Public record
Software health reportschema 0.26.0 · metrics 1.13.0 · 2026-07-22 06:15 UTC

Artexis10 / endstate

Open-source engine behind Endstate: reinstall your apps and restore your settings on a fresh machine from one file. Windows via winget (Linux/macOS in progress). Go, Apache 2.0.

Go · PowerShellApache-2.0★ 27 stars⑂ 0 forkssince Dec 2025View on GitHub ↗

Artexis10/endstate holds a health index of 61 out of 100, placing it in the Moderate band. It scores highest on Vitality (86/100) and lowest on Security (33/100). It was last updated today. A single contributor accounts for most of its recent work.

61
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

61
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

Hugo Ander KiviPersonal account
9 followers24 public repossince Sep 2019Substrate Systems OÜ

This repository is owned by a personal account. A single-owner project carries more continuity risk than an organization-backed one.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
Gogithub.com/Artexis10/endstatev2.27.4+incompatible-600 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

86Excellent · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
19.4/36Commit cadence — 28/52 weeks with commits
18/18Commit volume — 482 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year482
human_commit_share0.79
days_since_last_push0
active_weeks_last_year28
How it's scored
27/27Ships releases — 60 releases published
36/36Release recency — latest release 0 days ago
27/27Release cadence — a release every ~0.4 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count60
latest_release_tagv2.27.4
releases_from_tagsno
days_since_latest_release0
mean_days_between_releases0.4

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

36At risk · 18% of overall
How it's scored
23/60Stars — 27 stars
0/25Forks — 0 forks
0/15Watchers — 0 watchers
Inputs used
forks0
stars27
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonbelow_threshold
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (Apache-2.0)
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

57Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0/22.5Commit distribution — top contributor authored 100% of commits
1.4/13.5Contributor breadth — 1 contributors
3/10OpenSSF Scorecard: Contributors — project has 1 contributing companies or organizations -- score normalized to 3
Inputs used
bus_factor1
contributors_sampled1
top_contributor_share1
How it's scored
46.8/46.8Issue resolution — 100% of issues closed
38/38.3PR acceptance — 178/179 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/20 approved changesets -- score normalized to 0
Inputs used
merged_prs178
open_issues0
closed_issues8
issue_closed_ratio1
closed_unmerged_prs1
How it's scored
10/30Ownership backing — personal (user) account
0/20Verified domain — not applicable to user accounts
7.2/25Owner reach — 9 followers of Artexis10
22.2/25Track record — 24 public repos, account ~6 yr old
Inputs used
followers9
owner_typeUser
is_verified
owner_loginArtexis10
public_repos24
account_age_days2,511
Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.
How it's scored
25/25Published & resolvable — 1 package(s) on go
35/35Publish recency — latest publish 0 days ago
20/20Version history — 60 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesgithub.com/Artexis10/endstate
ecosystemsgo
any_deprecatedno
min_days_since_publish0

Engineering Quality

Are baseline engineering and documentation practices in place?

84Good · 20% of overall
How it's scored
24/24CI workflows — 4 workflow(s)
24/24Tests present
0/16Linter config
0/9.6Pre-commit hooks
6.4/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 30 out of 30 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigyes
has_linter_configno
has_precommit_configno

Documentation

100Excellent
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://substratesystems.io/endstate
10/10Repository description
10/10Topics — 18 topics
10/10Wiki
Inputs used
topicsautomation, cli, configuration-management, devops, idempotency, infrastructure-as-code, powershell, provisioning, reproducibility, system-setup, backup, dotfiles, migration, new-pc-setup, open-source, windows, winget, settings-backup
has_wikiyes
homepagehttps://substratesystems.io/endstate
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

33At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
2.5/2.5CI-Tests — 30 out of 30 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/20 approved changesets -- score normalized to 0
0.8/2.5Contributors — project has 1 contributing companies or organizations -- score normalized to 3
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 23 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate3.3
Excluded from scoring (no data or not applicable): branch_protection, packaging. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

73Good · 0% of overall
How it's scored
45/45Agent instructions — AGENTS.md, CLAUDE.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 79 of 79 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share1
agent_instruction_filesAGENTS.md, CLAUDE.md
agent_instruction_max_bytes23,208
How it's scored
12.6/18One-command bootstrap — go-engine/go.mod (toolchain convention, no task runner)
22/22Automated tests
0/11Lint / format config
11/11Static type checking — Go (statically typed)
10/10Reproducible environment — lockfile
10/10Demonstrated agent practice — 71 of the last 100 commits agent-authored or agent-credited
0/8Automated maintenance — no automated dependency updates observed
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfilesgo.sum
has_dockerfileno
typed_languageyes
bootstrap_files
has_devcontainerno
has_linter_configno
typecheck_configs
agent_commit_share0.71
toolchain_manifestsgo-engine/go.mod
dependency_bot_commit_share0
How it's scored
45/45Type-checkable code — Go (statically typed)
54.8/55Manageable file sizes — 2/504 source files over 60KB
Inputs used
primary_languageGo
largest_source_bytes100,851
source_files_sampled504
oversized_source_files2
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — examples
Inputs used
example_dirsexamples
has_mcp_signalno
api_schema_files

Key facts

27GitHub stars
1contributors
482commits, last 12 months
0days since last push
60releases
1bus factor
0open issues
Go, npm, PyPIpackage ecosystems

Data collection warnings

  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

More detail

Star and fork history 27 ★ / 0 ⇿
27Stars
53Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

0510152025302792025-122026-042026-07
Major 2Minor 34Patch 17
OpenSSF Scorecard 3.3 / 10
3.3aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-22 06:15 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
10CI-Tests30 out of 30 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/20 approved changesets -- score normalized to 0
3Contributorsproject has 1 contributing companies or organizations -- score normalized to 3
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities23 existing vulnerabilities detected
Direct dependencies 7
RegistryPackageVersion constraintManifest
Gogithub.com/danieljoos/wincredv1.2.3go-engine/go.mod
Gogithub.com/gofrs/flockv0.11.0go-engine/go.mod
Gogithub.com/golang-jwt/jwt/v5v5.3.1go-engine/go.mod
Gogithub.com/tyler-smith/go-bip39v1.1.0go-engine/go.mod
Gogithub.com/zalando/go-keyringv0.2.8go-engine/go.mod
Gogolang.org/x/cryptov0.32.0go-engine/go.mod
Gogolang.org/x/sysv0.29.0go-engine/go.mod
All dependencies not collected

The resolved dependency set could not be collected for this report: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "automation",
        "cli",
        "configuration-management",
        "devops",
        "idempotency",
        "infrastructure-as-code",
        "powershell",
        "provisioning",
        "reproducibility",
        "system-setup",
        "backup",
        "dotfiles",
        "migration",
        "new-pc-setup",
        "open-source",
        "windows",
        "winget",
        "settings-backup"
      ],
      "is_fork": false,
      "size_kb": 16360,
      "has_wiki": true,
      "homepage": "https://substratesystems.io/endstate",
      "languages": {
        "Go": 4253177,
        "Shell": 18094,
        "Python": 8534,
        "PowerShell": 576263
      },
      "pushed_at": "2026-07-21T20:58:24Z",
      "created_at": "2025-12-20T10:29:50Z",
      "owner_type": "User",
      "updated_at": "2026-07-21T20:58:20Z",
      "description": "Open-source engine behind Endstate: reinstall your apps and restore your settings on a fresh machine from one file. Windows via winget (Linux/macOS in progress). Go, Apache 2.0.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Go",
      "significant_languages": [
        "Go",
        "PowerShell"
      ]
    },
    "owner": {
      "blog": "substratesystems.io",
      "name": "Hugo Ander Kivi",
      "type": "User",
      "login": "Artexis10",
      "company": "Substrate Systems OÜ",
      "location": "Tallinn",
      "followers": 9,
      "avatar_url": "https://avatars.githubusercontent.com/u/54939745?v=4",
      "created_at": "2019-09-05T10:57:57Z",
      "is_verified": null,
      "public_repos": 24,
      "account_age_days": 2511
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v2.27.4",
          "kind": "patch",
          "published_at": "2026-07-21T20:58:25Z"
        },
        {
          "tag": "v2.27.3",
          "kind": "patch",
          "published_at": "2026-07-21T19:14:20Z"
        },
        {
          "tag": "v2.27.2",
          "kind": "patch",
          "published_at": "2026-07-21T13:55:12Z"
        },
        {
          "tag": "v2.27.1",
          "kind": "patch",
          "published_at": "2026-07-21T13:25:18Z"
        },
        {
          "tag": "v2.27.0",
          "kind": "minor",
          "published_at": "2026-07-21T08:38:17Z"
        },
        {
          "tag": "v2.26.0",
          "kind": "minor",
          "published_at": "2026-07-21T07:46:37Z"
        },
        {
          "tag": "v2.25.1",
          "kind": "patch",
          "published_at": "2026-07-21T07:12:07Z"
        },
        {
          "tag": "v2.25.0",
          "kind": "minor",
          "published_at": "2026-07-20T19:08:25Z"
        },
        {
          "tag": "v2.24.2",
          "kind": "patch",
          "published_at": "2026-07-18T17:50:29Z"
        },
        {
          "tag": "v2.24.1",
          "kind": "patch",
          "published_at": "2026-07-18T08:37:02Z"
        },
        {
          "tag": "v2.24.0",
          "kind": "minor",
          "published_at": "2026-07-17T19:08:39Z"
        },
        {
          "tag": "v2.23.0",
          "kind": "minor",
          "published_at": "2026-07-16T18:07:56Z"
        },
        {
          "tag": "v2.22.0",
          "kind": "minor",
          "published_at": "2026-07-10T20:35:33Z"
        },
        {
          "tag": "v2.21.0",
          "kind": "minor",
          "published_at": "2026-06-28T11:35:44Z"
        },
        {
          "tag": "v2.20.0",
          "kind": "minor",
          "published_at": "2026-06-07T14:59:34Z"
        },
        {
          "tag": "v2.19.0",
          "kind": "minor",
          "published_at": "2026-06-05T23:02:36Z"
        },
        {
          "tag": "v2.18.0",
          "kind": "minor",
          "published_at": "2026-06-04T19:09:33Z"
        },
        {
          "tag": "v2.17.0",
          "kind": "minor",
          "published_at": "2026-06-04T11:14:34Z"
        },
        {
          "tag": "v2.16.0",
          "kind": "minor",
          "published_at": "2026-06-03T20:19:46Z"
        },
        {
          "tag": "v2.15.0",
          "kind": "minor",
          "published_at": "2026-06-03T19:40:31Z"
        },
        {
          "tag": "v2.14.0",
          "kind": "minor",
          "published_at": "2026-06-03T08:28:26Z"
        },
        {
          "tag": "v2.13.0",
          "kind": "minor",
          "published_at": "2026-06-02T10:02:18Z"
        },
        {
          "tag": "v2.12.1",
          "kind": "patch",
          "published_at": "2026-06-02T09:00:32Z"
        },
        {
          "tag": "v2.12.0",
          "kind": "minor",
          "published_at": "2026-06-01T20:26:23Z"
        },
        {
          "tag": "v2.11.0",
          "kind": "minor",
          "published_at": "2026-05-31T20:48:57Z"
        },
        {
          "tag": "v2.10.0",
          "kind": "minor",
          "published_at": "2026-05-31T20:10:26Z"
        },
        {
          "tag": "v2.9.0",
          "kind": "minor",
          "published_at": "2026-05-31T19:45:03Z"
        },
        {
          "tag": "v2.8.0",
          "kind": "minor",
          "published_at": "2026-05-31T09:54:48Z"
        },
        {
          "tag": "v2.7.0",
          "kind": "minor",
          "published_at": "2026-05-29T21:47:12Z"
        },
        {
          "tag": "v2.6.0",
          "kind": "minor",
          "published_at": "2026-05-29T17:54:32Z"
        },
        {
          "tag": "v2.5.0",
          "kind": "minor",
          "published_at": "2026-05-29T09:43:20Z"
        },
        {
          "tag": "v2.4.0",
          "kind": "minor",
          "published_at": "2026-05-26T22:55:41Z"
        },
        {
          "tag": "v2.3.1",
          "kind": "patch",
          "published_at": "2026-05-26T14:49:24Z"
        },
        {
          "tag": "v2.3.0",
          "kind": "minor",
          "published_at": "2026-05-26T14:31:34Z"
        },
        {
          "tag": "v2.2.1",
          "kind": "patch",
          "published_at": "2026-05-25T20:40:16Z"
        },
        {
          "tag": "v2.2.0",
          "kind": "minor",
          "published_at": "2026-05-24T14:07:00Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2026-05-22T20:54:27Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2026-05-11T17:29:14Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2026-05-10T08:05:31Z"
        },
        {
          "tag": "v1.9.0",
          "kind": "minor",
          "published_at": "2026-05-08T23:57:50Z"
        },
        {
          "tag": "v1.8.0",
          "kind": "minor",
          "published_at": "2026-05-01T15:36:06Z"
        },
        {
          "tag": "v1.7.7",
          "kind": "patch",
          "published_at": "2026-04-08T15:08:14Z"
        },
        {
          "tag": "v1.7.6",
          "kind": "patch",
          "published_at": "2026-04-08T13:08:37Z"
        },
        {
          "tag": "v1.7.5",
          "kind": "patch",
          "published_at": "2026-04-03T14:07:49Z"
        },
        {
          "tag": "v1.7.4",
          "kind": "patch",
          "published_at": "2026-04-01T22:44:17Z"
        },
        {
          "tag": "v1.7.3",
          "kind": "patch",
          "published_at": "2026-04-01T22:37:25Z"
        },
        {
          "tag": "v1.7.2",
          "kind": "patch",
          "published_at": "2026-03-31T20:11:07Z"
        },
        {
          "tag": "v1.7.1",
          "kind": "patch",
          "published_at": "2026-03-31T17:23:50Z"
        },
        {
          "tag": "v1.7.0",
          "kind": "minor",
          "published_at": "2026-03-31T13:58:51Z"
        },
        {
          "tag": "v1.6.0",
          "kind": "minor",
          "published_at": "2026-03-30T23:01:35Z"
        },
        {
          "tag": "v1.5.2",
          "kind": "patch",
          "published_at": "2026-03-30T18:49:09Z"
        },
        {
          "tag": "v1.5.1",
          "kind": "patch",
          "published_at": "2026-03-29T10:45:53Z"
        },
        {
          "tag": "v1.5.0",
          "kind": "minor",
          "published_at": "2026-03-27T13:07:59Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2026-03-27T03:39:06Z"
        },
        {
          "tag": "v1.3.0",
          "kind": "minor",
          "published_at": "2026-03-10T23:19:20Z"
        },
        {
          "tag": "v1.2.2",
          "kind": "patch",
          "published_at": "2026-03-07T12:11:43Z"
        },
        {
          "tag": "v1.2.1",
          "kind": "patch",
          "published_at": "2026-03-07T03:16:26Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2026-03-07T03:07:30Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2026-03-07T02:25:38Z"
        },
        {
          "tag": "v1.0.0",
          "kind": "major",
          "published_at": "2026-03-05T22:30:28Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "64ef59699f3545bb492a07a9da7db073d3d557ac",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.27.4 (#185)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-21T20:58:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "56c19ae66dbce6821b6de675245dcc0edd6ed373",
          "body": "…shipping both (#187)\n\n* fix(capture): keep one winner on config target collisions instead of shipping both\n\nCapture emitted config restore lanes per module with dedup by module ID\nonly, so two modules claiming the same restore target (e.g. two modules\nboth restoring %USERPROFILE%\\.wslconfig, or the\n[…]\nched.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_016waGvGGPi4WimUyDcqvTmm\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(capture): keep one winner on config target collisions instead of …",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T20:25:45Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3f1bbd80f9fa59aa4201cea679f9872ebbac3427",
          "body": "…ps + add Sigma File Manager module (#186)\n\n* fix(catalog): partition the three grandfathered restore-target overlaps (#181)\n\nPR #180's TestCatalogIntegrity_NoOverlappingRestoreTargets grandfathered\nthree pre-existing overlapping-ownership pairs in knownRestoreOverlapAllowlist.\nOverlapping restore t\n[…]\nared.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_016waGvGGPi4WimUyDcqvTmm\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(catalog): partition the three grandfathered restore-target overla…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T20:07:05Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "461a0f4c8bff1b17c27c2ce3ad591811ad987fc5",
          "body": "…ble sets (#184)\n\nSchema-v2 generation captures shipped their payloads without ever running\nthe module's own declarative `validate` block; the checks\n(configvalidate.ValidateStaging / ValidateResolved) fired only at restore,\nso a payload that could never pass staging validation was still captured an\n[…]\nisting\ncaptureWarnings array marking the set as possibly-unrestorable.\n\n\nClaude-Session: https://claude.ai/code/session_016waGvGGPi4WimUyDcqvTmm\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(capture): validate captured config payloads and warn on unrestora…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T20:02:25Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f0bc2c80397061e6b101302a0eafe3a65640abc9",
          "body": "…rading (#183)\n\nA transient WinGet community-source failure (e.g. exit status 0x8a150001)\npreviously cost the user their entire community app list: the existing\nwhole-batch retry only fired when *zero* packages were returned, so a\ncapture that still yielded a couple of msstore apps skipped retry and\n[…]\nruns of sources that already exhausted their retry budget.\n\nFixes #176\n\n\nClaude-Session: https://claude.ai/code/session_016waGvGGPi4WimUyDcqvTmm\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(capture): retry transient winget community enumeration before deg…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T20:02:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d25a51f2430e208fcdf9f9640faec55daf478579",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.27.3 (#182)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-21T19:14:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a76054eee5d6cd9fc21285ed26caca19ba12d38b",
          "body": "…files) (#180)\n\nTwo module pairs shipped colliding restore targets. When both matched a\nreal machine, capture emitted overlapping config sets and the restore\nplanner failed BOTH with ReasonTargetCollision\n(internal/planner/config_collision.go), so the machine restored NEITHER.\n\n- apps.wsl and apps.w\n[…]\n follow-up partition, so\nthe guard blocks new regressions immediately.\n\n\nClaude-Session: https://claude.ai/code/session_016waGvGGPi4WimUyDcqvTmm\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(catalog): partition overlapping restore ownership (wsl, shell dot…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T18:55:35Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "363eb8cc8c997274996bb1910306fd33b25b8cd6",
          "body": "…inget sources (#177)\n\npossibleDuplicateWarnings grouped same-display-name rows by full capture\nidentity (driver + source + ref), so a single physical winget package listed\nunder both the community and Microsoft Store sources warned as a duplicate.\nSince v2.27.1 (#170) enrichStoreDisplayNames relabe\n[…]\ns and %s; both copies were captured\". Code stays\n\"possible_duplicate\".\n\n\nClaude-Session: https://claude.ai/code/session_016waGvGGPi4WimUyDcqvTmm\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(capture): stop false duplicate warning for one Store app across w…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T18:55:32Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "2e0fdb69ad9f52210a4529a524d059ba7c97bef8",
          "body": "Same real-engine full-flow recording approach as #174, re-recorded and\ncut for pacing: opens directly on the landing page, capture start view,\nlive scan streaming 93 detected apps, \"Found 93 apps / 36 settings\"\nresults, then the setup preview (95-app profile) through Apply. GIF is\n1.5x (11.6s) for t\n[…]\np4 is the 1x source. Both are\nsmaller than the previous 43.5s renders.\n\n\nClaude-Session: https://claude.ai/code/session_016waGvGGPi4WimUyDcqvTmm\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(media): replace demo with the tightened 17.5s marketing cut (#175)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T18:54:50Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "54b59480bb2c6fb072891488bed9b7fc2f609de0",
          "body": "…174)\n\nRecorded against gui-v3.5.0 + engine 2.27.2 via the dev bridge: capture\nscan with live stage feedback and named Store apps, then a setup preview\nof a real 95-app profile (3 to install, 92 present, 35 settings\navailable). Adds the mp4 alongside the README's gif embed.\n\n\nClaude-Session: https://claude.ai/code/session_01CLRuiR4NY3trdE2NgG6jLL\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(media): refresh demo with the real-engine full-flow recording (#…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T15:29:17Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "eccec2fb0e7696ca6323f878be0f999c90504b51",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.27.2 (#173)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-21T13:55:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8d664ec794177078b1a53d6646bf75e8ad250b65",
          "body": "The Feb 2026 module audit flagged apps.lightroom-classic (26 captured\ndirectories) as missing a secrets declaration. Preferences .agprefs files\ncan embed publish-service auth tokens (Flickr/SmugMug connections) and\nAdobe-account-linked settings; declare them warn-only per the house\npattern (acrobat-reader, android-studio).\n\n\nClaude-Session: https://claude.ai/code/session_01CLRuiR4NY3trdE2NgG6jLL\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(catalog): declare Lightroom Classic preferences as sensitive (#172)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T13:40:15Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "b7e7e1558bb566b437bee7829991e6317bc010c0",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.27.1 (#171)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-21T13:25:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e773521ff53b9b84244349c2f4b996ff84ae7a06",
          "body": "Store apps sourced from msstore surface as raw product IDs (e.g.\n\"XP89DCGQ3K6VLD\" for PowerToys, \"XP9CSRSZ9PS7X0\" for Qobuz) when their\nwinget-list name evidence is lost. `winget export --source msstore` yields\nonly the product ID, and the parallel `winget list --source msstore` that\nsupplies friend\n[…]\nable-interactivity so it cannot hang or fail on non-interactive stdin.\n\n\nClaude-Session: https://claude.ai/code/session_01CLRuiR4NY3trdE2NgG6jLL\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix: recover Microsoft Store display names during capture (#170)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T13:21:03Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "fd95f6e97fec5f4e586ec838c4cdc1411cd5cab2",
          "body": "…s (#169)\n\nWhen a user declines or dismisses the UAC elevation prompt during\n`winget install ... --silent`, winget aborts non-zero (e.g. the bundled\nMSI prints \"Installer failed with exit code: 1602\") and the engine\nreported a generic status=failed/install_failed. The GUI then showed a\nscary FAILED \n[…]\nlback). event-contract.md and cli-json-contract.md\nupdated additively.\n\n\nClaude-Session: https://claude.ai/code/session_01CLRuiR4NY3trdE2NgG6jLL\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix: classify user-cancelled installs distinctly from generic failure…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T13:20:58Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "94315c638f3077ad9ebc5b89d32916108418c009",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.27.0 (#168)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-21T08:38:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c273f661b705d6d5f0171025591a8bb92638b8d7",
          "body": null,
          "is_bot": false,
          "headline": "feat(capture): add progress and Store source lifecycle (#154)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T08:34:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fdc9a9c91fd453a426a8785017ff8450a194f2ec",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.26.0 (#167)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-21T07:46:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "50952c542fa0bf6e4b07656cb4020bfe8058b4ce",
          "body": "… the fixes underneath (#160)\n\n* fix(config): resolve module catalog on installed layouts\n\nA PATH-invoked endstate resolved no repo root, so capture short-circuited\nits catalog load, matched zero config modules, and wrote an app-list-only\nmanifest with no warning at all. Config portability is the wh\n[…]\ne Opus 4.8 (1M context) <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_01GWSEnNTbv9orG8hJin8VGM\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: selective app+config transfer — capture --only, share mode, and…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T07:43:32Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "7ea4c971fe636044b6fa4a7d53019ddad99d97ca",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.25.1 (#166)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-21T07:11:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1cee14d017d71a25b7d4356de396e856f6188f88",
          "body": "…165)\n\nConcreteFilesystemTarget resolves a target's on-disk identity by scanning\neach existing path component's parent directory (actualFilesystemEntryName):\nos.ReadDir snapshots the parent, then entry.Info() is called per sibling to\nmatch by SameFile. On Unix, ReadDir returns name+type only and Inf\n[…]\nle resolution on an unrelated\nrace. Non-ENOENT errors still propagate.\n\n\nClaude-Session: https://claude.ai/code/session_01CLRuiR4NY3trdE2NgG6jLL\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(restore): tolerate vanishing siblings during target resolution (#…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T07:08:33Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "77b732124458547a825d2dbe29be6534367b26c7",
          "body": "…status (#164)\n\n- Point CI badge at go-ci.yml (referenced ci.yml no longer exists)\n- Replace hardcoded \"v1.0.0\" status with a self-updating Releases link\n- Mark hosted backup production-ready; note macOS/Linux (Nix) in progress\n- Describe the desktop GUI as free/open-source with an optional paid\n  h\n[…]\ntratesystems.io and the GUI's own Apache-2.0 free/open-source framing)\n\n\nClaude-Session: https://claude.ai/code/session_01CLRuiR4NY3trdE2NgG6jLL\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: refresh README for public launch — fix dead CI badge and stale …",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-21T06:48:18Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "97a68f9425419179edfbcd650f03fa5025bf89f1",
          "body": "Wire the engine's real-execution integration smoke into CI as a blocking\nper-PR job (\"Integration Test (windows)\"). It builds the shipped CLI and\ndrives apply/restore/verify/export-config/bootstrap/events end-to-end\nagainst throwaway $env:TEMP fixtures, complementing the hermetic unit suite.\n\nRuns u\n[…]\nted green and gated nothing.\nAll-pass behaviour (exit 0) is unchanged.\n\n\nClaude-Session: https://claude.ai/code/session_01CLRuiR4NY3trdE2NgG6jLL\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci: run integration-test.ps1 on windows for every PR (#163)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-20T19:34:42Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9fe91b3da9477dec573f6bcb50e3d7f8417e56f7",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.25.0 (#162)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-20T19:08:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f15cd4980c5b330e61d98b6dae3de0e4e3ec3c5",
          "body": "… (#147)\n\n* spec(unigetui-import): manifest-import capability — UniGetUI .ubundle as first source\n\nOpenSpec change: endstate import --from unigetui --path <file> converts a\nUniGetUI backup (.ubundle, export_version 3) into a JSONC manifest.\nWinget-source packages map to apps; --pin writes versions (\n[…]\nport.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_01WjiYqx7LVvR2Yr883PMKYr\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(import): UniGetUI .ubundle importer — manifest-import capability…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-20T18:32:13Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a650f8f22ffef9ea6207ad07a96b31b030394000",
          "body": "restoreModulesAvailable was built from MatchModulesForApps(catalog, mf.Apps),\nanswering \"which catalog modules match these apps\" when consumers need \"which\nsettings does this profile carry\". On a real profile that offered 41 modules\nwhere 8 had payload — 33 phantom entries (80%) that would restore n\n[…]\n\n\nRefs: openspec/changes/fix-setup-flow-honest-reporting\n\n\nClaude-Session: https://claude.ai/code/session_01FhLLSASsBqv7DNn7vRp1eJ\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(apply): scope restoreModulesAvailable to profile contents (#161)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-20T17:48:44Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a0b6160b6e7eca74054e0023078fc05bb157d234",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.24.2 (#159)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-18T17:50:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "32caafb8c1cc8112993428055bedd939b2ac90c6",
          "body": null,
          "is_bot": false,
          "headline": "fix(capture): restore package event contract (#158)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-18T17:48:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bb3d2f41aa83a9263baf8a180e40cb988b8f2b38",
          "body": "Release engine v2.24.1 with the mixed-v2 legacy directory-root capture hotfix.",
          "is_bot": true,
          "headline": "chore(main): release 2.24.1",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-18T08:36:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cee36dfc42b157f76a9a0d769d35e5ab1c1e01e0",
          "body": "Fix exact legacy directory-root sources in mixed-v2 capture bundles and add regression coverage for all released catalog shapes.",
          "is_bot": false,
          "headline": "fix(bundle): rewrite legacy directory-root capture sources",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-18T08:34:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8b2c98185f3c0a5f6023467bdf0eef27b5f7073",
          "body": null,
          "is_bot": false,
          "headline": "docs(openspec): archive config generations (#155)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-18T07:51:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5d48b941fa9605a1b3face01ad4719cb29ed4eb0",
          "body": "Release Endstate 2.24.0 with cross-driver ownership warnings and configuration generations.",
          "is_bot": true,
          "headline": "chore(main): release 2.24.0 (#152)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-17T19:08:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e591355528ee36a58ff205deebe7077a0147aefe",
          "body": "Archive the completed warning change and sync its requirement into the canonical multi-driver specification.",
          "is_bot": false,
          "headline": "docs(openspec): archive cross-driver warning change (#153)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-17T19:05:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59779875eeb75cbe84195ea80695ff554d7c9df7",
          "body": "* docs(openspec): specify config generations\n\n* feat(modules): add config generation schema\n\n* docs(openspec): record schema slice progress\n\n* docs(openspec): correct legacy v2 compatibility\n\n* feat(modules): add config instance discovery\n\n* docs(openspec): record instance discovery progress\n\n* docs\n[…]\nfig): prove generation roundtrip and live smoke\n\n* style: remove integration whitespace\n\n* test(config): distinguish resolved targets from roots\n\n* docs(openspec): record final generation verification",
          "is_bot": false,
          "headline": "feat(config): add first-class configuration generations (#149)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-17T16:55:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d30a59fe889d62d3e7832f70b580de7f5623e031",
          "body": "Add conservative cross-driver ownership warnings without deduplication or rerouting; update contracts and archive the shipped Chocolatey OpenSpec change.",
          "is_bot": false,
          "headline": "feat(engine): warn on cross-driver package ownership (#151)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-17T16:41:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9dc00c8cc29f9768a9cac880267624a09f90e7cb",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.23.0 (#150)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-16T18:07:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6ad067fdfe143f27eb2f5287ee5dd3e534f52e43",
          "body": "* feat: add multi-driver Chocolatey support\n\n* test: isolate multi-driver CI seams\n\n* test: isolate no-retry capture path\n\n* docs(openspec): record cross-platform CI fix",
          "is_bot": false,
          "headline": "feat: add multi-driver Chocolatey support (#148)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-16T16:34:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "584b8256ec476ae7f1b059d551794d9d54440c69",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.22.0 (#141)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-07-10T20:35:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97698696629e1422be1656d619637d31417725c9",
          "body": "…r manifest (#146)\n\n* docs(openspec): add endstate-rebuild change\n\nAuthor the OpenSpec change for `endstate rebuild --from\n<bundle.zip|manifest.jsonc>`: proposal, design, the endstate-rebuild delta\nspec, a capture-bundle-zip MODIFIED delta, and tasks.\n\nDocuments the restore-path resolution chain (pa\n[…]\npath.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_01WjiYqx7LVvR2Yr883PMKYr\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(rebuild): one-command fresh-machine flow from a capture bundle o…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T19:37:31Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "947b7337239858ebd02b558efed82ffab3bc2d49",
          "body": "… (#145)\n\n* spec(capture-pin): opt-in version pinning at capture time\n\nOpenSpec change: capture --pin writes installed winget versions into\nthe emitted manifest's per-app version field; capture --update stops\ndropping declared version/driver through the merge. Extends the\nwindows-version-capture-pin\n[…]\n-pin.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_01WjiYqx7LVvR2Yr883PMKYr\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(capture): --pin flag writes installed versions into the manifest…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T19:37:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "18c13302ed8229b6b10c12e58a891c9fcf4098d1",
          "body": "…t (#144)\n\ndriversFor returned early after the first matching selector, so darwin\nadvertised only \"nix\" even though the Homebrew driver is selectable as\nan additive explicit lane. Accumulate across selectBackend,\nselectRealizer, and selectBrewDriver so the advertised list matches\nwhat the engine can actually drive on the host.\n\n\nClaude-Session: https://claude.ai/code/session_01WjiYqx7LVvR2Yr883PMKYr\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(capabilities): advertise brew alongside nix in darwin drivers lis…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T19:37:18Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9a86fe3ae94b9975930cfa9aff40d2f9a98bcb35",
          "body": "Palette-based encode (no dithering artifacts), 1.25x pacing, toast\nsuppression fixed in the recorder (CSS injection instead of DOM removal).\n\n\nClaude-Session: https://claude.ai/code/session_013hS1hRB9tXMZTiM5BhiAfZ\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: tighter, artifact-free demo GIF (#143)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T11:29:52Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "49c36102eecd2d70868b48b38922ce7924f9973e",
          "body": "Setup flow recorded from the real app (scripts/record-demo.mjs in the\nGUI repo): pick a starter pack, live dry-run preview, apply.\n\n\nClaude-Session: https://claude.ai/code/session_013hS1hRB9tXMZTiM5BhiAfZ\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: demo GIF at the top of the README (#142)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T10:54:46Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "e86505b576f8bec29baa9eafd6d68b94121eff9c",
          "body": "…ble|status|run (#139)\n\n* feat(schedule): implement schedule enable|disable|status|run command family\n\nPhases 1+2+3 of the Continuous Protection flagship (scheduled-drift-check\nopenspec change). Adds OS-scheduler-invoked drift verification with no\nresident process — the Windows Task Scheduler calls \n[…]\n spec\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_013hS1hRB9tXMZTiM5BhiAfZ\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(schedule): scheduled drift check — endstate schedule enable|disa…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T06:53:30Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4f04400c35ef3053787886a602cfead5117270d6",
          "body": "* feat(apply): add --only flag for app-subset selection\n\nImplements apply-app-subset (openspec/changes/apply-app-subset): the new\n--only <id[,id,...]> flag filters the manifest app set before planning so\nevery downstream stage (plan, drivers, config-module expansion, restore\nscoping, verify, events,\n[…]\nefs).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_013hS1hRB9tXMZTiM5BhiAfZ\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(apply): --only flag for app-subset installs (#140)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T06:51:02Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "fb990a3c58d087d92848ddb667aa2e8f66bcc280",
          "body": "…ction (#137)\n\n* feat(manifests): add six curated starter-pack profiles + README Setups section\n\nShareable Setups v0: install-only starter manifests (fullstack-dev,\nstreamer, photo-video, gaming, privacy, student) drawn from the module\ncatalog, plus a README table and the capture --sanitize share lo\n[…]\nned).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_013hS1hRB9tXMZTiM5BhiAfZ\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(manifests): six curated starter-pack profiles + README Setups se…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T06:50:59Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "ffea93dbf343f33e51aa5d7a6b730c03beaf1cb3",
          "body": "…(#138)\n\nAdd `IfChanged bool` (JSON: `ifChanged`) to `HostedBackupFeature` in\ncapabilities.go and set it `true`. This gives the GUI a contract-backed\nboolean gate for the conditional auto-backup flow (`backup push\n--if-changed`) rather than requiring it to probe the flag list.\n\n- openspec/changes/ad\n[…]\nple updated to show full hostedBackup block; added canonical-gate note\n\n\nClaude-Session: https://claude.ai/code/session_013hS1hRB9tXMZTiM5BhiAfZ\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(capabilities): advertise hostedBackup.ifChanged capability gate …",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-07-10T06:50:57Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "dd0ab5516d7de1e59c42e2e68d19577fff8fd6d5",
          "body": "Lead with what users actually search (\"set up a new Windows PC\", reinstall\napps, restore settings) instead of provisioning jargon; add site + download\nlinks. Improves Google ranking and LLM discoverability.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\nClaude-Session: https://claude.ai/code/session_018BVExybnEsLPpLGSDzQHoM",
          "is_bot": false,
          "headline": "docs: search-friendly README opening for discoverability",
          "author_name": "Artexis10",
          "author_login": "Artexis10",
          "committed_at": "2026-07-03T18:03:30Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "33d6c5bca7878203684cff5588353fefe0101461",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.21.0 (#131)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-28T11:35:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "43efedd35f3c5bdbbd5426ec027691a7e96260f8",
          "body": "CLAUDE.md becomes the single source of truth; AGENTS.md is now a symlink to it so non-Claude agents read the same content. Folds the 5 specialized agent role definitions (ModuleAuthor, TestWriter, ContractGuard, EngineDev, ModuleValidator) in as a labeled section. Eliminates CLAUDE.md/AGENTS.md drift.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\nClaude-Session: https://claude.ai/code/session_01A6QsUUtsqPVNkHdxD32T5n",
          "is_bot": false,
          "headline": "docs: consolidate AGENTS.md role playbooks into canonical CLAUDE.md",
          "author_name": "Artexis10",
          "author_login": "Artexis10",
          "committed_at": "2026-06-27T13:07:49Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "851f996861dfb2e4ccc1d412220dde226af78bde",
          "body": "Go 1.22 emits macOS binaries without an LC_UUID load command, which the updated macos-latest (macOS 15) dyld now rejects (Abort trap: 6). release.yml builds the endstate-darwin-* release binaries with this pin, so shipped macOS binaries likely crash on launch on macOS 15. The Nix smoke's macOS apply\n[…]\nntegration.yml, and release.yml; Go >=1.23 emits LC_UUID.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\nClaude-Session: https://claude.ai/code/session_01TSTgFLDcHjAN8dZno2CAre",
          "is_bot": false,
          "headline": "fix(ci): bump Go 1.22 to 1.26 (fixes macOS LC_UUID dyld crash) (#136)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-27T07:59:52Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "6e4aa6e8e1c6578b03f0e3c2e6dc5378946798ef",
          "body": "…nix (#129/#130) (#132)\n\nSyncs the deltas into main specs (bootstrap-full-sync +3/~3; new backup-keychain\ncapability +3) and re-homes the two real-machine keychain validations into the\nroadmap §6 real-machine validation queue.\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive unix-engine-self-install + backup-keychain-u…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-27T07:59:35Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "45b5a5f11af03250b08ade08f9f5a5a306a51202",
          "body": "…ograms (#135)\n\n* feat(home-catalog): data-driven curated emission + dotfiles/CLI tier\n\nReplace the per-concept emit blocks in CompileHomeNix with a single\ncuratedTable descriptor table + one generic emit loop. Each row is\n{Name, StableField, Kind, get}; curatedPrograms (the raw-overlap guard)\nis de\n[…]\n Opus 4.8 (1M context) <noreply@anthropic.com>\n\nClaude-Session: https://claude.ai/code/session_01TSTgFLDcHjAN8dZno2CAre\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(home-manager): data-driven cross-platform config catalog + 11 pr…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-24T20:15:37Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d073cc73588323c830c2931d3f172053befd09b7",
          "body": "…s) (#134)\n\n* feat(restore): value-level Windows OS-settings registry tier\n\nAdd value-scoped registry primitives so individual Windows OS preferences\n(dark mode, show file extensions, taskbar alignment) can be captured,\nrestored, and verified without clobbering co-resident values under the same\nHKCU\n[…]\n Opus 4.8 (1M context) <noreply@anthropic.com>\n\nClaude-Session: https://claude.ai/code/session_01TSTgFLDcHjAN8dZno2CAre\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(windows-settings): value-level Windows OS-settings tier (8 group…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-21T01:04:13Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "1c971caa1db99d822ea0f119fe37db4fd0527419",
          "body": "Adds capture-only modules for genuinely-missing high-value Windows apps (3D/CAD: meshlab, modo, openscad, marmoset-toolbag; audio: dbpoweramp, ocenaudio, serato-dj, rekordbox, waveform; DB/API: dbgate, redisinsight, robo-3t-adjacent, sqlitestudio; IDEs: netbeans, spyder; remote: nomachine, parsec, r\n[…]\nlent skips). Pure data addition; no engine/schema change.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\nClaude-Session: https://claude.ai/code/session_01TSTgFLDcHjAN8dZno2CAre",
          "is_bot": false,
          "headline": "feat(catalog): add 42 Windows config modules across 11 categories (#133)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-21T01:04:10Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f22cd32ce8afc807b152bf70fb8c2b4da21bb213",
          "body": "… (#130)\n\n* feat(bootstrap): platform-split self-install with Unix support\n\nSplit the Windows-only bootstrap command into platform files. The current\nWindows behavior moves byte-identically into bootstrap_windows.go; a new\nbootstrap_unix.go implements Linux/macOS:\n\n- install to ${XDG_DATA_HOME:-$HOM\n[…]\nd the self-copy guard. Add a\ndistribution paragraph to docs/COMPATIBILITY.md.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(bootstrap): Unix self-install + multi-platform release artifacts…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-12T01:07:36Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "5ea8df541d5878dd8a75713d011ca56779c163e1",
          "body": "… (#129)\n\n* feat(backup): macOS Keychain + Linux Secret Service keychain backends\n\nHosted Backup persisted the refresh token + DEK only on Windows\n(Credential Manager); every other platform hit the fail-closed stub\n(\"platform not supported (Windows only)\"), making backup unusable on\nmacOS/Linux even\n[…]\ner-gated\ntrust boundary platform-agnostically, which the new backends uphold.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(backup): macOS Keychain + Linux Secret Service keychain backends…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-12T01:07:32Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "7a32903256d3ec92acd7c8b631cf3c21da39c31f",
          "body": "…ve 6 changes) (#128)\n\nThe engine work shipped across #95-#127; this closes the spec ledger:\n\n- Archive nix-realizer-backend -> new main spec nix-package-backend (realizer\n  selection, atomic generation apply, event fan-out, pinned refs, error codes)\n- Archive platform-backend-foundation -> new main\n[…]\nfication: openspec validate --all --strict 71/71; go test ./... green;\nreal-Nix smoke green locally; CI green on main incl. scheduled Nix smoke.\n\nCo-authored-by: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): close out the Linux/macOS platform arc (sync + archi…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-11T16:10:16Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "7e73025a8ad473061f4ee7a4850fd4a4c0619f73",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.20.0 (#126)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-07T14:59:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5e76c59185020d11f3d2755b83800b3476d701dc",
          "body": "…(#127)\n\nPost-merge follow-ups to the engine-backend-bootstrap arc (#125): document the consent event type in docs/contracts/event-contract.md (non-breaking addition), and reconcile macos-brew-driver's cask scenario from reject-at-load to auto-route-to-brew. No engine code changes. openspec validate --all --strict 74/74.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(contract): document consent event + reconcile cask auto-routing …",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-06T13:31:12Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "59f5dba853c0dabcf3ef98386cc5b5225d3dcdbe",
          "body": "…ro-prerequisites keystone (#125)\n\nThe engine installs its own absent package backend on macOS/Linux — consented, via\nthe official installer, verified before use, gracefully skippable. The zero-prerequisites\nkeystone for non-technical users.\n\n- internal/bootstrap: detect -> consent -> official insta\n[…]\nsent` event in docs/contracts/event-contract.md; reconcile the\ncask-routing supersession into macos-brew-driver when it graduates.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(bootstrap): engine-installed backend bootstrap — Nix/Homebrew ze…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-06T10:31:02Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e16f1ba399b26f0df810006f44432e8842615b23",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.19.0 (#122)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-05T23:02:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f1fbd5310793db76db49be01cdee8419187e205a",
          "body": "…fault (#124)\n\nBackup labels were write-once: `name` was set at create and never changeable,\nso the GUI's machine auto-backup was stuck at \"This computer\" and users could\nnot name a backup. This makes the label mutable metadata, decoupled from the\nimmutable backend id.\n\n- storage.Client.UpdateBackup\n[…]\ntil it deploys). Contract doc updated. OpenSpec change\nbackup-rename-and-device-label validates --strict. go build/vet/test green.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(backup): mutable backup labels (rename) + device-label create de…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-05T21:19:20Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "ecdca8c767deaa5ab2d33de23c69d019bc89cf51",
          "body": "Folds the best-effort brew rollback change's delta into openspec/specs/macos-brew-best-effort-rollback (3 requirements) and moves the change to archive/2026-06-05-. No code change; openspec validate --all --strict stays 72/72.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive macos-brew-best-effort-rollback (#121) (#123)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-05T16:27:04Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "acbf0259c39bfb00c4a2c4f897ca6e22ab019a3b",
          "body": "…back (#121)\n\nrollback short-circuited to the Nix realizer on darwin, so brew apps recorded in their own backend:\"brew\" generation were never uninstalled. RunRollback's realizer path now composes a best-effort brew uninstall lane (mirroring the winget pattern) when an explicit --to N is given: it un\n[…]\n-identical to before). A brew-only target is now valid. Graduates the best-effort-rollback subset of the macos-brew-driver design.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): best-effort brew rollback composed with the native roll…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-05T14:54:35Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "0dba0834f90a1a5042b380fa4f5ba50751fd8747",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.18.0 (#119)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-04T19:09:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f65a4e1ff4655e4ac9d5ed45cef82d64aca75750",
          "body": "…id (#118)\n\nresolveBackupID returned backups[0] whenever any backup existed, silently\nignoring --name — so a named push could never create a new backup and\nper-profile hosting was impossible. Reorder resolution to id → named-create\n→ first-or-default: a non-empty --name with no --backup-id now creat\n[…]\na fake (4 cases). go test backup+commands\ngreen, go vet clean.\n\nUnblocks the GUI unified per-profile backups model (endstate-gui).\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(backup): push --name creates a distinct backup when no --backup-…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T18:57:40Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9fac1b81879558b9324cb83f9b8c79025f143d24",
          "body": "…ecrets-env (#120)\n\nBoth impl changes shipped (PRs #117, #115). Archived post-merge:\n- nix-home-manager-secrets-env → synced into openspec/specs/nix-home-manager-secrets-boundary\n  (env-exposed *_FILE secrets: +1 requirement, ~2 modified).\n- macos-brew-apply-wiring → new openspec/specs/macos-brew-ap\n[…]\nsk-ref validation).\nThe design-only engine-backend-bootstrap and the macos-brew-driver / secrets-scope design\nchanges stay active.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive macos-brew-apply-wiring + nix-home-manager-s…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T18:16:46Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f6a884e5d00df0a20e80cf06b3088b81bc743a54",
          "body": "* feat(engine): two-lane darwin apply wiring for the brew driver\n\nRoute driver:\"brew\" apps through the Homebrew driver alongside the Nix\nrealizer in one apply/capture/verify/plan run on darwin. The Nix realizer\nstays the darwin default; a no-brew manifest is byte-identical to today\n(non-regression t\n[…]\nntegration Smoke running real brew) is unchanged.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): two-lane darwin apply wiring for the brew driver (#117)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T18:13:10Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e5876369c86f0d9a77d6ae9eded1bccd864d90a2",
          "body": "…) (#115)\n\n* feat(engine): home-manager env-exposed secrets (*_FILE path-reference)\n\nShip Phase 2 of home-manager secrets: an env entry now ALSO carries a path,\nand the engine emits `home.sessionVariables.<env> = \"<path>\";` referencing the\nFILE PATH, never the value (the *_FILE path-reference conven\n[…]\nl --strict --no-interactive: 69 passed, 0 failed.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): home-manager env-exposed secrets (*_FILE path-reference…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T18:05:54Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9c04e2954f92aeec6058e81c9d09e5fc5501ebc5",
          "body": "…rew bootstrap (design only) (#116)\n\nDesign-only OpenSpec change introducing the engine-backend-bootstrap capability:\nthe engine installs its own package backend (Nix realizer / Homebrew driver) when\nabsent — consented, via the official installer, verified before use, gracefully\nskippable. Owns the \n[…]\nmposes with macos-brew-driver §8 (which keeps the\nHomebrew-specific bootstrap requirement) without duplicating it. No engine code.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(openspec): scope engine-installed backends — invisible Nix/Homeb…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T18:05:46Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "8ce5e96167c93d205abc2f3320aa4fd552ad8115",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.17.0 (#111)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-04T11:14:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9a7aecd31c12f3fcbcf04ffcf98fd4db3f22922a",
          "body": "Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive nix-home-manager-secrets (#112) (#114)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T09:18:43Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "889670f27abd5a95573ece0f9d78ad36b2edee36",
          "body": "… never embedded) (#112)\n\nPhase-1 documented-boundary secrets for home-manager config. homeManager.secrets\nis a list of {name, path|env, backend?}, a sibling of Flake/Config/Settings that\ncomposes with the engine-generated settings/config modes. Each entry emits a Nix\nREFERENCE only — a path entry -\n[…]\n backends, and secrets combined with flake mode.\nCapture carries the references (never material) through the provisioning history.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): home-manager secrets — documented boundary (referenced,…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T09:15:58Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d03615e3cb4a1d940e5ad644957f6b0bce40ff30",
          "body": "…(#113)\n\nAdd internal/driver/brew: a macOS Homebrew adapter implementing the\ndriver.Driver interface plus the optional Uninstaller, VersionedInstaller,\nBatchDetector, and provision.CapabilityReporter interfaces, mirroring\ninternal/driver/winget (injectable ExecCommand shim, exit-code/output\nclassifi\n[…]\n 1: package + hermetic tests only, no pipeline wiring yet\n(no select.go/apply/capture/verify/plan, workflow, or OpenSpec changes).\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): brew driver package (macOS Homebrew adapter, hermetic) …",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T09:02:11Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "695f768f1e142f6d2891d0e8d8c0f00ea17c21f3",
          "body": "…rsized-installer skip (#110)\n\nEvery module now inherits a baseline of never-config directories (Updates,\nInstaller, Setup, Cache, GPUCache, Code Cache, ShaderCache, Crashpad, Crash\nReports, Temp, logs — matched case-insensitively within a captured subtree) on\ntop of its own excludeGlobs, plus a gua\n[…]\n inherited with no module excludeGlobs and the oversized installer is\nskipped; existing collect/exclude tests unchanged and green.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(capture): defense-in-depth bloat guard — baseline excludes + ove…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-04T08:13:08Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "f8cb5b3c0a86e0fe5f62a064fb998b0eaeb7498a",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.16.0 (#108)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-03T20:19:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d0ab69a4b9207801bb2d591a02a5b1d2e023eda",
          "body": "Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive nix-home-manager-catalog-more (#106) (#109)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T20:18:52Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "8f333e1856d9be32ab631ead2f49bc466f08c085",
          "body": "Design-only OpenSpec change scoping a macOS Homebrew (brew) driver as the\nper-package, non-atomic driver.Driver sibling of winget, complementary to the\nNix realizer (nix = cross-OS config + CLI packages; brew = native macOS\napps/casks + a no-Nix adoption path). Resolves driver shape, the cask: ref\ns\n[…]\n-backends-live routing model, capture/verify/version,\nthe real-macOS verification plan, and a phased path. No Go, no dependencies.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(openspec): scope macOS Homebrew driver (design only) (#107)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T20:16:52Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "15f462642a92401d3ee92dd5f4ea5a5573962447",
          "body": "…neovim) (#106)\n\nAdd four new curated homeManager.settings concepts, each mapped to a stable\nhome-manager surface: eza (extraOptions []string → programs.eza.extraOptions),\ngh (settings attrset → programs.gh.settings), lazygit (settings attrset →\nprograms.lazygit.settings), neovim (extraConfig string\n[…]\nringSliceToAny helper added for eza list rendering.\nOpenSpec change nix-home-manager-catalog-more validates strict+no-interactive.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): extend home-manager curated catalog (eza, gh, lazygit, …",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T20:16:47Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d79c21b1927d62014918791b7ebdd8cfdf8df739",
          "body": "…(#105)\n\nNew read-only `endstate backup estimate --profile <path>` reports the exact\nnumber of bytes a `backup push` of the same profile would upload (encrypted\nchunks + encrypted manifest), computed entirely client-side with no network\ncall. Lets the GUI warn before a push that would approach or ex\n[…]\n\nplaintext by the AES-256-GCM overhead + manifest, and that --profile is\nrequired; existing push/upload tests unchanged and green.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(backup): add `backup estimate` to size a push without uploading …",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T20:09:04Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "94c470224b83b998378091e05f8c476ddfd012e7",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.15.0 (#103)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-03T19:40:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8131831818c4f4a4ae5b6641a78627b9ca4aa9d",
          "body": "Syncs the nix-home-manager-catalog capability spec from the merged broaden change.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive nix-home-manager-catalog-broaden (#100) (#104)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T19:09:14Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "3b55ed7a8b78ba563fbfd959b08596100b95b1bf",
          "body": "Add scripts/smoke/hm-realnix-smoke.sh — an isolated, end-to-end smoke\nthat builds the engine, writes a minimal homeManager.settings manifest\n(git userName/userEmail/defaultBranch + shell aliases), runs\n`endstate apply --enable-restore` against a throwaway HOME/ENDSTATE_ROOT,\nthen asserts the managed\n[…]\nes DeterminateSystems/nix-installer-action + magic-nix-cache-action;\ndoes NOT edit go-ci.yml and does NOT become a required check.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci: real-nix home-manager integration smoke (macOS/Linux) (#101)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T19:07:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "0e371aa065dcc8a515120a38269b5e22e866be33",
          "body": "…#102)\n\nDesign-only OpenSpec change comparing secrets backends (sops-nix vs\nagenix vs a documented zero-dependency boundary) for secrets-bearing\nhome-manager config. Governing principle: secrets are REFERENCED, never\nEMBEDDED in the generated, inspectable flake/home.nix, and capture must\nnever emit \n[…]\nlean agenix for a managed Phase 2, sops-nix only on\ndemonstrated need. No Go/engine code changed; strict openspec validate\npasses.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(openspec): scope home-manager secrets management (design only) (…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T18:19:17Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9287985a285c10e7a76ce690348c0af7c8ca7c73",
          "body": "… tmux, ssh) (#100)\n\nAdd five curated homeManager.settings concepts, each mapped to a STABLE\nhome-manager option so the declaration is insulated from option renames:\nfzf/zoxide -> programs.<name>.enable (ProgramToggle); bat -> enable +\nprograms.bat.config; tmux -> enable + programs.tmux.extraConfig \n[…]\nmple\nmanifest exercising curated + raw programs + a staged files entry, and an\nOpenSpec change (nix-home-manager-catalog-broaden).\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): broaden home-manager curated catalog (fzf, zoxide, bat,…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T18:19:14Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "dbce61427c55540eccdee025c634011331777ba8",
          "body": "…ure (#95/#96/#97) (#99)\n\nArchive the three merged batch changes: nix-package-version-capture (#95), nix-home-manager-verify (#97), nix-home-manager-catalog-capture (#96). Version-capture and catalog-capture sync their deltas into the main specs; verify used --skip-specs (its requirements were already synced into openspec/specs/nix-home-manager-verify when #97 merged). openspec strict 64/64.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive nix version-capture, hm verify, catalog capt…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T18:19:10Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "48d9770648097dae526aed7859220bfb17d6d19f",
          "body": "* ci: run the Go test suite on macOS and Linux too\n\nThe engine's Nix realizer + home-manager code paths (GOOS=darwin/linux) were\nonly ever cross-compiled in CI, never executed — the only test job ran on\nwindows-latest. Add a matrix job covering macos-latest and ubuntu-latest that\nruns the same herme\n[…]\naced by the new macOS/Linux CI matrix in this PR.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci: run the Go test suite on macOS and Linux too (#98)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T15:57:00Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "10567c6b5d3142d8b0e5842f67ea4d6c0b951ab9",
          "body": "Co-authored-by: endstate-release-bot[bot] <288088918+endstate-release-bot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(main): release 2.14.0 (#88)",
          "author_name": "endstate-release-bot[bot]",
          "author_login": "endstate-release-bot[bot]",
          "committed_at": "2026-06-03T08:28:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "05c486703e6699144148264a652ff1bb73fd8aef",
          "body": "…ttings) (#96)\n\nClose the capture↔apply loop for the catalog tier (#91): a machine provisioned\nvia homeManager.settings now captures back to homeManager.settings, mirroring\nthe flake/config round-trip (#86/#89).\n\nThe declared catalog settings are not recoverable from a live home-manager\ninstall, so \n[…]\nistory read error -> omit; never fails capture). Realizer-only.\nKnown limitation: only captures settings applied through Endstate.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): home-manager catalog capture (machine -> homeManager.se…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T08:10:40Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "1b11fdd9fbefb2bd3534394e405ef54c8aba2e73",
          "body": "…re and apply (#95)\n\n- Add StorePathVersion(name, storePaths) pure parser in internal/realizer/nix/versions.go:\n  strips 32-char nix base32 hash prefix, strips element name prefix, extracts version\n  tokens up to a known output suffix (-bin, -man, -dev, -doc, -lib, etc.); prefers\n  the exact-name st\n[…]\nnix-package-version-capture (proposal/design/tasks/spec).\n- Zero winget/Windows regression: parser is Nix-only; GOOS=windows build+vet clean.\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(capture): parse nix store-path versions and record them in captu…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T08:10:24Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "b231b7f616ffdb1856ca5ee23c3575b817579ce1",
          "body": "…rify path (#97)\n\nWhen the manifest declares a homeManager block, runVerifyRealizer now\ntype-asserts the realizer to the new optional HomeGenerationReader\ninterface and emits a single home-manager VerifyItem:\n- pass when active generation == most-recently recorded generation\n- fail config_drift when\n[…]\nrify_plan_realizer.go\n- 6 hermetic test cases covering pass/drift/missing/no-field/no-reader\n- OpenSpec change + spec nix-home-manager-verify\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(verify): add home-manager config generation check to realizer ve…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-03T08:10:10Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "cac814e16aa1231971273fa7098225caa1198f6c",
          "body": "Move the implemented nix-home-manager-rollback change to the archive and sync\nits 7 requirements into openspec/specs/nix-home-manager-rollback/. Mirrors the\nprior home-manager archival chores (#90, #92). No engine change.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive nix-home-manager-rollback (#93) (#94)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T18:14:32Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "56359f605c94d78e6ce2edf384302d0997bb629e",
          "body": "Sync the catalog's two ADDED requirements into openspec/specs/nix-home-manager-config and move the change to openspec/changes/archive/. Mirrors #90 (capture/wrapper/roundtrip archival). openspec strict 60/60.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive nix-home-manager-programs-catalog (#91) (#92)",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T17:48:01Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "82c6f8e945e533e5d8275882ca0136d5927d7aba",
          "body": "…) (#93)\n\nClose the last gap in the Nix config arc: revert the home-manager config to a\nprior Provisioning Generation, parallel to native package rollback.\n\n`rollback --to N` stays package-only by default; with --enable-restore it ALSO\nre-activates the home-manager config recorded in generation N (s\n[…]\nly B -> rollback --to 1 --enable-restore reverts the\nconfig to A despite the wrapper dir holding B (faithful store-path snapshot).\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): home-manager config rollback (rollback --enable-restore…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T17:47:50Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "849d6fe6134b13d371b4251768f0a417d0161111",
          "body": "…ero-Nix tier) (#91)\n\n* docs(openspec): scope nix-home-manager-programs-catalog\n\nArc step 3 (the zero-Nix tier): declare home-manager config in Endstate's own format (homeManager.settings) and the engine compiles a home.nix that flows through the existing #87 wrapper. Hybrid schema (curated git/shel\n[…]\n=windows build/vet + openspec strict 63/63 green.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): home-manager programs catalog (homeManager.settings — z…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T17:04:13Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "ec90790b576c364a5c6fb2072f7dd4a965b40782",
          "body": "…es (#90)\n\nPost-merge sync for #86, #87, #89:\n- nix-home-manager-capture (#86) → new openspec/specs/nix-home-manager-capture (3 reqs)\n- nix-hm-capture-config-roundtrip (#89) → +1 req on the same capability\n- nix-home-manager-config-wrapper (#87) → +2 reqs on nix-home-manager-config\n\nChanges moved to openspec/changes/archive/2026-06-02-*. openspec validate strict 60/60.\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(openspec): archive home-manager capture/wrapper/roundtrip chang…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T16:01:43Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2ef97fa8f006621014e103afb77b9d3006881143",
          "body": "…ed flake (#89)\n\n* docs(openspec): add nix-hm-capture-config-roundtrip change\n\nCapture must preserve the originally-declared home-manager input: emit\nhomeManager.config for a config-declared apply (not the engine-generated,\nmachine-local flake), homeManager.flake for a flake-declared one — so the\nco\n[…]\ncaptured manifest into a fresh root re-activates.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(engine): capture the declared home-manager input, not the generat…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T15:52:56Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "86913fa440304477d2b6f7c66a199cf53d2cb6f4",
          "body": "…#87)\n\n* docs(openspec): scope nix-home-manager-config-wrapper\n\nScopes the home-manager config-file wrapper: a new homeManager.config input\n(a path to a home.nix) that the engine wraps into a pinned, identity-injected,\ninspectable flake and activates via the merged #81 stage. config XOR flake.\nCaptu\n[…]\n generated dir a self-contained, ejectable flake.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): home-manager config-file wrapper (homeManager.config) (…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T14:31:01Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4b00d1831f539a1816b0c15fdfb9e8b2cd80cac3",
          "body": "…ture loop) (#86)\n\n* docs(openspec): add nix-home-manager-capture change\n\nPropose home-manager config capture on the realizer path: capture recovers\nthe engine-provisioned home-manager flake from the Provisioning Generation\nhistory (home-manager does not persist the source flakeref in a live\ninstall\n[…]\nrationsFn seam keeps the read\nhermetic for tests.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(engine): home-manager config capture (close the config apply↔cap…",
          "author_name": "Hugo Ander Kivi",
          "author_login": "Artexis10",
          "committed_at": "2026-06-02T14:30:40Z",
          "body_truncated": true,
          "is_coding_agent": true
        }
      ],
      "releases_count": 60,
      "commits_last_year": 482,
      "latest_release_at": "2026-07-21T20:58:25Z",
      "latest_release_tag": "v2.27.4",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 28,
      "days_since_latest_release": 0,
      "mean_days_between_releases": 0.4
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 42,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/Artexis10/endstate",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/Artexis10/endstate",
          "is_deprecated": false,
          "latest_version": "v2.27.4+incompatible",
          "repository_url": "https://github.com/Artexis10/endstate",
          "versions_count": 60,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-21T20:58:15Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 0
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 27,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [
          {
            "date": "2025-12-25",
            "count": 1
          },
          {
            "date": "2026-04-09",
            "count": 1
          },
          {
            "date": "2026-04-23",
            "count": 1
          },
          {
            "date": "2026-07-15",
            "count": 9
          },
          {
            "date": "2026-07-16",
            "count": 4
          },
          {
            "date": "2026-07-17",
            "count": 4
          },
          {
            "date": "2026-07-18",
            "count": 3
          },
          {
            "date": "2026-07-19",
            "count": 1
          },
          {
            "date": "2026-07-20",
            "count": 1
          },
          {
            "date": "2026-07-21",
            "count": 2
          }
        ],
        "complete": true,
        "collected": 27,
        "total_stars": 27
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go-engine/go.mod"
      ],
      "largest_source_bytes": 100851,
      "source_files_sampled": 504,
      "oversized_source_files": 2,
      "agent_instruction_files": [
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 23208
    },
    "dependencies": {
      "manifests": [
        "go-engine/go.mod",
        "package.json",
        "scripts/requirements.txt"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "npm",
        "pypi"
      ],
      "dependencies": [
        {
          "name": "github.com/danieljoos/wincred",
          "manifest": "go-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.3"
        },
        {
          "name": "github.com/gofrs/flock",
          "manifest": "go-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.11.0"
        },
        {
          "name": "github.com/golang-jwt/jwt/v5",
          "manifest": "go-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.3.1"
        },
        {
          "name": "github.com/tyler-smith/go-bip39",
          "manifest": "go-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "github.com/zalando/go-keyring",
          "manifest": "go-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.8"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "go-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.32.0"
        },
        {
          "name": "golang.org/x/sys",
          "manifest": "go-engine/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.29.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 178,
        "open_issues": 0,
        "closed_ratio": 1,
        "closed_issues": 8,
        "closed_unmerged_prs": 1
      },
      "bus_factor": 1,
      "bot_contributors": 2,
      "top_contributors": [
        {
          "type": "User",
          "login": "Artexis10",
          "commits": 429,
          "avatar_url": "https://avatars.githubusercontent.com/u/54939745?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "go-ci.yml",
        "nix-integration.yml",
        "release-please.yml",
        "release.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": true,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/20 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 3,
            "reason": "project has 1 contributing companies or organizations -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "23 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "64ef59699f3545bb492a07a9da7db073d3d557ac",
        "ran_at": "2026-07-22T06:15:07Z",
        "aggregate_score": 3.3,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-21T20:59:38Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-21T20:58:15Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/Artexis10/endstate",
    "host": "github.com",
    "name": "endstate",
    "owner": "Artexis10"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 61,
      "inputs": {
        "security": 33,
        "vitality": 86,
        "community": 36,
        "governance": 57,
        "engineering": 84
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 86,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 83,
            "inputs": {
              "commits_last_year": 482,
              "human_commit_share": 0.79,
              "days_since_last_push": 0,
              "active_weeks_last_year": 28
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "28/52 weeks with commits",
                "points": 19.4,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 28
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "482 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 482
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 60,
              "latest_release_tag": "v2.27.4",
              "releases_from_tags": false,
              "days_since_latest_release": 0,
              "mean_days_between_releases": 0.4
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "60 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 60
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~0.4 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 0.4
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 0,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 0 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 36,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 23,
            "inputs": {
              "forks": 0,
              "stars": 27,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "below_threshold"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "27 stars",
                "points": 23,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 27
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 57,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 13,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "excellent",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "merged_prs": 178,
              "open_issues": 0,
              "closed_issues": 8,
              "issue_closed_ratio": 1,
              "closed_unmerged_prs": 1
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "100% of issues closed",
                "points": 46.8,
                "status": "met",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "178/179 decided PRs merged",
                "points": 38,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 178,
                      "decided": 179
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/20 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 49,
            "inputs": {
              "followers": 9,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "Artexis10",
              "public_repos": 24,
              "account_age_days": 2511
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "9 followers of Artexis10",
                "points": 7.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 9,
                      "login": "Artexis10"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "24 public repos, account ~6 yr old",
                "points": 22.2,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 24
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 6
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/Artexis10/endstate"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 0
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 0 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "60 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 60
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 84,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 74,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "4 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "topics": [
                "automation",
                "cli",
                "configuration-management",
                "devops",
                "idempotency",
                "infrastructure-as-code",
                "powershell",
                "provisioning",
                "reproducibility",
                "system-setup",
                "backup",
                "dotfiles",
                "migration",
                "new-pc-setup",
                "open-source",
                "windows",
                "winget",
                "settings-backup"
              ],
              "has_wiki": true,
              "homepage": "https://substratesystems.io/endstate",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://substratesystems.io/endstate",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "18 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 18
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 33,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection",
                    "packaging"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 33,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 3.3
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/20 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "23 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 2
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 73,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 23208
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "79 of 79 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 79,
                      "sampled": 79
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 66,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0.71,
              "toolchain_manifests": [
                "go-engine/go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "go-engine/go.mod (toolchain convention, no task runner)",
                "points": 12.6,
                "status": "partial",
                "details": [
                  {
                    "code": "toolchain_convention",
                    "params": {
                      "files": "go-engine/go.mod"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "71 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 71,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 100851,
              "source_files_sampled": 504,
              "oversized_source_files": 2
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "2/504 source files over 60KB",
                "points": 54.8,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 504,
                      "oversized": 2
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T06:15:24.080846Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/a/Artexis10/endstate.svg",
  "full_name": "Artexis10/endstate",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.26.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsGo.