Build setup previously ran before the child command,\nso API, Cloudflare, authentication, malformed-response, or other SDK\nerrors could stop healthy tests from running or change their result.\n\n## Approach\n\n\n[…]\nta, local setup failures, server startup failures,\npost-test SDK failures, and wait-mode polling errors. All 2,294 runnable\ntests pass with zero failures, and Biome reports a clean changed-file\ncheck.",
          "is_bot": false,
          "headline": "🐛 Keep user test suites running through Vizzly network errors (#312)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-21T01:09:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cd2d240b72143cc2ce1cee452e578a7bf99c3888",
          "body": "Dependabot will resolve any conflicts with this PR as long as you don't\nalter it yourself. You can also trigger a rebase manually by commenting\n`@dependabot rebase`.\n\n[//]: # (dependabot-automerge-start)\n[//]: # (dependabot-automerge-end)\n\n---\n\n<details>\n<summary>Dependabot commands and options</sum\n[…]\n of the specified dependency and ignore\nconditions\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 12 updates (#309)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-13T18:46:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cf63ca95acbc867f950ba6349629d1e5fae32776",
          "body": null,
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 3 updates (#307)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T12:48:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eeb9a699a9d193c0ba5faf6909cb7105c01e643b",
          "body": null,
          "is_bot": true,
          "headline": "⬆️ Bump the major-dependencies group with 2 updates (#308)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T12:17:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97dd7be84efeec9c42748d84bdfc1229ad40c47d",
          "body": "[//]: # (dependabot-start)\n⚠️  **Dependabot is rebasing this PR** ⚠️ \n\nRebasing might not happen immediately, so don't worry if this takes some\ntime.\n\nNote: if you make any changes to this PR yourself, they will take\nprecedence over the rebase.\n\n---\n\n[//]: # (dependabot-end)\n\nBumps the dependencies \n[…]\n22e95915f975965b7d5b7\"><code>812432e</code></a>\nchore: mark v1.61.0 (<a\nhref=\"https://redirect.github.com/microsoft/playwright/issues/41277\">#41277</a>)</li>\n<li><a\nhref=\"https://github.com/microsoft…",
          "is_bot": true,
          "headline": "⬆️ Bump dependencies group (#305)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T04:49:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6639c5bef621d09f15847dd9f2bceaccb4eb9fc6",
          "body": "## Why\n\nThe CLI repo already had the better pnpm-style semver backoff policy,\nbut Dependabot still lacked the gitmoji-only title prefix and had a\nlower visible PR limit. That made it easier for dependency work to\narrive in another wave after one PR was merged.\n\n## Approach\n\nThis keeps the existing m\n[…]\nrges.\n\n## Confidence\n\nThis is a config-only change in `.github/dependabot.yml`. I made it from\na clean temporary worktree so the unrelated local SDK edits in the main\ncheckout are not part of this PR.",
          "is_bot": false,
          "headline": "⬆️ Tune Dependabot update policy (#306)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-06T04:40:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f58d540c7f47fb5c028db5dcb18375d8209add5e",
          "body": "[//]: # (dependabot-start)\n⚠️  **Dependabot is rebasing this PR** ⚠️ \n\nRebasing might not happen immediately, so don't worry if this takes some\ntime.\n\nNote: if you make any changes to this PR yourself, they will take\nprecedence over the rebase.\n\n---\n\n[//]: # (dependabot-end)\n\nBumps the dependencies \n[…]\n>\n</li>\n</ul>\n<h4>Committers: 2</h4>\n<ul>\n<li>Copilot [Bot] (<a\nhref=\"https://github.com/apps/copilot-swe-agent\"><code>@​copilot-swe-agent</code></a>)</li>\n<li><a\nhref=\"https://github.com/NullVoxPopu…",
          "is_bot": true,
          "headline": "⬆️ bump dependencies group (#303)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T04:10:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3e94cc8d62a9c6f74232bf491d162af572ed4b62",
          "body": "Dependabot was opening dependency PRs without the gitmoji prefix we use\nto keep GitHub lists scannable. This adds the `⬆️ build` prefix while\npreserving Dependabot's dependency scope in PR titles and commit\nsubjects.\n\nThis also keeps the Ember SDK browser install aligned with the package\nthat actually launches Playwright, which was the version mismatch\ndiscovered while validating the current dependency PR. Vizzly token\nrequirements remain strict in CI.",
          "is_bot": false,
          "headline": "⬆️ Configure Dependabot gitmoji titles (#304)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-07-06T04:10:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f43d7c1d13fe3bffa7be47497829c5ee4e4b251d",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.35.2",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-20T16:47:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c681ceaa0580f7977cbcd8b5d8094ea4dcb11cf9",
          "body": "Bump the CLI to the recovered Honeydiff 0.11.1 release and keep the pnpm supply-chain exemption pinned to that exact fresh package version.",
          "is_bot": false,
          "headline": "⬆️ Bump Honeydiff to 0.11.1",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-20T12:54:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a7bfaa949f2cf07b6b795e63db1193c3aee8cab9",
          "body": "## Why\n\nHoneydiff 0.11.0 is published with release-package fixes and updated\ncomparison behavior, so the CLI should test and package against the same\nversion as the app runtime. This keeps local TDD comparison behavior\naligned with the current Honeydiff release.\n\n## Approach\n\nThe CLI dependency move\n[…]\n pass with the new dependency.\n\n## Risk\n\nThe release-age exception is intentionally version-specific. It should\nbe revisited on the next Honeydiff bump rather than expanded to the\nwhole package scope.",
          "is_bot": false,
          "headline": "⬆️ Bump Honeydiff to 0.11 (#300)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-20T07:12:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "593b65b82716c62ab84955fcd4681a6b1b89dfa6",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.35.1",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-19T19:20:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c3848c67509855cc5a47e1bc0c3403fc5bd80b67",
          "body": "Bumps the dependencies group with 22 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [ansis](https://github.com/webdiscus/ansis) | `4.3.0` | `4.3.1` |\n| [cosmiconfig](https://github.com/cosmiconfig/cosmiconfig) | `9.0.1` |\n`9.0.2` |\n| [react](https://github.com/facebook/re\n[…]\noider/vite</code>\n<ul>\n<li><a\nhref=\"https://redirect.github.com/embroider-build/embroider/pull/2745\">#2745</a>\nFix <code>@embroider/virtual</code> emits under Vite's\n<code>experimental.bundleMode</co…",
          "is_bot": true,
          "headline": "Bump the dependencies group across 1 directory with 22 updates (#298)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-17T06:50:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6a6b28b9cf079f7736380b6de23826f5bf50718e",
          "body": "## Why\n\nScreenshot upload is one of Vizzly's hottest SDK paths. When a build\ncaptures thousands of screenshots, sending image bytes for files we\nalready have in storage is wasted work for the CLI, API, and object\nstorage.\n\nThe paired Vizzly API change lets the screenshot create endpoint accept\n`sha2\n[…]\nauth failure, and `--upload-all`. The full\nCLI test suite and Biome lint pass locally.\n\n## Related\n\n- Coordinates with `vizzly-testing/vizzly#543`, which adds the\nserver-side create-with-SHA behavior.",
          "is_bot": false,
          "headline": "✨ Resolve screenshot SHAs before byte upload (#299)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-17T05:32:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "db168b27d137250c9a9e9c42691d94a6de0f8642",
          "body": "## Why\n\nThe CLI had several rough edges at the boundaries users rely on most:\ncommand errors could show misleading help, JSON mode could mix\nmachine-readable output with human text, TDD lifecycle commands were not\ncareful enough around explicit ports, and some commands hid local\nvalidation failures \n[…]\ne right command, TDD lifecycle commands avoid unrelated processes,\nlocal validation errors are surfaced before network/auth concerns, and\nSDK server discovery no longer depends on a stale global file.",
          "is_bot": false,
          "headline": "🐛 Fix CLI regressions across JSON, help, and TDD (#296)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-12T00:52:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "36a2b2c7ab1ef992f5ce7b859a2ad8a987fa4594",
          "body": "Remove the Ember fixture's ESLint-only scripts, config, and dependencies after validating lint, build, peer checks, type tests, and the refreshed GitHub/Vizzly checks.",
          "is_bot": true,
          "headline": "♻️ Remove Ember test app ESLint",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-04T01:42:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "51407ba7739dc807e35f3d1c441a6c81700b65d1",
          "body": "Update Biome and Vite patch versions after validating the lockfile install, supply-chain policy, lint, and build locally.",
          "is_bot": true,
          "headline": "⬆️ Bump patch dependencies",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-04T01:36:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a0355aacbb6d0757f34cd322b62729ccb7abbf3",
          "body": "Updates the example dependency stacks through pnpm's release-age policy, aligns Dependabot cooldowns with pnpm, and fixes the Ember example for the upgraded stack.\n\nValidation:\n- pnpm install --frozen-lockfile\n- pnpm peers check\n- pnpm --filter example-storybook run build-storybook\n- pnpm --filter t\n[…]\n-ember-app run build\n- pnpm --filter test-ember-app run lint\n- pnpm --filter fluffycloud-test-site run test\n- pnpm run lint\n- pnpm run build\n- pnpm run test:types\n- GitHub CI and SDK E2E checks passed",
          "is_bot": true,
          "headline": "⬆️ Upgrade example app dependencies",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-04T00:58:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b84d37689ce6f37dffa7e32f7441cf155d3afcca",
          "body": "Updates the patch dependency group generated by Dependabot.\\n\\nLocal validation:\\n- pnpm install --frozen-lockfile\\n- pnpm run lint\\n- pnpm run build\\n- pnpm run test:types\\n\\nGitHub's Vizzly upload checks failed on the Dependabot PR because Dependabot does not receive repository secrets; the normal CI jobs were green.",
          "is_bot": true,
          "headline": "⬆️ Bump patch dependencies",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-04T00:25:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ce476bdb4f64eff6e6758368c121c5fe50a0351f",
          "body": "Replace the fallback Swift v0.1.0 changelog with a real first-release summary that explains the SDK surface, TDD discovery behavior, option alignment, and verification coverage.",
          "is_bot": false,
          "headline": "📝 Polish Swift SDK release notes",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T03:16:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e71cc8b6991a6912e5bf3cf7b5f57f098e782d06",
          "body": null,
          "is_bot": false,
          "headline": "🔖 Swift client v0.1.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T03:12:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "adecd837ad76f13465539cb8603e269721c92292",
          "body": null,
          "is_bot": false,
          "headline": "🔖 Ruby client v0.3.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T02:56:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dabf91f92d16158af6d24a8f613b7c7a29030306",
          "body": "Wait for the local test site to respond and for browser navigation to fully settle before querying page elements. This removes the intermittent missing-nav failure in the Ruby SDK E2E workflow without adding sleeps.",
          "is_bot": false,
          "headline": "🐛 Stabilize Ruby SDK E2E navigation",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T02:52:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc6098eab195c42340fd648445ee4b5cf7978be7",
          "body": "Publish the Ruby SDK through RubyGems OIDC trusted publishing instead of writing a long-lived API key and running gem push, which cannot satisfy MFA/OTP in CI.",
          "is_bot": false,
          "headline": "🐛 Use trusted publishing for Ruby releases",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T02:46:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3e94549b5c49720fe9ac0de686acbeb88e1f948",
          "body": null,
          "is_bot": false,
          "headline": "🔖 Ember SDK v0.1.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T02:36:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ea4ce512ab10ff972a29ce4b4d9baadd9f4440f4",
          "body": null,
          "is_bot": false,
          "headline": "🔖 Vitest integration v0.2.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T02:33:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bc7d898a3fd7cf92a205f00288d96511e8c9afe6",
          "body": null,
          "is_bot": false,
          "headline": "🔖 Storybook plugin v0.8.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T02:30:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5fa32ee76dafb7e1453f171c9c5c02dff85535a",
          "body": null,
          "is_bot": false,
          "headline": "🔖 Static site plugin v0.3.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T01:43:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "197a81799aea5549b4d6bc1f320f73ce3595c3db",
          "body": "Use OS-assigned ports when testing occupied-port detection so the Node matrix cannot collide on a shared hardcoded port.",
          "is_bot": false,
          "headline": "🐛 Avoid fixed ports in registry tests",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T01:36:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b4277a94bd591af8e93557a448f5b9c477e9d89",
          "body": "Let actions/checkout own the persisted GitHub Authorization header for SDK release pushes.\n\nThe release workflows only need to configure the commit author before pushing version and changelog commits.",
          "is_bot": false,
          "headline": "🐛 Remove duplicate SDK release git auth",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T01:31:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f44ce4649a0d01bd5f04ac3130e0ea2b100cd6d3",
          "body": "## Why\n\nThe static-site SDK release failed before tests/publish because the\nCodex changelog action switches the active job runtime back to Node 20.\nOur SDK release workflows install pnpm 11, which requires Node 22+, so\nthe next pnpm command crashed before the package could test or publish.\n\nThe warn\n[…]\ny and Swift unchanged because they do not run pnpm/npm after\nCodex in their release flows.\n\n## Verification\n\n- `git diff --check HEAD^ HEAD`\n- Parsed all six SDK release workflow YAML files with Ruby.",
          "is_bot": false,
          "headline": "🔧 Restore Node after SDK release notes (#289)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-06-01T00:50:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c495a3b71f4fa0f66b99e9c1a6a35a85990214e7",
          "body": "## Why\n\nThe CLI release is out, and the SDK releases are next. Before we run\nthose workflows, the SDK release paths need to be a little more\ndefensive so we do not burn a version number, publish without a matching\nGitHub asset, or trip over the Swift package's first real tag.\n\nThis keeps the release\n[…]\n is ignored and\nthe first real Swift tag can be created from 0.0.0 cleanly.\n\n## Verification\n\n- git diff --check origin/main..HEAD\n- Parsed all six changed workflow YAML files with Ruby's YAML loader.",
          "is_bot": false,
          "headline": "🔧 Harden SDK release workflows (#288)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-31T23:24:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e92198e008e54cf84a9e015c2999c0f467d58ac5",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.35.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-05-31T23:11:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c08a946295dd545d6a80a2631ec51ccd19bb20a1",
          "body": "## Why\n\nThis PR is the docs polish slice for the SDK alignment stack. The code\nPRs make the option contract real; this one makes sure the public docs\ndescribe the product users actually get.\n\nThe docs had fallen behind in a few important ways. They did not clearly\nshow the current cloud setup flow. \n[…]\n- `git diff --check` passed after stack cleanup.\n- Final stacked branch differs from the original preservation branch\nonly by intentional docs/code split changes and the removed custom\nplugin example.",
          "is_bot": false,
          "headline": "📝 Document aligned SDK workflows (#287)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-31T21:18:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "68661c70abe410a72a8ad4014c2bb7b90bb64fee",
          "body": "## Why\n\nThis PR aligns the Ruby and Swift SDKs with the contract established by\nthe core, web, Vitest, and Ember slices.\n\nThese SDKs are especially important because users do not see the main\nJavaScript implementation details. They just call\n`Vizzly.screenshot(...)`, `client.screenshot(...)`, or\n`ap\n[…]\nentTests`: 17 passed.\n- Covered by the full preservation branch verification before the stack\nwas split.\n- Stack cleanup verification: `git diff --check` and PR file-list checks\nfor #283 through #287.",
          "is_bot": false,
          "headline": "✨ Align Ruby and Swift SDKs (#286)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-31T20:44:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "25065800a5db6bb4941bcce6d578c64635efacfd",
          "body": "## Why\n\nThis PR aligns the test-runner SDKs: Vitest and Ember. These\nintegrations are close to the user’s actual test code, so the contract\nhas to be exact. When someone calls `expect(...).toMatchScreenshot(...)`\nor `vizzlyScreenshot(...)`, they need to know which options affect\nbrowser capture, whi\n[…]\non branch: 49\npassed.\n- Covered by the full preservation branch verification before the stack\nwas split.\n- Stack cleanup verification: `git diff --check` and PR file-list checks\nfor #283 through #287.",
          "is_bot": false,
          "headline": "✨ Align Vitest and Ember SDKs (#285)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-31T20:37:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f79df35b335f76e69fe7f3b8019d00286d7965e1",
          "body": "## Why\n\nThis PR aligns the browser-driven SDKs: Storybook and static-site. These\nare not just wrappers around the CLI. They discover stories/pages,\nlaunch browsers, capture screenshots, create cloud builds, attach\nmetadata, send screenshots, and finalize the build.\n\nThat makes them easy places for o\n[…]\nte test`: 211 passed.\n- Covered by the full preservation branch verification before the stack\nwas split.\n- Stack cleanup verification: `git diff --check` and PR file-list checks\nfor #283 through #287.",
          "is_bot": false,
          "headline": "✨ Align Storybook and static-site SDKs (#284)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-31T19:54:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "20530d21f75eb9126aa1910dc3fdaaf20ca97213",
          "body": "## Why\n\nThis PR is the foundation for the SDK alignment stack. The later SDK PRs\ndepend on this one because this is where the CLI, JS client, uploader,\nlocal TDD server, API helpers, config loading, environment loading, and\npublic types agree on the same option contract.\n\nThe problem was not one iso\n[…]\n/server/handlers/tdd-handler.test.js`.\n- Focused post-split verification: `CI=true pnpm run test:types`.\n- Stack cleanup verification: `git diff --check` and PR file-list checks\nfor #283 through #287.",
          "is_bot": false,
          "headline": "✨ Align core SDK option contracts (#283)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-31T18:55:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "425194b751a6c9ca6606d3d5f06c4ea0b2669b6b",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.34.0",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T23:09:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "db5f7d32e003a3b6c1e359ac12fd7da8b8797ca4",
          "body": "Run setup-node and refresh npm/pnpm after the Codex release-notes action so build and publish steps stay on Node 22.13.1.",
          "is_bot": false,
          "headline": "🔧 Restore Node after release notes",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T22:46:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "baa4d0e144ed94a3e0ce019c8a052cc5e98bbe76",
          "body": "Run the pnpm build explicitly, then publish with npm lifecycle scripts disabled so npm publish does not invoke prepublishOnly under the runner's Node 20 environment.",
          "is_bot": false,
          "headline": "🔧 Build before npm publish in releases",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T22:43:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c350b712166e13f44ab2c238ca8ecfe0dbf9004",
          "body": "Install the latest Corepack in workflows before activating pnpm 11.3.0 so GitHub runners have current package-manager signing keys.",
          "is_bot": false,
          "headline": "🔧 Refresh Corepack before preparing pnpm",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T22:33:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6c450f97deed15ff430815576c8777fb0a8689ed",
          "body": "Ensure every Node workflow uses a pnpm-compatible Node 22 patch release and add explicit Node setup to release workflows that previously relied on runner defaults.",
          "is_bot": false,
          "headline": "🔧 Pin workflows to Node 22.13.1",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T22:31:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "77fb046c3452613c936bf81cb0e401d1426bd3bc",
          "body": "## Summary\n\nThis PR updates the main CLI release workflow to use\n`openai/codex-action` for GitHub release notes.\n\nThe current release notes are technically correct, but they are just\ncommit subjects. That works when every commit is perfectly written. It\nfalls apart when the interesting part is in th\n[…]\n can scan quickly.\n\n## Verification\n\nValidated the workflow YAML locally and checked the diff for whitespace\nissues. `actionlint` is not installed locally, so this has not been run\nthrough actionlint.",
          "is_bot": false,
          "headline": "📝 Generate CLI release notes with Codex (#282)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T22:20:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c9f87c98d16df299a2fb873686387a3c82c82a98",
          "body": "## Summary\n\nThis PR packages the Vizzly agent skill with the CLI and adds an opt-in\n`vizzly init --agent-guidance` path that sets up project-local agent\ncontext.\n\nThe core idea is simple: agents cannot use what they do not know exists.\nVizzly already has the good stuff agents need for UI work: appro\n[…]\ned init tests, relevant command tests, Biome, skill\nvalidation, a production build, a temp-project `init --agent-guidance`\nsmoke test, and an npm pack check to confirm the skill ships in the\nartifact.",
          "is_bot": false,
          "headline": "✨ Add Vizzly agent project guidance (#281)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T22:02:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7e10083766191a9aaf3dd537304eba29dc9b7f0a",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.33.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-05-27T04:59:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "541a3a8c0dadb9c54f270742d6e50ccc70cf7183",
          "body": "## Why\n\nThe CLI reporter branch was still carrying the old embedded\nObservatory-era style contract. This brings it forward onto current main\nand wires the reporter to the released BearDen package while keeping\nCLI-specific reporter components local.\n\n## What changed\n\n- Rebased the existing local TDD\n[…]\nm minimum-release-age\nallowlist.\n\n## Verification\n\n- `pnpm run lint` passes with 3 existing optional-chain warnings.\n- `pnpm run build` passes.\n- `pnpm run test:reporter` passes: 35 passed, 5 skipped.",
          "is_bot": false,
          "headline": "🎨 Align CLI reporter with BearDen (#280)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-26T04:55:43Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "63867fc62fef146bd464fb198c6150531dd4d167",
          "body": null,
          "is_bot": false,
          "headline": "🖼️ Add padded Vizzly org avatar",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-25T21:46:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1735a7161844bcff268ead603d17e2649a23a5a8",
          "body": "## Summary\n\n- Reframes the CLI README around Vizzly as a visual testing/regression\nplatform instead of leading with agent context.\n- Removes the extra pitch-heavy \"Why Vizzly?\" section so the README gets\nto CLI usage faster.\n- Adds the Vizzly inspector mascot asset and includes docs assets in the\nnp\n[…]\nd\npackage.json src dist\n- git diff --check\n- npm --cache .tmp/npm-cache pack --dry-run\n\nFull pnpm test was started and then intentionally skipped because this\nis a README/help/package metadata change.",
          "is_bot": false,
          "headline": "📝 Tighten CLI README positioning (#278)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-25T21:25:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b6ed8c40d4f2fd36be5736a4c724b28a0bf7c212",
          "body": "Bumps the dependencies group with 4 updates:\n[@warp-drive/ember](https://github.com/warp-drive-data/warp-drive/tree/HEAD/warp-drive-packages/ember),\n[ember-cli](https://github.com/ember-cli/ember-cli),\n[ember-data](https://github.com/warp-drive-data/warp-drive/tree/HEAD/packages/-ember-data)\nand [em\n[…]\n of the specified dependency and ignore\nconditions\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 4 updates (#277)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-25T21:17:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a43b746e9102c8033deb3d548db383e47ccfbd4b",
          "body": "## Why\n\nMove this repo to a single pnpm workspace lockfile and add stronger\ndependency-supply-chain controls after the Dependabot churn.\n\n## What changed\n\n- Replaced npm lockfiles with one pnpm workspace lockfile.\n- Added pnpm 11.3.0 via packageManager and migrated CI/dev scripts to\nfrozen pnpm inst\n[…]\npx pnpm@11.3.0 test\n- npx pnpm@11.3.0 run test:reporter\n- git diff --check\n\nDocker TUI build was attempted, but Docker stalled on node:22-slim\nmetadata resolution before reaching our Dockerfile steps.",
          "is_bot": false,
          "headline": "🔒 Migrate JavaScript installs to pnpm (#276)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-25T21:06:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7be83c292e15be559c1ef4d347e236e140f638d7",
          "body": "Bumps the dependencies group with 20 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [ansis](https://github.com/webdiscus/ansis) | `4.2.0` | `4.3.0` |\n| [react](https://github.com/facebook/react/tree/HEAD/packages/react) |\n`19.2.5` | `19.2.6` |\n|\n[react-dom](https://github.com/facebook/react\n[…]\nes (<a\nhref=\"https://redirect.github.com/tailwindlabs/tailwindcss/pull/20022\">#20022</a>)</li>\n<li>Allow using <code>@variant</code> with stacked variants (e.g.\n<code>@variant hover:focus { … }</code…",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 20 updates (#275)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-25T19:18:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ebd3c7e6d58cf1bae71710922adca22e3fae136e",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.32.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-05-23T19:52:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e12aa5cf8514d7dcf86199c4b8ba783e824679b8",
          "body": "## Why\n\nLocal TDD was using a much thinner view of dynamic content than cloud\nreview.\n\nIn the cloud, Vizzly has access to honeydiff metadata, historical hot\nspot analysis, and user-confirmed dynamic regions. That lets cloud\nreview treat things like timestamps, generated copy bands, avatar slots,\nand\n[…]\n.test.js`\n- `node --test --test-concurrency=1 --test-reporter=spec\ntests/tdd/core/region-coverage.test.js\ntests/tdd/services/comparison-service.test.js\ntests/tdd/tdd-service.test.js`\n- `npm run build`",
          "is_bot": false,
          "headline": "✨ Align local TDD dynamic content filtering (#274)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-23T19:51:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4ed4013bf0c8417f834384a192efe6e2089fb434",
          "body": "Add a current release mode so failed releases can publish the already-bumped package version through GitHub Actions with provenance.",
          "is_bot": false,
          "headline": "🐛 Allow publishing current CLI version",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-22T03:14:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c842599afef99c6b396b15fdac67c9ed70139e32",
          "body": "Remove the Codex action from the critical release path, publish before pushing release git state, and derive notes from the last npm-published CLI version.",
          "is_bot": false,
          "headline": "🐛 Fix CLI release workflow recovery",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-22T02:40:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f23b7d77a70d9e8eab131293235806da6eb9410",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.31.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-05-22T02:32:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2751d5e4a11b9c3e23279d800dabe0fe3651f31",
          "body": null,
          "is_bot": false,
          "headline": "✨ Polish CLI context release flow (#272)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-21T05:43:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "08a716e045a42b88d06807d6b9c02c96429aa46d",
          "body": "## Summary\n\nThis PR makes the CLI a much more natural local context surface for\nagents and SDK dogfooding.\n\n- Aligns CLI messaging around reviewed UI context and approved baselines\n- Resets local TDD run context before screenshots so each run reflects\nthe current truth\n- Removes the reporter highlig\n[…]\n run test:cli -- ... focused CLI/context tests\n- npm run test:e2e -- ... focused SDK/e2e dogfood paths\n- node --test ... focused command/context tests\n- npm run lint\n- npm run build\n- git diff --check",
          "is_bot": false,
          "headline": "✨ Make CLI context handoff production-ready (#269)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-21T04:12:25Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9ec9d12ceede78b294f282af0d13358d85103772",
          "body": "## Why\n\nWe wanted to fix the Node 20 deprecation path correctly, not paper over\nit.\n\nThe initial env override (`FORCE_JAVASCRIPT_ACTIONS_TO_NODE24`) was a\ntemporary safety net. This PR replaces that approach with proper action\nupgrades and immutable action pinning for workflow supply-chain\nhardening\n[…]\nO_NODE24` usage\n  - release-beta now uses `softprops/action-gh-release`\n\n## Notes\n\nThis keeps behavior explicit and reviewable while reducing surprise CI\ndrift and improving workflow security posture.",
          "is_bot": false,
          "headline": "🔒 Upgrade + Pin GitHub Actions Workflows (#268)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-19T02:21:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2195eb141737435012f2fb5c331437ac4d6aa636",
          "body": "## Why\n\n`tdd-daemon` is a high-risk lifecycle surface. This PR takes one focused\nslice: process and PID lifecycle helpers.\n\nBy extracting those helpers from command orchestration, we keep\nstart/stop UX behavior stable while making daemon internals easier to\nreason about and safer to change in follow\n[…]\nisting tests/import paths.\n\n## Verification\n\n- `node --test tests/commands/tdd-daemon.test.js`\n- `npm run lint`\n\n## Notes\n\nThis is PR 2 in the tech-debt train and is intentionally\nbehavior-preserving.",
          "is_bot": false,
          "headline": "♻️ Split daemon process lifecycle helpers (#267)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-19T02:10:10Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bf651507b7dcc9a956c69f928153f365b648f3eb",
          "body": "## Why\n\n`src/tdd/tdd-service.js` is one of the highest-risk maintenance surfaces\nin the CLI. Before deeper runtime decomposition, we need a safer\nconstructor shape with explicit seams.\n\nThis PR extracts constructor runtime/dependency assembly into a\ndedicated module so we can keep behavior stable wh\n[…]\nts/tdd/runtime-context.test.js\ntests/tdd/tdd-service.test.js`\n\n## Notes\n\nThis is intentionally behavior-preserving. It is PR 1 in the new\ntech-debt train and sets up the next TDD runtime split slices.",
          "is_bot": false,
          "headline": "♻️ Extract TDD runtime context assembly (#266)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-19T02:09:39Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "556b75ead3732ca64d7529dab79dc4ce9ef41ca4",
          "body": "Why: land the remaining CLI audit stack as the final integration PR after preserving the smaller review units.\\n\\nWhat changed:\\n- Integrated server events, uploader boundaries, TDD/status plumbing, Storybook client cleanup, and static-site client cleanup.\\n- Removed stale compatibility paths and de\n[…]\n code.\\n- Added focused outcome coverage around commands, server routes, uploader behavior, and client packages.\\n\\nVerification:\\n- npm run lint\\n- npm run build\\n- GitHub CI Status passed on PR #265",
          "is_bot": false,
          "headline": "♻️ Finish CLI audit cleanup stack",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-18T19:42:01Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "444f567d447ac8ee622396e3a894ff86180fd603",
          "body": "Why: land the local server baseline/project/screenshot route cleanup after the command layer so server behavior can be reviewed independently before the event and uploader slices. This keeps route contracts deterministic and removes the old screenshot-server class boundary.\\n\\nWhat changed:\\n- Refac\n[…]\n: CI Status, Node 22, Node 24, SDK E2E, SDK Unit Status, and GitHub visual workflows all passed.\\n\\nNote: external Vizzly CLI Reporter requested visual review and was ignored per repo owner direction.",
          "is_bot": false,
          "headline": "♻️ Split server baseline routes (#260)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-18T19:27:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "85d69bcc3edd7f3e15ab842bfa6069949b22a401",
          "body": "Why: land the API-facing command cleanup as its own reviewable slice after the setup/auth foundation. These commands are where users inspect builds, baselines, comparisons, uploads, and review actions, so the behavior needs clear validation, safe request construction, and deterministic tests.\\n\\nWha\n[…]\n 24, SDK E2E, SDK Unit Status, and GitHub visual workflows all passed.\\n\\nNote: external Vizzly CLI Reporter still requested visual review; per repo owner direction, this was not treated as a blocker.",
          "is_bot": false,
          "headline": "✨ Split API review commands (#259)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-18T19:23:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fbd32f6c564efb398764913ae8109542447c50a9",
          "body": "Why: make setup and auth commands dependable before the API, server, and client integration slices land on top. These commands are first-run and account-boundary surfaces, so they need clear behavior, isolated state, and tests that exercise user-visible outcomes.\\n\\nWhat changed:\\n- Tightened init c\n[…]\n E2E, SDK Unit Status, and GitHub visual workflows all passed.\\n\\nNote: external Vizzly CLI Reporter requested review for a recurring mobile fullscreen-viewer visual diff outside this PR's code scope.",
          "is_bot": false,
          "headline": "✨ Split init and auth wiring (#258)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-18T19:17:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0c1d1fd1641f4630985479f31d011cc884ba43e1",
          "body": "Why: move the shared config, CI, git, and output utilities into a smaller production-ready foundation before the command and server slices build on them. This keeps the behavior easy to review and catches real stale-dependency cleanup before merge.\\n\\nWhat changed:\\n- Simplified config merge/seriali\n[…]\nGitHub visual workflows all passed.\\n\\nNote: external Vizzly CLI Reporter requested review for one mobile visual diff on a reporter screen outside this PR's code scope; GitHub visual workflows passed.",
          "is_bot": false,
          "headline": "♻️ Split shared config utilities (#257)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-18T19:10:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f08e0591065d8c8a643a1c798383a4220e818f6b",
          "body": "Why: establish the shared SDK/client contract layer first so later config, command, and server slices can rely on stable helper shapes instead of re-litigating them. This also keeps the stack honest by preserving the existing uploader service boundary until the dedicated uploader slice migrates it.\\\n[…]\nvisual workflows all passed.\\n\\nNote: external Vizzly CLI Reporter reported one unrelated mobile fullscreen-viewer visual diff on a branch that does not touch reporter UI; I inspected it before merge.",
          "is_bot": false,
          "headline": "✨ Split SDK helper contracts (#256)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-18T19:04:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d093578d1673e239a67e868d8c2335989514cc00",
          "body": "## Why\n\nClaude-specific config, workflows, and plugin assets were still present\nin the CLI repo, and a literal `$HOME` directory had been created\nlocally from a bad path expansion.\n\n## What changed\n\n- Added the repo-local Codex Playwright MCP config.\n- Removed tracked Claude workflows, plugin files,\n[…]\nrkflows/release*.yml\"].sort.each { |f|\nYAML.load_file(f); puts \"#{f} ok\" }'` passes.\n- `node -e\n\"JSON.parse(require('fs').readFileSync('package.json','utf8'));\nconsole.log('package.json ok')\"` passes.",
          "is_bot": false,
          "headline": "♻️ Remove Claude integration leftovers (#253)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-15T17:56:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c36e05aa52cf56ad7a09852a305a47e0dd14c922",
          "body": "## Why\n\nThe Swift SDK was doing the right high-level job, but its package shape\nmade native app integration heavier than it needed to be. The core\n`Vizzly` product pulled in XCTest helpers, and Swift comparison options\nwere sent at the top level even though the TDD server reads\nper-screenshot compar\n[…]\ncribe --type json`\n- `git diff --check`\n- `ruby -e 'require \"yaml\";\nYAML.load_file(\".github/workflows/sdk-e2e.yml\"); puts \"ok\"'`\n- Confirmed `VIZZLY_SWIFT_CLIENT_TOKEN` exists in repo Actions secrets.",
          "is_bot": false,
          "headline": "✨ Harden Swift SDK package (#252)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-12T06:02:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c9e4974a3b7dc21eae84931e6f077b8c0a7453e0",
          "body": null,
          "is_bot": false,
          "headline": "🔖 v0.30.0",
          "author_name": "robdel12",
          "author_login": "Robdel12",
          "committed_at": "2026-05-02T06:02:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "86e28675acc46191512dfd8876a4be8f561ad390",
          "body": null,
          "is_bot": false,
          "headline": "🔧 Pin trusted publishing npm version",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-02T06:00:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "480db9c722a41bed66d6596699eae6f05929a5b7",
          "body": "## Why\nThe Storybook SDK needed a real end-to-end verification pass against the\nlatest stable Storybook release and the actual local TDD workflow, not\njust isolated package tests.\n\n## What changed\n- upgraded the bundled example Storybook app to Storybook 10.3.6\n- documented Storybook 10 compatibilit\n[…]\n node ../../bin/vizzly.js tdd start --json`\n- `cd clients/storybook && node ../../bin/vizzly.js storybook\n./example-storybook/dist`\n- `cd clients/storybook && node ../../bin/vizzly.js tdd stop --json`",
          "is_bot": false,
          "headline": "🧪 Verify Storybook 10 local TDD compatibility (#249)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-05-02T02:59:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ea4946ddf7768c9304cc1aa16e68d370f4b49286",
          "body": "## Summary\n- carry forward the Dependabot lockfile update from #246\n- fix Biome 2.4.13 lint findings surfaced by the upgrade\n- unblock the dependency update with a maintainer-owned PR\n\n## Verification\n- npm ci\n- npm run lint\n- npm test\n\nSupersedes #246 because the Dependabot branch is not\nmaintainer-editable.",
          "is_bot": false,
          "headline": "🐛 Unblock CLI dependency update PR (#248)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-04-30T06:32:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d40f34b6955285c2f03a95cd743c54da0838f1fe",
          "body": "Bumps [typescript](https://github.com/microsoft/TypeScript) from 5.9.3\nto 6.0.3.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/microsoft/TypeScript/releases\">typescript's\nreleases</a>.</em></p>\n<blockquote>\n<h2>TypeScript 6.0.3</h2>\n<p>For release notes, \n[…]\nnless you reopen the\nPR or upgrade to it yourself)\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump typescript from 5.9.3 to 6.0.3 (#245)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-04-30T06:04:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d8cd385659494fd38506a0cd3ae464024f57bab6",
          "body": "## Summary\n- add read-only `vizzly context` commands for build, comparison,\nscreenshot, similar, and review queue bundles\n- support local workspace context from `.vizzly/` alongside cloud\ncontext resolution\n- document the new context surface in the CLI README and JSON output\nreference\n\n## Verification\n- node --test tests/api/endpoints.test.js tests/commands/*.test.js\n- npm run lint",
          "is_bot": false,
          "headline": "✨ Add CLI visual context workflows (#247)",
          "author_name": "Robert DeLuca",
          "author_login": "Robdel12",
          "committed_at": "2026-04-30T05:53:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "61c40664339c952018e5a72faa0b242afcf14bab",
          "body": "Bumps the dependencies group with 5 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n|\n[@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome)\n| `2.4.11` | `2.4.12` |\n|\n[@tanstack/react-query](https://github.com/TanStack/query/tree/HEAD/packages/react-query)\n| `5.99\n[…]\n of the specified dependency and ignore\nconditions\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 5 updates (#244)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-04-21T18:28:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "71112a6a4fee41087f839e151d4d565936e3224c",
          "body": "Bumps the dependencies group with 8 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.4.1` | `17.4.2` |\n|\n[@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome)\n| `2.4.10` | `2.4.11` |\n|\n[@tanstack/react-query](ht\n[…]\n of the specified dependency and ignore\nconditions\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 8 updates (#243)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-04-13T14:50:03Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f57a14dc873df99fec4d1f4a30904d8ed4f58026",
          "body": "Bumps the dependencies group with 7 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [dotenv](https://github.com/motdotla/dotenv) | `17.3.1` | `17.4.1` |\n|\n[@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome)\n| `2.4.9` | `2.4.10` |\n|\n[@modelcontextprotocol/sdk]\n[…]\n of the specified dependency and ignore\nconditions\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 7 updates (#242)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-04-06T19:14:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1f88eb451afa74bb35a9098cbc5b1181fb6818ee",
          "body": "Bumps the dependencies group with 4 updates:\n[@biomejs/biome](https://github.com/biomejs/biome/tree/HEAD/packages/@biomejs/biome),\n[@modelcontextprotocol/sdk](https://github.com/modelcontextprotocol/typescript-sdk),\n[@tanstack/react-query](https://github.com/TanStack/query/tree/HEAD/packages/react-q\n[…]\n of the specified dependency and ignore\nconditions\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Bump the dependencies group with 4 updates (#240)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-03-30T13:12:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1f643faf48a73a8ff22fa89ffaf5fb7101ff8a25",
          "body": "## Why\n\n`@vitejs/plugin-react@6` and `vite@8` are coupled now, so the original\nsplit Dependabot PRs were each broken on their own. This PR turns `#236`\ninto the real upgrade branch by aligning the toolchain and carrying\nforward the small stability fixes that kept the suite honest.\n\n## What Changed\n\n\n[…]\n------\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Robert DeLuca <robertdeluca19@gmail.com>",
          "is_bot": true,
          "headline": "⬆️ Align Vite 8 and plugin-react 6 (#236)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-03-24T18:33:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        }
      ],
      "releases_count": 100,
      "commits_last_year": 485,
      "latest_release_at": "2026-07-22T16:58:29Z",
      "latest_release_tag": "v0.35.3-beta.0",
      "releases_from_tags": false,
      "days_since_last_push": 2,
      "active_weeks_last_year": 48,
      "days_since_latest_release": 9,
      "mean_days_between_releases": 5.7
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 37,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "@vizzly-testing/cli",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "llm-context",
            "visual-context",
            "approved-baselines",
            "visual-testing",
            "screenshot-testing",
            "visual-review",
            "ui-testing",
            "collaboration",
            "testing",
            "cli"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@vizzly-testing/cli",
          "is_deprecated": false,
          "latest_version": "0.35.2",
          "repository_url": "https://github.com/vizzly-testing/cli",
          "versions_count": 79,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 29238,
          "first_published_at": "2025-08-12T17:00:56.629000Z",
          "latest_published_at": "2026-06-20T16:47:57.212000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 41
        }
      ]
    },
    "popularity": {
      "forks": 2,
      "stars": 34,
      "watchers": 2,
      "fork_history": {
        "days": [
          {
            "date": "2025-11-28",
            "count": 1
          },
          {
            "date": "2026-05-25",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 2,
        "total_forks": 2
      },
      "star_history": null,
      "open_issues_and_prs": 6
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "example",
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [],
      "largest_source_bytes": 74109,
      "source_files_sampled": 433,
      "oversized_source_files": 1,
      "agent_instruction_files": [
        "AGENTS.md"
      ],
      "agent_instruction_max_bytes": 2908
    },
    "dependencies": {
      "manifests": [
        "package.json",
        "test-site/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 56,
        "malicious_count": 0,
        "assessed_package": "npm:@vizzly-testing/cli@0.35.2",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@vizzly-testing/bear-den",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "0.1.4"
        },
        {
          "name": "@vizzly-testing/honeydiff",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.11.1"
        },
        {
          "name": "ansis",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.2.0"
        },
        {
          "name": "commander",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^15.0.0"
        },
        {
          "name": "cosmiconfig",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.0.0"
        },
        {
          "name": "dotenv",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^17.2.1"
        },
        {
          "name": "form-data",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.0"
        },
        {
          "name": "glob",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.0.0"
        },
        {
          "name": "react",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.1"
        },
        {
          "name": "react-dom",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.1"
        },
        {
          "name": "zod",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.1.12"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 3,
        "merged_prs": 278,
        "open_issues": 3,
        "closed_ratio": 0.88,
        "closed_issues": 22,
        "closed_unmerged_prs": 28
      },
      "bus_factor": 1,
      "bot_contributors": 2,
      "top_contributors": [
        {
          "type": "User",
          "login": "Robdel12",
          "commits": 426,
          "avatar_url": "https://avatars.githubusercontent.com/u/2072894?v=4"
        },
        {
          "type": "User",
          "login": "actions-user",
          "commits": 5,
          "avatar_url": "https://avatars.githubusercontent.com/u/65916846?v=4"
        },
        {
          "type": "User",
          "login": "KaelWD",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/16421948?v=4"
        }
      ],
      "contributors_sampled": 3,
      "top_contributor_share": 0.986
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "release-ember-client.yml",
        "release-ruby-client.yml",
        "release-static-site-client.yml",
        "release-storybook-client.yml",
        "release-swift-client.yml",
        "release-vitest-client.yml",
        "release.yml",
        "reporter.yml",
        "sdk-e2e.yml",
        "sdk-unit.yml",
        "tui.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".eslintrc.cjs",
        ".rubocop.yml",
        "biome.json"
      ],
      "has_editorconfig": true,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 1,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "28 out of 28 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/23 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 6,
            "reason": "project has 2 contributing companies or organizations -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 5,
            "reason": "dependency not pinned by hash detected -- score normalized to 5",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "24 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "4797835ea1255a6ef21d3716649d6157c6e66f4b",
        "ran_at": "2026-08-01T01:42:51Z",
        "aggregate_score": 4.5,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-27T09:17:26Z",
      "oldest_open_prs": [
        {
          "number": 332,
          "created_at": "2026-07-27T09:15:07Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 333,
          "created_at": "2026-07-27T09:16:49Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 334,
          "created_at": "2026-07-29T20:33:14Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-07-26T17:39:52Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 162,
          "created_at": "2026-01-02T20:57:16Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 178,
          "created_at": "2026-01-14T07:18:07Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 222,
          "created_at": "2026-02-16T08:30:14Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/vizzly-testing/cli",
    "host": "github.com",
    "name": "cli",
    "owner": "vizzly-testing"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "excellent",
      "name": "Overall health",
      "note": "The weighted overall 68 is calibrated to 80 on the published index scale (record calibration 2026-08-02).",
      "notes": [
        {
          "code": "overall_calibration",
          "params": {
            "raw": 68,
            "calibrated": 80,
            "calibration": "2026-08-02"
          }
        }
      ],
      "value": 80,
      "inputs": {
        "security": 56,
        "vitality": 94,
        "community": 46,
        "governance": 55,
        "calibration": "2026-08-02",
        "engineering": 86,
        "ai_readiness": 62,
        "weighted_overall_raw": 68
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "exceptional",
        "name": "Vitality",
        "value": 94,
        "weight": 0.21,
        "metrics": [
          {
            "key": "development_activity",
            "band": "exceptional",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 97,
            "inputs": {
              "commits_last_year": 485,
              "human_commit_share": 0.8,
              "days_since_last_push": 2,
              "active_weeks_last_year": 48
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 2 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 2
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "48/52 weeks with commits",
                "points": 33.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 48
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "485 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 485
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 100,
              "latest_release_tag": "v0.35.3-beta.0",
              "releases_from_tags": false,
              "days_since_latest_release": 9,
              "mean_days_between_releases": 5.7
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "100 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 9 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 9
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~5.7 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 5.7
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "exceptional",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 9,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 9 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 9
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "weak",
        "name": "Community & Adoption",
        "value": 46,
        "weight": 0.17,
        "metrics": [
          {
            "key": "popularity",
            "band": "at_risk",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 25,
            "inputs": {
              "forks": 2,
              "stars": 34,
              "watchers": 2,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "34 stars",
                "points": 24.6,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 34
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "2 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "2 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "readme_badges": null,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "readme_badge_services": [],
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "good",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 74,
            "inputs": {
              "packages": [
                "@vizzly-testing/cli"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 29238
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "29,238 downloads/month across npm",
                "points": 59.5,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 29238,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 55,
        "weight": 0.23,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 19,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 3,
              "top_contributor_share": 0.986
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 99% of commits",
                "points": 0.3,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 99
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "3 contributors",
                "points": 4.1,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Newcomer PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "newcomer_pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 74,
            "inputs": {
              "merged_prs": 278,
              "open_issues": 3,
              "closed_issues": 22,
              "prs_merged_7d": null,
              "prs_decided_7d": null,
              "prs_merged_30d": null,
              "prs_decided_30d": null,
              "issue_closed_ratio": 0.88,
              "closed_unmerged_prs": 28,
              "first_time_authors_30d": null,
              "first_time_prs_merged_30d": null,
              "first_time_prs_decided_30d": null
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "88% of issues closed",
                "points": 37,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 88
                    }
                  }
                ],
                "max_points": 42
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "278/306 decided PRs merged",
                "points": 27.3,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 278,
                      "decided": 306
                    }
                  }
                ],
                "max_points": 30
              },
              {
                "key": "newcomer_pr_acceptance",
                "name": "Newcomer PR acceptance",
                "detail": "no first-time contributor's PR decided in 30d",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_newcomer_prs",
                    "params": {
                      "days": 30
                    }
                  }
                ],
                "max_points": 13
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/23 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "weak",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 42,
            "inputs": {
              "followers": 3,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "vizzly-testing",
              "public_repos": 5,
              "account_age_days": 398
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "3 followers of vizzly-testing",
                "points": 4.3,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 3,
                      "login": "vizzly-testing"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "5 public repos, account ~1 yr old",
                "points": 7.8,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 5
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 1
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "exceptional",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "@vizzly-testing/cli"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 41
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 41 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 41
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "79 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 79
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 86,
        "weight": 0.19,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "12 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 12
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".eslintrc.cjs, .rubocop.yml, biome.json",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".eslintrc.cjs, .rubocop.yml, biome.json"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "28 out of 28 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 80,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": "https://docs.vizzly.dev",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://docs.vizzly.dev",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 56,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "weak",
            "name": "Security posture",
            "note": null,
            "notes": [],
            "value": 45,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 18,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 0,
              "scorecard_aggregate": 4.5
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "28 out of 28 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/23 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 5",
                "points": 2.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "24 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "exceptional",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:@vizzly-testing/cli@0.35.2 runtime dependency closure — what installing the published package pulls in — 56 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:@vizzly-testing/cli@0.35.2",
                  "assessed": 56
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 56,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "exceptional",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 56,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "exceptional",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "commit_weight_rule": {
                "min_commits": 50,
                "min_commit_share": 0.1
              },
              "review_only_matches": 0,
              "below_threshold_exposures": [],
              "assessed_self_published_locations": 3
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 62,
        "weight": 0.04,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.787,
              "agent_instruction_files": [
                "AGENTS.md"
              ],
              "agent_instruction_max_bytes": 2908
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "63 of 80 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 63,
                      "sampled": 80
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 56,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": true,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0.2
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".eslintrc.cjs, .rubocop.yml, biome.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".eslintrc.cjs, .rubocop.yml, biome.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "20 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 20,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 5",
                "points": 5,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "moderate",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "primary_language": "JavaScript",
              "largest_source_bytes": 74109,
              "source_files_sampled": 433,
              "oversized_source_files": 1
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "JavaScript without a type-check config",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_typecheck_config_language",
                    "params": {
                      "language": "JavaScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "1/433 source files over 60KB",
                "points": 54.9,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 433,
                      "oversized": 1
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "weak",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "example",
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "example, examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "example, examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
      }
    ],
    "classification": {
      "top": [
        "library",
        "application"
      ],
      "labels": [
        "cli",
        "library",
        "web-ui"
      ],
      "scores": {
        "cli": 8,
        "web-ui": 4,
        "library": 6
      },
      "primary": "cli",
      "evidence": [
        {
          "tier": "distribution",
          "label": "library",
          "source": "registry:npm",
          "weight": 6
        },
        {
          "tier": "dependencies",
          "label": "cli",
          "source": "dep:commander",
          "weight": 4
        },
        {
          "tier": "dependencies",
          "label": "web-ui",
          "source": "dep:react-dom",
          "weight": 4
        },
        {
          "tier": "description",
          "label": "cli",
          "source": "description:cli",
          "weight": 2
        },
        {
          "tier": "tags",
          "label": "cli",
          "source": "tag:cli",
          "weight": 2
        }
      ],
      "artifacts": [],
      "confidence": "medium",
      "host_extension": false,
      "runs_as_process": true,
      "consumed_by_code": true
    },
    "metrics_version": "2.5.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "Could not fetch npm package 'fluffycloud-test-site' from its registry",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-08-01T01:43:08.979030Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/v/vizzly-testing/cli.svg",
  "full_name": "vizzly-testing/cli",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Las puntuaciones son señales, no garantías. Reflejan prácticas públicamente visibles en GitHub; no son una auditoría de código ni una garantía de seguridad.

Los datos ausentes se excluyen y los pesos se renormalizan; nunca se puntúan como cero. La metodología es versionada y abierta: métricas v2.5.0, esquema v0.27.0 — metodología completa · wiki de métricas.

Cómo se sitúa un resultado dentro del registro general: estadísticas agregadasnpm.