Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-25 06:00 UTC

Azure / azure-init

A minimal provisioning agent designed for Azure Linux VMs.

RustMIT★ 15 stars⑂ 17 forkssince May 2023View on GitHub ↗

Azure/azure-init holds a health index of 66 out of 100, placing it in the Moderate band. It scores highest on Security (78/100) and lowest on Community & Adoption (52/100). It was last updated 7 days ago. 2 contributors account for most of its recent work.

66
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

66
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

Microsoft AzureOrganization
15,076 followers2,726 public repossince Mar 2014

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
crates.ioazure-init0.1.121869 days ago
crates.iolibazureinit0.1.1201869 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

62Moderate · 22% of overall
How it's scored
36/36Push recency — last push 7 days ago
20.1/36Commit cadence — 29/52 weeks with commits
15.9/18Commit volume — 58 commits in the last year
10/10OpenSSF Scorecard: Maintained — 13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year58
human_commit_share0.84
days_since_last_push7
active_weeks_last_year29
How it's scored
16.2/27Ships releases — 1 version tags (no GitHub releases)
0/36Release recency — latest release 869 days ago
12.6/27Release cadence — cadence unknown (single release)
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count1
latest_release_tagv0.1.1
releases_from_tagsyes
days_since_latest_release869
mean_days_between_releases
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

52Moderate · 18% of overall
How it's scored
18.6/60Stars — 15 stars
10/25Forks — 17 forks
5.3/15Watchers — 10 watchers
Inputs used
forks17
stars15
watchers10
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

Community health

92Excellent
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (MIT)
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateyes
How it's scored
18.2/80Monthly downloads — 22 downloads/month across crates
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesazure-init, libazureinit
dependents
ecosystemscrates
total_downloads3,628
monthly_downloads22
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

69Moderate · 24% of overall
How it's scored
25.2/54Bus factor — 2 contributor(s) cover half of all commits
16.2/22.5Commit distribution — top contributor authored 28% of commits
13.5/13.5Contributor breadth — 11 contributors
10/10OpenSSF Scorecard: Contributors — project has 9 contributing companies or organizations
Inputs used
bus_factor2
contributors_sampled11
top_contributor_share0.28
How it's scored
32.4/46.8Issue resolution — 69% of issues closed
28.4/38.3PR acceptance — 165/222 decided PRs merged
15/15OpenSSF Scorecard: Code-Review — all changesets reviewed
Inputs used
merged_prs165
open_issues28
closed_issues63
issue_closed_ratio0.692
closed_unmerged_prs57
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
25/25Owner reach — 15,076 followers of Azure
25/25Track record — 2,726 public repos, account ~12 yr old
Inputs used
followers15,076
owner_typeOrganization
is_verified
owner_loginAzure
public_repos2,726
account_age_days4,526
How it's scored
25/25Published & resolvable — 2 package(s) on crates
4/35Publish recency — latest publish 869 days ago
4/20Version history — 1 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesazure-init, libazureinit
ecosystemscrates
any_deprecatedno
min_days_since_publish869

Engineering Quality

Are baseline engineering and documentation practices in place?

71Good · 20% of overall
How it's scored
24/24CI workflows — 4 workflow(s)
24/24Tests present
0/16Linter config
0/9.6Pre-commit hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 30 out of 30 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configno
has_precommit_configno
How it's scored
30/30README
25/25Documentation directory
0/15Documentation / homepage site
10/10Repository description
0/10Topics
10/10Wiki
Inputs used
topics
has_wikiyes
homepage
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

78Good · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
6/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 30 out of 30 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
7.5/7.5Code-Review — all changesets reviewed
2.5/2.5Contributors — project has 9 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
1/5SAST — SAST tool is not run on all commits -- score normalized to 2
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate7.2
Excluded from scoring (no data or not applicable): packaging, signed_releases. Remaining weights renormalized.
How it's scored
35/35Direct dependencies free of known advisories — no direct dependency carries a known advisory
25/25Indirect dependencies free of known advisories — no indirect dependency carries a known advisory
0/40No advisories left outstanding — no advisory carries a publication date
Inputs used
sourceosv
advisories0
affected_packages0
assessed_packages121
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the crates:azure-init@0.1.1 runtime dependency closure — what installing the published package pulls in — 121 packages. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

65Moderate · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 83 of 84 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.988
agent_instruction_files
agent_instruction_max_bytes
How it's scored
18/18One-command bootstrap — Makefile
22/22Automated tests
0/11Lint / format config
11/11Static type checking — Rust (statically typed)
10/10Reproducible environment — Dockerfile
2/10Demonstrated agent practice — 1 of the last 100 commits agent-authored or agent-credited
8/8Automated maintenance — 16 of the last 100 commits are automated dependency updates
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileyes
typed_languageyes
bootstrap_filesMakefile
has_devcontainerno
has_linter_configno
typecheck_configs
agent_commit_share0.01
toolchain_manifestsCargo.toml, libazureinit-kvp/Cargo.toml, libazureinit/Cargo.toml
dependency_bot_commit_share0.16
How it's scored
45/45Type-checkable code — Rust (statically typed)
53.4/55Manageable file sizes — 1/34 source files over 60KB
Inputs used
primary_languageRust
largest_source_bytes135,594
source_files_sampled34
oversized_source_files1

Key facts

15GitHub stars
11contributors
58commits, last 12 months
7days since last push
1releases
2bus factor
28open issues
crates.iopackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • Could not fetch crates package 'libazureinit-kvp' from its registry

More detail

Star and fork history 0 ★ / 17 ⇿
0Stars
17Forks
1Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

358101315181732024-022025-052026-07
Major 0Minor 0Patch 1

Each point covers 3 days.

OpenSSF Scorecard 7.2 / 10
7.2aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-25 06:00 UTC

10Binary-Artifactsno binaries found in the repo
8Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests30 out of 30 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
10Code-Reviewall changesets reviewed
10Contributorsproject has 9 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
2SASTSAST tool is not run on all commits -- score normalized to 2
10Security-Policysecurity policy file detected
n/aSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 43
RegistryPackageVersion constraintManifest
crates.ioexitcode1.1.2Cargo.toml
crates.ioanyhow1.0.81Cargo.toml
crates.iotokio1Cargo.toml
crates.iotracing0.1.40Cargo.toml
crates.ioclap4.5.21Cargo.toml
crates.iotracing-subscriber0.3.18Cargo.toml
crates.iotokio-util0.7Cargo.toml
crates.iosysinfo0.38Cargo.toml
crates.iolibazureinit0.1.0Cargo.toml
crates.iochrono0.4libazureinit-kvp/Cargo.toml
crates.ioclap4.5.21libazureinit-kvp/Cargo.toml
crates.iocsv1libazureinit-kvp/Cargo.toml
crates.iolibc0.2libazureinit-kvp/Cargo.toml
crates.ioserde_json1.0.96libazureinit-kvp/Cargo.toml
crates.iotracing0.1.40libazureinit-kvp/Cargo.toml
crates.iouuid1.3libazureinit-kvp/Cargo.toml
crates.ioreqwest0.13.1libazureinit/Cargo.toml
crates.ioserde1.0.163libazureinit/Cargo.toml
crates.iothiserror2.0.3libazureinit/Cargo.toml
crates.iotokio1libazureinit/Cargo.toml
crates.ioserde-xml-rs0.8.0libazureinit/Cargo.toml
crates.ioserde_json1.0.96libazureinit/Cargo.toml
crates.iorustix1.1libazureinit/Cargo.toml
crates.iousers0.11libazureinit/Cargo.toml
crates.ioblock-utils0.11.1libazureinit/Cargo.toml
crates.iotracing0.1.40libazureinit/Cargo.toml
crates.iotracing-subscriber0.3.18libazureinit/Cargo.toml
crates.ioopentelemetry0.32libazureinit/Cargo.toml
crates.ioopentelemetry_sdk0.32libazureinit/Cargo.toml
crates.iotracing-opentelemetry0.33libazureinit/Cargo.toml
crates.iotokio-util0.7libazureinit/Cargo.toml
crates.iosysinfo0.38libazureinit/Cargo.toml
crates.ioanyhow1libazureinit/Cargo.toml
crates.iofstab0.4.0libazureinit/Cargo.toml
crates.iotoml1.0libazureinit/Cargo.toml
crates.ioregex1libazureinit/Cargo.toml
crates.iolazy_static1.4libazureinit/Cargo.toml
crates.iofigment0.10libazureinit/Cargo.toml
crates.iouuid1.3libazureinit/Cargo.toml
crates.iochrono0.4libazureinit/Cargo.toml
crates.iocsv1libazureinit/Cargo.toml
crates.iozeroize1.8libazureinit/Cargo.toml
crates.iofs20.4libazureinit/Cargo.toml
All dependencies 43

Full resolved dependency set from the GitHub dependency graph: 31 direct and 12 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
crates.ioanyhowdirect
crates.ioblock-utilsdirect
crates.iochronodirect
crates.ioclapdirect
crates.iocsvdirect
crates.ioexitcodedirect
crates.iofigmentdirect
crates.iofs2direct
crates.iofstabdirect
crates.iolazy_staticdirect
crates.iolibazureinitdirect
crates.iolibcdirect
crates.ioopentelemetrydirect
crates.ioopentelemetry_sdkdirect
crates.ioregexdirect
crates.ioreqwestdirect
crates.iorustixdirect
crates.ioserdedirect
crates.ioserde-xml-rsdirect
crates.ioserde_jsondirect
crates.iosysinfodirect
crates.iothiserrordirect
crates.iotokiodirect
crates.iotokio-utildirect
crates.iotomldirect
crates.iotracingdirect
crates.iotracing-opentelemetrydirect
crates.iotracing-subscriberdirect
crates.iousersdirect
crates.iouuiddirect
crates.iozeroizedirect
crates.ioassert_cmdindirect
crates.iogagindirect
crates.ioidna_adapterindirect
crates.iopredicatesindirect
crates.iopredicates-coreindirect
crates.iopredicates-treeindirect
crates.iorstestindirect
crates.ioserial_testindirect
crates.iotempfileindirect
crates.iotracing-testindirect
crates.iowhoamiindirect
PyPIrequestsindirect
Dependency advisories 0

Installing crates:azure-init@0.1.1 pulls in 121 packages, direct and transitive: 0 carry known advisories, of which 0 are direct dependencies.

No known advisories affect the assessed dependencies.

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 497,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "Rust": 508454,
        "Shell": 8687,
        "Python": 25449,
        "Makefile": 1436,
        "Dockerfile": 2491
      },
      "pushed_at": "2026-07-17T18:27:42Z",
      "created_at": "2023-05-30T21:52:43Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-17T18:27:50Z",
      "description": "A minimal provisioning agent designed for Azure Linux VMs.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "Rust",
      "significant_languages": [
        "Rust"
      ]
    },
    "owner": {
      "blog": "https://docs.microsoft.com/en-us/azure/",
      "name": "Microsoft Azure",
      "type": "Organization",
      "login": "Azure",
      "company": null,
      "location": "United States of America",
      "followers": 15076,
      "avatar_url": "https://avatars.githubusercontent.com/u/6844498?v=4",
      "created_at": "2014-03-03T22:17:42Z",
      "is_verified": null,
      "public_repos": 2726,
      "account_age_days": 4526
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.1.1",
          "kind": "patch",
          "published_at": "2024-03-07T10:08:30Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "02fc7809d4ffb27b47241463b1b6bef5bde05ac5",
          "body": "Signed-off-by: Chris Patterson <cpatterson@microsoft.com>",
          "is_bot": false,
          "headline": "doc(kvp): introduce general KVP discussion doc (#290)",
          "author_name": "Chris Patterson",
          "author_login": "cjp256",
          "committed_at": "2026-07-17T18:27:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2d0e9143a3fcd52ac5ad4e92fb6042b615598762",
          "body": "* Add libseccomp to pipeline build\n\n* Remove DS_store files",
          "is_bot": false,
          "headline": "fix(ci): add libseccomp to AZL3 Dockerfile (#315)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-07-17T17:01:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3310a88e6ca9b1ff737d6acc5646fcf26eea26a3",
          "body": "* feat(kvp): add ProvisioningReport abstraction over KvpPoolStore\n\nAdd a ProvisioningReport that converts to ordered KVP\nentries via a new ToKvp trait and persists with write_report. ToKvp is\nthe seam for a future diagnostics report to reuse write_report unchanged.\n\n* fix(kvp): match legacy field or\n[…]\nre supporting-data parsing\n\nClose the codecov gaps on the new CLI paths and rework\n--supporting-data so one flag can carry multiple comma-separated\npairs, including values that contain literal commas.",
          "is_bot": false,
          "headline": "feat(kvp): add ProvisioningReport abstraction over KvpPoolStore (#310)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-07-08T20:59:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5ff325498eeb69600dc56fa7e1df6603680c8362",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): update actions/checkout to v7 (#312)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-06-30T17:50:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a3f512f78e12161e8bf386a84abc71c915d0c071",
          "body": "feat(kvp): add azure-init-kvp CLI\n\nReplace the handwritten libazureinit-kvp argument parser with clap-derived\ncommand and option parsing. Keep existing command behavior, including numeric\npool aliases, while adding generated help output and validation.\n\nExpose the CLI through the library run entrypo\n[…]\n- Consolidate tests: merge the two clear dispatch tests into one rstest,\n  fold --json parse assertions into existing globals/defaults tests, and\n  drop redundant JSON tests already covered elsewhere.",
          "is_bot": false,
          "headline": "feat(kvp): add libazureinit-kvp CLI (#309)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-06-18T12:53:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1d4df063981d049dcb2ae40a9aa0825aa25ba71e",
          "body": "Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 6 to 7.\n- [Release notes](https://github.com/codecov/codecov-action/releases)\n- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/codecov/codecov-action/compare/v\n[…]\n dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Cade Jacobson <91996442+cadejacobson@users.noreply.github.com>",
          "is_bot": true,
          "headline": "build(deps): bump codecov/codecov-action from 6 to 7 (#307)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-11T18:48:05Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b2d8917e86b1c8df4aff2a180b16e0e06f48bf33",
          "body": "Updates the requirements on [rstest](https://github.com/la10736/rstest) to permit the latest version.\n- [Release notes](https://github.com/la10736/rstest/releases)\n- [Changelog](https://github.com/la10736/rstest/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/la10736/rstest/compare/v0.23.0.\n[…]\n dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Cade Jacobson <91996442+cadejacobson@users.noreply.github.com>",
          "is_bot": true,
          "headline": "build(deps): update rstest requirement from 0.23 to 0.26 (#306)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-11T18:36:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3538181d6ffe46304c1d5423050942f76cc09739",
          "body": "…308)\n\n* feat(kvp): add append_multiple and delete_multiple to KvpPoolStore\n\nAdds two batched write primitives on KvpPoolStore:\n\n- append_multiple appends every (key, value) pair under one exclusive\n  lock; records land contiguously on disk so concurrent writers cannot\n  interleave the batch.\n- dele\n[…]\ner. Per-record validation still runs before\nlocking so rejected batches never block other writers.\n\n* Improve rustdoc comments to make distinction between append, append_multiple, and populate clearer",
          "is_bot": false,
          "headline": "feat(kvp): add append_multiple and delete_multiple to KvpPoolStore (#…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-06-11T13:37:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5b4a999100bb66a90b6e3157bd64ce90eb892e89",
          "body": "## What this PR introduces\n\n- Adds workspace crate `libazureinit-kvp`.\n- Adds `libazureinit-kvp/src/lib.rs`, `libazureinit-kvp/src/store.rs`, and `libazureinit-kvp/src/error.rs`.\n- Adds crate dependencies: `libc`, `tracing`. Dev-dependencies: `rstest`, `tempfile`.\n- This is step 1 of the abstraction\n[…]\nion, and all documented error paths. 100% line coverage on Codecov.\n\n<img width=\"1141\" height=\"421\" alt=\"image\" src=\"https://github.com/user-attachments/assets/d9f4c392-837d-42a8-8adc-0d214b89a02d\" />",
          "is_bot": false,
          "headline": "feat(kvp): add store trait and Hyper-V KVP storage crate (#288)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-05-26T20:41:10Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "dde40821f11bedec3024ff612ac81d89050e2fac",
          "body": "Update libazureinit crates",
          "is_bot": false,
          "headline": "chore(deps): Update libazureinit opentelemetry crates (#305)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-05-26T15:09:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ff1d1460daba2b293056620ee5936ebfa8304ce",
          "body": null,
          "is_bot": false,
          "headline": "fix(ci): add a timeout to stop failed containers (#300)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-05-05T17:08:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "27eec30a8be1d37679f704c64ae6b93ef5c67d77",
          "body": "Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 5 to 6.\n- [Release notes](https://github.com/codecov/codecov-action/releases)\n- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/codecov/codecov-action/compare/v\n[…]\n\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Chris Patterson <cpatterson@microsoft.com>",
          "is_bot": true,
          "headline": "Bump codecov/codecov-action from 5 to 6 (#299)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-04T20:58:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c5689fb67544c00017350a82ca42e9bafd0b0e77",
          "body": "- Remove unreachable \\r stripping in encode_report\n- Fix llvm-cov false negatives on multi-line asserts\n- Add test for real backend fallback in provision\n- Split UserProvisioner::create() to make sudoers path testable\n- media: replace unreachable!() closures with named noop helpers to fix coverage gaps\n\nCo-authored-by: Cade Jacobson <91996442+cadejacobson@users.noreply.github.com>",
          "is_bot": false,
          "headline": "feat(test): improve libazureinit unit test coverage to 100% (#295)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-05-04T14:30:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fd142074bfce037f95d85b56c6006055ced790e8",
          "body": null,
          "is_bot": false,
          "headline": "fix(ci): use codecov token (#298)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-04-21T21:45:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2f0fc53a4c7aa3d2ca6fbacd6f6642249fc80876",
          "body": null,
          "is_bot": false,
          "headline": "fix(ci): run code coverage on main (#297)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-04-21T20:22:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74e46eb5c9f10c64a36d4b92e67bcec6f9be8e82",
          "body": null,
          "is_bot": false,
          "headline": "feat(ci): use codecov integration (#296)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-04-21T20:05:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e9d0814881b7e012b69c5bad635cef1d4a76dee",
          "body": null,
          "is_bot": false,
          "headline": "feat(ci): per-file code coverage reporting (#294)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-04-20T21:26:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7fb9ffd5164a5da03f985e1d749086fb3530e4da",
          "body": null,
          "is_bot": false,
          "headline": "feat(ci): set up code coverage reporting (#292)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-04-20T18:54:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f5c2999fa0de9e2084b119337b74a2a0006bdb11",
          "body": null,
          "is_bot": false,
          "headline": "Add Ubuntu 26.04 to e2e testing (#293)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-04-20T18:09:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1c8028b5f6af9e09f56e5899013973a27c0b55d4",
          "body": "Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) from 3 to 4.\n- [Release notes](https://github.com/docker/setup-buildx-action/releases)\n- [Commits](https://github.com/docker/setup-buildx-action/compare/v3...v4)\n\n---\nupdated-dependencies:\n- dependency-name: docker/set\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Bump docker/setup-buildx-action from 3 to 4 (#289)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-03-19T15:56:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0e100e047a4e08571b7519269ab1ec4bf13b33d9",
          "body": null,
          "is_bot": false,
          "headline": "Run E2E tests daily (#285)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2026-02-18T18:23:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d04327e22ed6d2ed09f4a8860753d9418e24beb",
          "body": "- Update toml dependency from 0.9 to 1.0 in libazureinit/Cargo.toml.\n- Configure Buildx with host networking (driver-opts: network=host) to avoid build-time repo access issues from isolated builder networking.\n- Ensure apt-get update and apt-get install are chained so install does not proceed after a failed update.\n- Add apt retry behavior (Acquire::Retries=3) to reduce transient mirror/network failures.",
          "is_bot": false,
          "headline": "Updating `toml` dependency and resolve E2E testing issues (#284)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-02-18T16:47:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "20d22c17b23bd28e879a05a50206ea743f229b19",
          "body": "fix: upgrade rustix 0.38 -> 1.1 and remove unnecessary unsafe blocks in ssh.rs",
          "is_bot": false,
          "headline": "Upgrade Rustix Dependency and Fix Clippy Failures (#282)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-02-11T22:42:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2692a2934e2168f920bc6ca2d86990fa6bbb2fa",
          "body": "refactor: replace nix crate with rustix + users for user/chown operations\n\nReplace the nix crate dependency with rustix (for chown syscall) and\nusers (for user lookups).\n\nKey changes:\n- Replace nix::unistd::chown with rustix::fs::chown\n- Replace nix::unistd::User::from_name with users::get_user_by_n\n[…]\n::Error to rustix::io::Errno\n\nThe SshUser struct is needed because users::User is immutable (unlike\nnix::unistd::User which had mutable public fields), requiring a simple\nwrapper for test flexibility.",
          "is_bot": false,
          "headline": "refactor: replace nix crate with rustix + users (#280)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-02-03T23:40:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0b23f653c621ad577295311d91f10673252b05f9",
          "body": "This change updates the Rust toolchain and MSRV to **1.88** to satisfy evolving dependency requirements and aligns CI accordingly. It updates several dependencies (notably `nix` and `whoami`), adapts the codebase to upstream API and clippy changes, and simplifies tooling to reduce future MSRV fricti\n[…]\nt-toolchain.toml` and unnecessary `vergen-gitcl` dependency\n- Clean up CI configuration, reintroducing stable where appropriate\n- Unpin `sysinfo` and update dependencies\n\nResolves #276, #277, and #278",
          "is_bot": false,
          "headline": "Update Rust toolchain to 1.88 and Related Deps (#279)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2026-02-03T21:55:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6c2bd560c946de6d057de4557d4863d88839e967",
          "body": "Updates the requirements on [reqwest](https://github.com/seanmonstar/reqwest) to permit the latest version.\n- [Release notes](https://github.com/seanmonstar/reqwest/releases)\n- [Changelog](https://github.com/seanmonstar/reqwest/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/seanmonstar/req\n[…]\nndency-version: 0.13.1\n  dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update reqwest requirement from 0.12.0 to 0.13.1 (#275)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-01-15T18:22:42Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5beabb40145b8e9dff7b86c704f58685fecc9c26",
          "body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 5 to 6.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v5...v6)\n\n---\nupdated-dependenc\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Bump actions/checkout from 5 to 6 (#274)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-12-02T19:48:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e3402896191a9dbd0cfa5ffae71674026f2711bb",
          "body": null,
          "is_bot": false,
          "headline": "Make set_hostname function available to libazureinit consumers (#247)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-11-21T14:56:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0b2034f5893893b98e6a8eab228800ee057be2ee",
          "body": "feat(ssh): decouple SSH configuration from password provisioning\n\nKey changes\n- Decouple: `set_user_password` and `lock_user` no longer modify SSH settings.\n- New knob: SSH config updates are controlled by `config.ssh.configure_sshd.password_authentication`.",
          "is_bot": false,
          "headline": "Decouple SSH configuration from password provisioning (#270)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-11-13T18:22:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "80a939b23de51e63957895d1cd529a8fd2d7c51e",
          "body": "telemetry: function-level spans, safer KVP writes, and span naming cleanup\n\nKey changes\n- Standardize span naming to module:function\n- Adjust event vs. span filtering logic so KVP filters do not exclude INFO spans\n- Add minimal early span in `main` to collect pre-provision telemetry\n- Rename main provision span to `azure_init_provision` for clarity\n- Introduce exclusive file locking around KVP writes to avoid corruption \nand batch multiple writes under a single lock.",
          "is_bot": false,
          "headline": "Audit KVP Tracing and Improve Telemetry (#255)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-11-13T17:52:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "229761bc614f27b86b6665190f2d035244e9021a",
          "body": null,
          "is_bot": false,
          "headline": "Pull KVP on a post request (#256)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-11-05T15:43:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2898641e153fa6c21844ca773ee626250f7ae615",
          "body": "fix: replace deprecated cargo_bin with cargo_bin! macro in CLI tests",
          "is_bot": false,
          "headline": "Fix deprecated cargo_bin usage in CLI tests (#272)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-10-28T23:10:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a2ea802400da31f48cd10ea9c851cb365b5798e5",
          "body": null,
          "is_bot": false,
          "headline": "Expose the create-user function to libazureinit (#269)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-24T18:21:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "734f7fe354dff65cc35f4a58ba342a2e5d57a1db",
          "body": null,
          "is_bot": false,
          "headline": "Remove 404 links to architecture document (#268)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-22T16:55:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6159918a357dfc8133ad63f406af3a062e78aafd",
          "body": null,
          "is_bot": false,
          "headline": "Add supported distros to README (#262)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-21T21:22:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8939ea58f0e71606368689c8c199ecdf50a151f5",
          "body": "Add testinit support Azure Linux 3 and Debian 13.",
          "is_bot": false,
          "headline": "Run testinit on multiple distros (#254)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-21T21:11:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "643e7536569feac05894cc1b5d2633c2f6901cdc",
          "body": null,
          "is_bot": false,
          "headline": "Add custom WireServer POST responses (#250)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-14T20:06:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a90978ef275b03d5077d9737054a867ed821711",
          "body": "…252)\n\nEnsure the kvp_writer has an active span for _report to use outside of the PROVISIONING_REPORT to guarantee health::status KVP emission.",
          "is_bot": false,
          "headline": "Fix: Guarantee health::status KVP emission via function-level span (#…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-10-14T19:38:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef58e825c48671c4ac476e3110286a2cb122af5b",
          "body": "Adding a quick event before the HTTP connection in _report to act as a start signal before we connect to Wireserver and report ready.",
          "is_bot": false,
          "headline": "Emit a pre-HTTP KVP event to mark start of `_report` (#251)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-10-13T20:11:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f7fa9a30b8205a128aac1f62229d0255458e837",
          "body": null,
          "is_bot": false,
          "headline": "Add recipes for IMDS responses (#244)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-10T22:37:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74004a3a1fe8bf186ab109752755279af9c32dd3",
          "body": "Add tracing to the user creation",
          "is_bot": false,
          "headline": "Add tracing to user creation (#248)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-09T18:20:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "873c4ce3bafa3b96a3c07a2afd5fc5df43ef7682",
          "body": "* fix: update opentelemetry and opentelemetry_sdk from 0.30.0 to 0.31.0, and tracing-opentelemetry to 0.32.0.\n\n- Upgrades OpenTelemetry dependencies to their latest stable versions and adapts code for breaking changes. \n- Reorders initialize_tracing() to create the tracer before calling set_tracer_provider() since set_tracer_provider() now consumes the provider in newer versions ( >= 0.31.0). \n- Removes an unnecessary provider.clone() call since set_tracer_provider() now takes ownership.",
          "is_bot": false,
          "headline": "Fix: Upgrade OpenTelemetry Dependencies to Latest Versions (#243)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-10-07T22:51:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b299cf6cd8cbe6ba1bf5f6a06c06c783cf731de",
          "body": "This PR continues the documentation work from Jan. This adds a getting started document, an architecture document, and enhances the testing, KVP, and readme documents. This PR resolves #171.",
          "is_bot": false,
          "headline": "Update documentation (#233)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-07T19:15:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b0e2b9e188f45b8f5f4cc4f777ea7c6d11f0b4fa",
          "body": null,
          "is_bot": false,
          "headline": "Create testinit testing suite (#230)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-10-06T22:47:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "755aa856e1d8380c8636cc72d6e2ddf898f0c2a9",
          "body": "libazureinit: add password provisioning support via chpasswd\n\nIntroduce password functionality for external consumers of libazureinit (e.g., Flatcar/Afterburn). Adds `set_user_password()` and `lock_user()` APIs using chpasswd and passwd -l, preserving account locking behavior. Refactors PasswordProv\n[…]\nbility. Includes rustdoc for password.rs and unit tests for password flows. No changes to azure-init binary behavior; password provisioning remains opt-in via `User::with_password(...)`.\n\nResolves #52",
          "is_bot": false,
          "headline": "Adding password functionality to `libazureinit` (#229)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-10-06T22:18:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c4dfee33f7fcafe4ffc4b7bfc7827f18946a430b",
          "body": "fix: pin OpenTelemetry dependencies to 0.30 for tracing compatibility\n\nCo-authored-by: Cade Jacobson <91996442+cadejacobson@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Pin OpenTelemetry dependencies to 0.30 for tracing compatibility (#238)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-10-03T17:26:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5107b42ec6b6e630e2f01da5a55e52bd89c3c056",
          "body": "…ng override (#234)\n\nAdd --version /-V flag to azure-init CLI.\n\n* use git-based vergen for more detailed version info\n* allow override at compile time for packaging purposes\n* Move VERSION constant to libazureinit for shared access\n* Using azure-init version in main, and libazureinit version in that library",
          "is_bot": false,
          "headline": " feat(version): add--version/-V using vergen git metadata and packagi…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-10-01T13:45:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "773e8fbac50109df0d83f1e5eb50e81c5a95c764",
          "body": "* Cargo: pin sysinfo to 0.36\n\nPin sysinfo to =0.36 for MSRV issues with Rust < 1.85.0. This should be\nunpinned around 2026-02-17 if we continue with our ~1 year MSRV policy\n\nWithout the pinning, CI with Rust 1.81 fails like:\n\n```\n  Downloaded sysinfo v0.37.0\nerror: failed to parse manifest at `/home\n[…]\nfor the last 1 year becomes 1.81.0, which does not\nrequire to pin specific versions of litemap or zerofrom, delete manual\npinning of the crates.\n\nSigned-off-by: Dongsu Park <dpark@linux.microsoft.com>",
          "is_bot": false,
          "headline": "Cargo: pin sysinfo to 0.36 (#231)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-09-16T11:51:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6ee8a425067d0db4be9269f930a83f830789a1a3",
          "body": "* Add rustdocs to create\n\n* Add rustdocs to minor functions\n\n* Run cargo fmt\n\n* Remove example\n\n* Add comments for hostname provisioner",
          "is_bot": false,
          "headline": "Add rustdocs to user provisioning (#232)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-09-12T21:57:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1fc0ad2f16027469fb688c147550d55fcb429f8",
          "body": "* refactor(config): Use configurable settings for IMDS timeouts\n\nResolves #141\n\nRefactors the IMDS query logic to remove hardcoded timeout and retry values. The `imds::query` function now accepts a configuration object, allowing users to override the default settings.\n\nKey changes include:\n- Introdu\n[…]\n the configured connection timeout, removing a redundant hardcoded value.\n- Improved consistency in Wireserver configuration tests by replacing magic numbers with the `DEFAULT_WIRESERVER_*` constants.",
          "is_bot": false,
          "headline": "Use Configurable IMDS timeout and Retry Settings (#228)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-09-09T22:38:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "45e5f47c8df640a5d7e6311e155fabe42a1f385f",
          "body": "docs: Improve logging and documentation for provisioning flow, especially in main.rs.",
          "is_bot": false,
          "headline": "Improve Logging and Documentation for Provisioning Flow (#224)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-09-09T21:30:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00b7501975611c49ff75de660a7964ec9cd204db",
          "body": "…SAS (#227)",
          "is_bot": false,
          "headline": "Secure storage account with disabled access keys and user delegation …",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-09-05T17:38:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8ab1aa330474e5c08f1cc0f7a0c4a49e2d07ce0",
          "body": "… (#225)\n\n* logging: make KVP filter configurable via AZURE_INIT_KVP_FILTER and via config.rs, add fallback and tests\n\t•\tApply filter from env in get_kvp_filter; on invalid/empty value, WARN and fall back to default\n\t•\tUse filter in both Kvp::new and setup_layers\n\t•\tUpdate docs/examples to reference\n[…]\nide (single sequential test with separate subscribers)\n\t•\tinvalid env falls back to default behavior\n\t•\tretain stderr/file logging tests\n\t•\tNo behavior change unless env var is set; defaults preserved",
          "is_bot": false,
          "headline": "Make KVP Filter Configurable For External Projects Using libazureinit…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-08-28T16:09:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "41a5c1bc7a65004b7c2b29b54fd530bbf11b3abc",
          "body": "…(#223)\n\nrefactor(logging): centralize KVP diagnostics and improve tracing integration\n\n- Moved `kvp.rs` and `logging.rs` into the `libazureinit` crate to improve modularity\n- Simplified KVP logging and health report generation by decoupling logic from `health.rs`\n- Fixed fallback log level bug that\n[…]\nposes `new()`, `layer()`, and `halt()` for custom tracing stacks\n  - `Kvp.writer` is now private; shutdown enforced via `halt()`\n- Added unit tests to verify decoupled behavior and prevent regressions",
          "is_bot": false,
          "headline": "Refactor library: move logging.rs and kvp.rs into libazureinit crate …",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-08-22T17:55:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "44af911f560bc4d3501e694bad96e38b7f2286c6",
          "body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 5.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v4...v5)\n\n---\nupdated-dependenc\n[…]\n:\n- dependency-name: actions/checkout\n  dependency-version: '5'\n  dependency-type: direct:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump actions/checkout from 4 to 5 (#222)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-08-12T10:11:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "23ba7a4299daec1c7211f17b7c8f538edb555d1d",
          "body": "…ures to Wireserver/Azure (#188)\n\nfeat(provisioning): refactor health reporting with JSON endpoint, remove goalstate/XML\n\n- Introduce report_ready, report_failure, and report_in_progress APIs using config-based timeouts\n- Remove legacy goalstate logic and XML payloads; unify around JSON reporting\n- \n[…]\nlback reporting via unified Error enum and as_encoded_report\n- Improve logging, retry behavior, and graceful shutdown of KVP writer\n- Update tests and tracing to reflect new reporting flow and formats",
          "is_bot": false,
          "headline": "Introduce JSON-Based Provisioning Health Reporting and Reporting Fail…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-08-11T18:45:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1bc856e657a41ae80abbc9d0219f24cdd27f0379",
          "body": "refactor(kvp): Simplify tracing and fix race condition by removing SpanStatus and changing instrument macro to provision() to emit a KVP entry with the fucntion result on return",
          "is_bot": false,
          "headline": "Remove SpanStatus to to Fix Concurrency Issues (#220)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-08-08T16:09:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4a42ff8bb51627ed99f37c676b2ffbeb492fdb09",
          "body": "…ics (#218)\n\nfix(tracing):: created set_span_as_failed() helper method to prevent a SpanStatus from being inserted when it already exists and generating a mutex poisoning error; added two unit tests to validate fix and repro original issue to protect against regression\n\nThis PR resolves an intermitt\n[…]\nh `RUST_BACKTRACE=full` for a verbose backtrace.\n\n\nsuccesses:\n    kvp::tests::test_repro_insert_panic\n\ntest result: ok. 1 passed; 0 failed; 0 ignored; 0 measured; 5 filtered out; finished in 0.09s\n```",
          "is_bot": false,
          "headline": "fix(tracing): fix `Mutex Poisoning` error caused by double insert pan…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-08-04T18:19:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "449feb64965776b7b92df87c42a9f35287de86fc",
          "body": "* Add a password mocking and unit tests\n\n* Overwrite the fakepasswd function\n\n* Correct the password formatting",
          "is_bot": false,
          "headline": "Create tests for passwd (#215)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-07-22T18:02:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c928439d9d40741d3ba163e0d671511f0045d53",
          "body": "…entication (#211)\n\n* Utilize IMDS disablePasswordAuthentication to control sshd PasswordAuthentication\n\n* Decouple sshd config update from passwd logic; move update_sshd_config into Provision using disablePasswordAuthentication flag\n\n* Move get_sshd_config_path() from password.rs to ssh.rs for clearer ownership",
          "is_bot": false,
          "headline": "Utilize IMDS disablePasswordAuthentication to Configure Password Auth…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-07-16T19:21:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a27e70e4c39caeba25b4dc0d781df0075d1362d0",
          "body": null,
          "is_bot": false,
          "headline": "Clarify fallback log message when OVF environment is unavailable (#212)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-07-16T19:14:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "79af4a89367bc2172e04b7a88fb48dd9f5cd549a",
          "body": "Updates the requirements on [sysinfo](https://github.com/GuillaumeGomez/sysinfo) to permit the latest version.\n- [Changelog](https://github.com/GuillaumeGomez/sysinfo/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/GuillaumeGomez/sysinfo/compare/v0.35.0...v0.36.0)\n\n---\nupdated-dependencies:\n- dependency-name: sysinfo\n  dependency-version: 0.36.0\n  dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Update sysinfo requirement from 0.35 to 0.36 (#214)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-07-15T10:45:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bd8ed4d46c0779bcf19a3855ff76f0d5ba7f6a7a",
          "body": "Updates the requirements on [toml](https://github.com/toml-rs/toml) to permit the latest version.\n- [Commits](https://github.com/toml-rs/toml/compare/toml-v0.8.0...toml-v0.9.2)\n\n---\nupdated-dependencies:\n- dependency-name: toml\n  dependency-version: 0.9.2\n  dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Update toml requirement from 0.8 to 0.9 (#213)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-07-15T10:42:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "69e7dd279d4ba9fdb451f39b5b608066de645e31",
          "body": "* Split provision and log file test in two\n\n* Split common code into a separate function",
          "is_bot": false,
          "headline": "Split provision and log file test in two (#208)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-07-04T10:15:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1bcb085cd1f476302fa2b2ebb84c2dbe32762129",
          "body": "Lock accounts instead of deleting passwords (use passwd -l instead of passwd -d)",
          "is_bot": false,
          "headline": "Lock Account instead of Deleting Passwords (#209)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-07-02T22:00:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b68813484c43139d835a55d276e452a6d97b66d3",
          "body": "Fix clippy failures in pipeline",
          "is_bot": false,
          "headline": "Fix clippy warnings (#207)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2025-07-01T07:44:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "08801dfaa708923bd5d5e4a74b34ebac0826fc2c",
          "body": "…-provisioning (#193)\n\nAdd CLI subcommand to clear provisioning state marker and any related logs, allowing for re-provisioning.",
          "is_bot": false,
          "headline": "Add `clean` CLI subcommand to remove provisioning marker and allow re…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-06-09T21:29:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2c03611f4e904bd909eab8ce8a1b35bf3afb0f66",
          "body": "* Update tracing-opentelemetry requirement from 0.30 to 0.31\n\nUpdates the requirements on [tracing-opentelemetry](https://github.com/tokio-rs/tracing-opentelemetry) to permit the latest version.\n- [Release notes](https://github.com/tokio-rs/tracing-opentelemetry/releases)\n- [Changelog](https://githu\n[…]\n\nSigned-off-by: dependabot[bot] <support@github.com>\n\n---------\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Cargo: Update opentelemetry to 0.30 (#205)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-06-03T12:48:05Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "544712fb1cf99361b86b23c6f9c570da50c408b4",
          "body": "…n permissions (#201)\n\n* .github: add permissions in ci.yaml\n\nAdd contents: read, pull-requests: write in ci.yaml.\n\nPotential fix for code scanning alert no. 1: Workflow does not contain permissions\n\nCo-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.\n[…]\nial fix for code scanning alert no. 1: Workflow does not contain permissions\n\n---------\n\nCo-authored-by: Copilot Autofix powered by AI <62310815+github-advanced-security[bot]@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Potential fix for code scanning alert no. 1: Workflow does not contai…",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-05-21T13:26:17Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "82871d7f048b21cc2578acb60492366d8177ee18",
          "body": "Ignore automatic updates of idna_adapter, to make it compatible\nwith recent changes in https://github.com/Azure/azure-init/pull/198.",
          "is_bot": false,
          "headline": ".github: ignore automatic updates of idna_adapter (#200)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-05-20T11:57:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "628d80f2c012f8b762c51f5a7cf090a879fe8677",
          "body": "* Update serde-xml-rs requirement from 0.7.0 to 0.8.0\n\nUpdates the requirements on [serde-xml-rs](https://github.com/RReverser/serde-xml-rs) to permit the latest version.\n- [Release notes](https://github.com/RReverser/serde-xml-rs/releases)\n- [Commits](https://github.com/RReverser/serde-xml-rs/compa\n[…]\nrser/serde-xml-rs/pull/228,\nhttps://github.com/RReverser/serde-xml-rs/issues/50.\n\n---------\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: Dongsu Park <dpark@linux.microsoft.com>",
          "is_bot": true,
          "headline": "Update serde-xml-rs requirement from 0.7.0 to 0.8.0 (#195)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-05-20T08:07:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c552a2dde5b3122c5f4994cba9b5b7db3a245859",
          "body": "Since idna_adapter 1.2.1 started to update crates like icu to 2.0,\nclippy starts to fail with Rust 1.78.0, the current MSRV of azure-init,\nlike the following:\n\n```\nerror: rustc 1.78.0 is not supported by the following packages:\n  icu_collections@2.0.0 requires rustc 1.82\n  icu_normalizer@2.0.0 requi\n[…]\n.0.0 requires rustc 1.82\n  idna_adapter@1.2.1 requires rustc 1.82\n...\n```\n\nPin idna_adapter to <=1.2.0 to fix the clippy issues.\n\nSee also https://github.com/hsivonen/idna_adapter/releases/tag/v1.2.1.",
          "is_bot": false,
          "headline": "Cargo: pin idna_adapter to <=1.2.0 to fix MSRV issues with clippy (#198)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-05-14T08:16:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3ec18d45cc3c89406653ef83f4a1489f088fc3f1",
          "body": "---\nupdated-dependencies:\n- dependency-name: sysinfo\n  dependency-version: 0.35.0\n  dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Update sysinfo requirement from 0.34 to 0.35 (#197)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-05-06T13:56:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "96c490e93f885a1f3cf7d4eb8b2ecaa94b3fef3b",
          "body": "Updates the requirements on [nix](https://github.com/nix-rust/nix) to permit the latest version.\n- [Changelog](https://github.com/nix-rust/nix/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/nix-rust/nix/compare/v0.29.0...v0.30.1)\n\n---\nupdated-dependencies:\n- dependency-name: nix\n  dependency-version: 0.30.1\n  dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Update nix requirement from 0.29.0 to 0.30.1 (#196)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-05-06T13:53:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cbe1f48573f0af9e5a2844062a3b96e5502db570",
          "body": "Add make install target to install azure-init package to DESTDIR.\n\nAllow for toggling debug vs. release builds with optional BUILD_MODE\nand a default for debug.\n\n- Install azure-init to /usr/bin/azure-init.\n- Install service to /usr/lib/systemd/system/azure-init.service.\n- Drop ConditionFileIsExecutable.\n- Update demo script.\n\nExample:\n\n`make install DESTDIR=/tmp/foo`\n\nSigned-off-by: Chris Patterson <cpatterson@microsoft.com>",
          "is_bot": false,
          "headline": "build(Makefile): add install target (#194)",
          "author_name": "Chris Patterson",
          "author_login": "cjp256",
          "committed_at": "2025-04-28T23:09:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "57a61ca6c6618aa027855c59dac8bb4680850dee",
          "body": "…pd (#180)\n\nfeat(azure-init.service): ensure azure-init wants and starsts after kvpd\n\nEnsure kvpd is started before azure-init and want it.\n\nhypervkvpd.service is used by Fedora, RHEL, etc.\nhv-kvp-daemon.service is used by Debian, Ubuntu, etc.\n\nSigned-off-by: Chris Patterson <cpatterson@microsoft.com>",
          "is_bot": false,
          "headline": "feat(azure-init.service): ensure azure-init wants and starts after kv…",
          "author_name": "Chris Patterson",
          "author_login": "cjp256",
          "committed_at": "2025-04-28T18:38:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ebdd3447609dce79bd39f8a7a6e3ce63eb53e157",
          "body": "…the global subscriber twice (#190)\n\nRefactor logging initialization to use scoped temp subscriber and single global subscriber\n\nReplaces the previous two‑phase setup with a simpler pattern: we now install a temporary stderr‑only subscriber around the `Config::load` call using `tracing::subscriber::\n[…]\noke `setup_layers()` exactly once to install the full global subscriber. This eliminates multiple calls to `tracing::subscriber::set_global_default` and prevents race‑condition panics on Ubuntu 20.04.",
          "is_bot": false,
          "headline": "Refactor tracing setup to avoid double-init panic from instantiating …",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-04-22T18:22:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4e23939f2b4f9cd10010fec0d6421e0e1741ec57",
          "body": "Updates the requirements on [serde-xml-rs](https://github.com/RReverser/serde-xml-rs) to permit the latest version.\n- [Commits](https://github.com/RReverser/serde-xml-rs/compare/0.6.0...0.7.0)\n\n---\nupdated-dependencies:\n- dependency-name: serde-xml-rs\n  dependency-version: 0.7.0\n  dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Update serde-xml-rs requirement from 0.6.0 to 0.7.0 (#191)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-04-21T22:45:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "73d06a7c526b250692f1a39406308b4c9d89e3bf",
          "body": "Updates the requirements on [sysinfo](https://github.com/GuillaumeGomez/sysinfo) to permit the latest version.\n- [Changelog](https://github.com/GuillaumeGomez/sysinfo/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/GuillaumeGomez/sysinfo/commits)\n\n---\nupdated-dependencies:\n- dependency-name: sysinfo\n  dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Update sysinfo requirement from 0.33 to 0.34 (#185)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-04-09T08:57:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "594f0f612fbb1e7d5e47f589661cc8a7cb3be48f",
          "body": "…emetry to 0.30 (#184)\n\nUpdate opentelemetry requirement from 0.28 to 0.29, Update opentelemetry_sdk requirement from 0.28 to 0.29, and Update tracing-opentelemetry requirement from 0.29 to 0.30",
          "is_bot": false,
          "headline": "Update opentelemetry & opentelemetry_sdk to 0.29, and tracing-opentel…",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-03-27T21:14:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5e83a4625d7b0e488f8244ad12ac45fbd5eb0b8c",
          "body": "Make KVP diagnostics configurable via telemetry.kvp_diagnostics\n\n- setup_layers checks config.telemetry.kvp_diagnostics to enable/disable KVP logging.\n- KVP diagnostics default to true. \n- Added unit test to verify KVP logs are skipped when disabled.",
          "is_bot": false,
          "headline": "Allow for Enabling/Disabling KVP using Config (#179)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-03-24T21:46:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8bdd6e8383b27566607e50a2973fb173241a310c",
          "body": "* Make azure-init.log path configurable; implement two-phase tracing\n- Configured azure-init.log path to be customizable\n- Implemented two-phase tracing:\n  - Initial calls are sent to console log and KVP\n  - All subsequent logs are written to the custom log path\n- Default log path at DEFAULT_AZURE_INIT_LOG_PATH.",
          "is_bot": false,
          "headline": "Output `azure-init.log` to Configurable Location (#177)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-03-24T21:16:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8d706ee91dbc8e2aad0e91a4f692ccc1ad663010",
          "body": "Ignore automatic updates of litemap and zerofrom, to make it compatible\nwith recent changes in https://github.com/Azure/azure-init/pull/173.\n\nClean up unnecessary ignore rules.",
          "is_bot": false,
          "headline": ".github: ignore automatic updates of litemap and zerofrom (#178)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-03-19T09:27:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c6165ddd0cef59937d82994d68c088fd7dccb3a7",
          "body": "* Add status.rs for provisioning lifecycle management\n\n- Creates a .provisioned file named after the VM ID to indicate provisioning completion\n- Provides functions to check if provisioning is complete and to mark it complete\n- Skips re-provisioning if the .provisioned file already exists (ie, when a\n[…]\ns it through all necessary functions, including provision() and setup_layers()\n- Updated EmitKVPLayer to accept vm_id at initialization, eliminating redundant lookups to append VM ID to each event key",
          "is_bot": false,
          "headline": "Adding Cached VM ID File for Provisioning Lifecycle Management  (#164)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-03-12T00:44:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ef29ea22a4b5d05ebf5d6c3e6421325279340cfe",
          "body": "zerofrom and litemap both bumped their MSRV to 1.81 in recent releases.\nThese are both transitive dependencies so it's possible in the future\nour dependencies will drop them, so we will need to occasionally check\non that.\n\nAs our current MSRV policy is to support Rust from about a year ago, we\ncan u\n[…]\nthan the switch to core::error\n(which is what requires 1.81). zerofrom has a few adjustments for new\nlints, and litemap introduces a new API (which hopefully none of our\ndependencies start requiring).",
          "is_bot": false,
          "headline": "deps: pin zerofrom to 0.1.5 and litemap to 0.7.4 (#173)",
          "author_name": "Jeremy Cline",
          "author_login": "jeremycline",
          "committed_at": "2025-03-05T22:41:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "623fa656c55e77497c3a4a95328f21e5beaa0e36",
          "body": "…uild issues (#165)\n\n* Update opentelemetry requirement from 0.27 to 0.28\n\nUpdates the requirements on [opentelemetry](https://github.com/open-telemetry/opentelemetry-rust) to permit the latest version.\n- [Release notes](https://github.com/open-telemetry/opentelemetry-rust/releases)\n- [Commits](http\n[…]\nr to\nSdkTraceProvider, we need to update use cases in logging.\n\nSee also https://github.com/open-telemetry/opentelemetry-rust/pull/2614.\n\n---------\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": false,
          "headline": "Update opentelemetry(_sdk) to 0.28, tracing-opentelemetry 0.29, fix b…",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-02-26T09:42:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "803caec0b32d6ad3d91e8f9a44edf029d0cd24df",
          "body": "…uild issues (#161)\n\n* Update opentelemetry_sdk requirement from 0.26 to 0.27\r\n\r\nUpdates the requirements on [opentelemetry_sdk](https://github.com/open-telemetry/opentelemetry-rust) to permit the latest version.\r\n- [Release notes](https://github.com/open-telemetry/opentelemetry-rust/releases)\r\n- [C\n[…]\n\r\n\r\nSee also https://github.com/open-telemetry/opentelemetry-rust/pull/2303.\r\n\r\n---------\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nSigned-off-by: Dongsu Park <dpark@linux.microsoft.com>",
          "is_bot": false,
          "headline": "Update opentelemetry(_sdk) to 0.27, tracing-opentelemetry 0.28, fix b…",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-02-05T10:12:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fa2dc77af6550f653b8fc3342b3b345dc5561365",
          "body": "* Update sysinfo requirement from 0.27 to 0.33\r\n\r\nUpdates the requirements on [sysinfo](https://github.com/GuillaumeGomez/sysinfo) to permit the latest version.\r\n- [Changelog](https://github.com/GuillaumeGomez/sysinfo/blob/master/CHANGELOG.md)\r\n- [Commits](https://github.com/GuillaumeGomez/sysinfo/c\n[…]\n_version()`\r\n\r\nSee also https://github.com/GuillaumeGomez/sysinfo/pull/1152.\r\n\r\n---------\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nSigned-off-by: Dongsu Park <dpark@linux.microsoft.com>",
          "is_bot": true,
          "headline": "Update sysinfo requirement from 0.27 to 0.33 (#157)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-02-05T10:06:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "795ba292249919ba65de83abb4770f9ffc11f213",
          "body": "Add azurekvp library for tracing telemetry integration with Hyper-V\r\n\r\n- Implements KVP telemetry logging within the `azure_init` crate using OpenTelemetry and Rust tracing. \r\n- Formats telemetry as Hyper-V Key-Value Pair (KVP) and writes to `/var/lib/hyperv/.kvp_pool_1` for Hyper-V storage. \r\n- Fil\n[…]\nalidate KVP encoding and telemetry correctness.\r\n- Updates documentation to include details on tracing mechanisms and setup. \r\n\r\nFixes #27\r\n\r\nSigned-off-by: Peyton Robertson <probertson@microsoft.com>",
          "is_bot": false,
          "headline": "AzureKVP Telemetry Library for Hyper-V Integration (#133)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-02-03T18:29:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "97ff7356cfa47158c4471e485361da0f484aa499",
          "body": "* Adding OS check to support other distros with different sshd configuration paths\r\n\r\n* Altering update logic for Mariner -- rename causing linking device issue as file moves and it can't find it\r\n\r\n* Refactor SSH configuration logic to dynamically select the appropriate configuration path based on \n[…]\nt clear the PasswordAuthentication was added by azure-init, and removing the file permissions settings\r\n\r\n* Adding another added by azure-init comment and making sure file permissions line is deleted.",
          "is_bot": false,
          "headline": "Amend password and sshd logic to support Mariner OS (#156)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2025-01-30T17:52:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a4fa05754ca9b3fde17a368857a24222ae557d9d",
          "body": "This adds a helper function which accepts a Command to run and has\r\nuniform logging when running a command.\r\n\r\nThe command is logged at the debug level prior to execution, and\r\nafterwards the status is also logged at debug level. If the command\r\nfailed, it's logged at error level and includes the co\n[…]\ne to the parent\r\nstdout/stderr leads to unstructured command output mixed into the stderr\r\nlog output. The easiest way to do this is to use `output()` rather than\r\n`status()` when running the command.",
          "is_bot": false,
          "headline": "Standardize logging when running subprocesses (#155)",
          "author_name": "Jeremy Cline",
          "author_login": "jeremycline",
          "committed_at": "2025-01-23T17:53:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b477debb65a1aaf4cc113b7a1108bf43dbed5eff",
          "body": "Include informational logs about operations that succeed and error level\nlogs when important operations fail, like writing the sshd config\nsnippet or a subprocess fails to run.",
          "is_bot": false,
          "headline": "Add logs when updating sshd config and user passwords (#154)",
          "author_name": "Jeremy Cline",
          "author_login": "jeremycline",
          "committed_at": "2025-01-23T15:29:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "55aede0aea02f9e1dc833ba5be3efb40c8d69975",
          "body": "Add version and hash to the user agent string",
          "is_bot": false,
          "headline": "Add Version and Commit Hash to User-Agent String (#153)",
          "author_name": "Jan Bronicki",
          "author_login": "John15321",
          "committed_at": "2025-01-17T15:57:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e33476322e24fe09d933cd2d49b12c8d6e782ace",
          "body": "libazureinit: fix clippy warning for Rust 1.84\n\nStarting from Rust 1.84, clippy gives warning like below:\n```\nwarning: this `map_or` is redundant\n   --> libazureinit/src/config.rs:345:21\n    |\n345 |                     path.extension().map_or(false, |ext| ext == \"toml\")\n    |                     ^^^\n[…]\nmap_or)]` on by default\n```\n\nFix that by using `is_some_and`.\n\nSee also\nhttps://github.com/rust-lang/rust-clippy/blob/master/CHANGELOG.md#rust-184,\nhttps://github.com/rust-lang/rust-clippy/pull/11796.",
          "is_bot": false,
          "headline": "libazureinit: fix clippy warning of map_or for Rust 1.84 (#151)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2025-01-14T19:13:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "388c312bc13f6cb73a9fb662ea7342104f19b7b5",
          "body": "Updates the requirements on [toml](https://github.com/toml-rs/toml) to permit the latest version.\r\n- [Commits](https://github.com/toml-rs/toml/compare/toml_datetime-v0.5.0...toml-v0.8.19)\r\n\r\n---\r\nupdated-dependencies:\r\n- dependency-name: toml\r\n  dependency-type: direct:production\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Update toml requirement from 0.5 to 0.8 (#150)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-12-17T11:02:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "25a29f159f677d29e404197bf3ce54dad5fc57bc",
          "body": "Create a separate document for end-to-end testing.",
          "is_bot": false,
          "headline": "Create end-to-end testing document (#132)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2024-12-16T14:57:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c223aa8203bae049c981713d5fe977b8a100e96b",
          "body": "* Add config merging with custom overrides, SSH key path flexibility, and switch from /etc to /target\r\n\r\n- Implement default config loading from azure-init.conf with optional overrides via 10-azure-init-sshd.\r\n- SSH now uses sshd -G or falls back to ~/.ssh/authorized_keys if query mode is disabled.\r\n[…]\n paths, refactoring config and unit tests to use load_from wrapper function, and other minor changes to configuration.md and merge_toml_directory().\r\n\r\n* Amending rustdoc commment for load() function.",
          "is_bot": false,
          "headline": "Implement custom configuration and SSH key path flexibility (#137)",
          "author_name": "Peyton Robertson",
          "author_login": "peytonr18",
          "committed_at": "2024-12-12T21:23:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "76e5aaefaf8598808bb0df7d50f37e01dc4b4af6",
          "body": "add rustdocs to ssh module",
          "is_bot": false,
          "headline": "Add rustdocs to ssh.rs module (#147)",
          "author_name": "Jan Bronicki",
          "author_login": "John15321",
          "committed_at": "2024-11-27T13:16:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2074266d66ebc1236aae80108c7dd0ed426714fd",
          "body": "* Improve testing section of README\r\n\r\n* Correct testing line\r\n\r\n---------\r\n\r\nCo-authored-by: Cade Jacobson <cade.jacobson@mines.sdsmt.edu>",
          "is_bot": false,
          "headline": "Improve testing section of README (#148)",
          "author_name": "Cade Jacobson",
          "author_login": "cadejacobson",
          "committed_at": "2024-11-27T00:14:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5937f7174edf49074e9d52013c444e2bec35d17e",
          "body": "Remove pinned versions of crates clap, predicates*, as they are now able\r\nto be compiled with Rust 1.74, CI-specfied version of Rust.\r\n\r\nSet package.rust-version to 1.74 to be used by other crates that would\r\nmake use of MSRV-aware resolver which is available in Rust 1.83 or newer.",
          "is_bot": false,
          "headline": "Cargo: remove MSRV-pinned crates for Rust 1.74 (#146)",
          "author_name": "Dongsu Park",
          "author_login": "dongsupark",
          "committed_at": "2024-11-25T11:50:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 1,
      "commits_last_year": 58,
      "latest_release_at": "2024-03-07T10:08:30Z",
      "latest_release_tag": "v0.1.1",
      "releases_from_tags": true,
      "days_since_last_push": 7,
      "active_weeks_last_year": 29,
      "days_since_latest_release": 869,
      "mean_days_between_releases": null
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 87,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "azure-init",
          "exists": true,
          "license": "MIT",
          "keywords": [],
          "ecosystem": "crates",
          "matches_repo": true,
          "registry_url": "https://crates.io/crates/azure-init",
          "is_deprecated": false,
          "latest_version": "0.1.1",
          "repository_url": "https://github.com/Azure/azure-init/",
          "versions_count": 1,
          "total_downloads": 1637,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": 2,
          "first_published_at": "2024-03-07T13:31:01.841752Z",
          "latest_published_at": "2024-03-07T13:31:01.841752Z",
          "latest_version_yanked": false,
          "days_since_latest_publish": 869
        },
        {
          "name": "libazureinit",
          "exists": true,
          "license": "MIT",
          "keywords": [],
          "ecosystem": "crates",
          "matches_repo": true,
          "registry_url": "https://crates.io/crates/libazureinit",
          "is_deprecated": false,
          "latest_version": "0.1.1",
          "repository_url": "https://github.com/Azure/azure-init/",
          "versions_count": 1,
          "total_downloads": 1991,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": 20,
          "first_published_at": "2024-03-07T12:43:32.899520Z",
          "latest_published_at": "2024-03-07T12:43:32.899520Z",
          "latest_version_yanked": false,
          "days_since_latest_publish": 869
        }
      ]
    },
    "popularity": {
      "forks": 17,
      "stars": 15,
      "watchers": 10,
      "fork_history": {
        "days": [
          {
            "date": "2024-02-28",
            "count": 1
          },
          {
            "date": "2024-02-29",
            "count": 1
          },
          {
            "date": "2024-03-01",
            "count": 1
          },
          {
            "date": "2024-03-09",
            "count": 1
          },
          {
            "date": "2024-04-07",
            "count": 1
          },
          {
            "date": "2024-04-30",
            "count": 1
          },
          {
            "date": "2024-05-01",
            "count": 1
          },
          {
            "date": "2024-05-14",
            "count": 1
          },
          {
            "date": "2024-06-26",
            "count": 1
          },
          {
            "date": "2024-10-25",
            "count": 1
          },
          {
            "date": "2024-11-12",
            "count": 1
          },
          {
            "date": "2024-12-26",
            "count": 1
          },
          {
            "date": "2025-07-01",
            "count": 1
          },
          {
            "date": "2025-08-13",
            "count": 1
          },
          {
            "date": "2025-12-10",
            "count": 1
          },
          {
            "date": "2026-03-09",
            "count": 1
          },
          {
            "date": "2026-07-12",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 17,
        "total_forks": 17
      },
      "star_history": null,
      "open_issues_and_prs": 29
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "Cargo.toml",
        "libazureinit-kvp/Cargo.toml",
        "libazureinit/Cargo.toml"
      ],
      "largest_source_bytes": 135594,
      "source_files_sampled": 34,
      "oversized_source_files": 1,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "Cargo.toml",
        "libazureinit-kvp/Cargo.toml",
        "libazureinit/Cargo.toml"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 121,
        "malicious_count": 0,
        "assessed_package": "crates:azure-init@0.1.1",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "crates"
      ],
      "dependencies": [
        {
          "name": "exitcode",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.1.2"
        },
        {
          "name": "anyhow",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.0.81"
        },
        {
          "name": "tokio",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1"
        },
        {
          "name": "tracing",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.1.40"
        },
        {
          "name": "clap",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "4.5.21"
        },
        {
          "name": "tracing-subscriber",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.3.18"
        },
        {
          "name": "tokio-util",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.7"
        },
        {
          "name": "sysinfo",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.38"
        },
        {
          "name": "libazureinit",
          "manifest": "Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.1.0"
        },
        {
          "name": "chrono",
          "manifest": "libazureinit-kvp/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.4"
        },
        {
          "name": "clap",
          "manifest": "libazureinit-kvp/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "4.5.21"
        },
        {
          "name": "csv",
          "manifest": "libazureinit-kvp/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1"
        },
        {
          "name": "libc",
          "manifest": "libazureinit-kvp/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.2"
        },
        {
          "name": "serde_json",
          "manifest": "libazureinit-kvp/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.0.96"
        },
        {
          "name": "tracing",
          "manifest": "libazureinit-kvp/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.1.40"
        },
        {
          "name": "uuid",
          "manifest": "libazureinit-kvp/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.3"
        },
        {
          "name": "reqwest",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.13.1"
        },
        {
          "name": "serde",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.0.163"
        },
        {
          "name": "thiserror",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "2.0.3"
        },
        {
          "name": "tokio",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1"
        },
        {
          "name": "serde-xml-rs",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.8.0"
        },
        {
          "name": "serde_json",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.0.96"
        },
        {
          "name": "rustix",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.1"
        },
        {
          "name": "users",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.11"
        },
        {
          "name": "block-utils",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.11.1"
        },
        {
          "name": "tracing",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.1.40"
        },
        {
          "name": "tracing-subscriber",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.3.18"
        },
        {
          "name": "opentelemetry",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.32"
        },
        {
          "name": "opentelemetry_sdk",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.32"
        },
        {
          "name": "tracing-opentelemetry",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.33"
        },
        {
          "name": "tokio-util",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.7"
        },
        {
          "name": "sysinfo",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.38"
        },
        {
          "name": "anyhow",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1"
        },
        {
          "name": "fstab",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.4.0"
        },
        {
          "name": "toml",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.0"
        },
        {
          "name": "regex",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1"
        },
        {
          "name": "lazy_static",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.4"
        },
        {
          "name": "figment",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.10"
        },
        {
          "name": "uuid",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.3"
        },
        {
          "name": "chrono",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.4"
        },
        {
          "name": "csv",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1"
        },
        {
          "name": "zeroize",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "1.8"
        },
        {
          "name": "fs2",
          "manifest": "libazureinit/Cargo.toml",
          "ecosystem": "crates",
          "version_constraint": "0.4"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "anyhow",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "block-utils",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "chrono",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "clap",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "csv",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "exitcode",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "figment",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "fs2",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "fstab",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "lazy_static",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "libazureinit",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "libc",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "opentelemetry",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "opentelemetry_sdk",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "regex",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "reqwest",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "rustix",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "serde",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "serde-xml-rs",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "serde_json",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "sysinfo",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "thiserror",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "tokio",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "tokio-util",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "toml",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "tracing",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "tracing-opentelemetry",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "tracing-subscriber",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "users",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "uuid",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "zeroize",
            "direct": true,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "assert_cmd",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "gag",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "idna_adapter",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "predicates",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "predicates-core",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "predicates-tree",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "rstest",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "serial_test",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "tempfile",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "tracing-test",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "whoami",
            "direct": false,
            "version": null,
            "ecosystem": "crates"
          },
          {
            "name": "requests",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 43,
        "direct_count": 31,
        "indirect_count": 12
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 1,
        "merged_prs": 165,
        "open_issues": 28,
        "closed_ratio": 0.692,
        "closed_issues": 63,
        "closed_unmerged_prs": 57
      },
      "bus_factor": 2,
      "bot_contributors": 2,
      "top_contributors": [
        {
          "type": "User",
          "login": "peytonr18",
          "commits": 42,
          "avatar_url": "https://avatars.githubusercontent.com/u/93797227?v=4"
        },
        {
          "type": "User",
          "login": "dongsupark",
          "commits": 34,
          "avatar_url": "https://avatars.githubusercontent.com/u/10096906?v=4"
        },
        {
          "type": "User",
          "login": "cadejacobson",
          "commits": 34,
          "avatar_url": "https://avatars.githubusercontent.com/u/91996442?v=4"
        },
        {
          "type": "User",
          "login": "jeremycline",
          "commits": 18,
          "avatar_url": "https://avatars.githubusercontent.com/u/1977525?v=4"
        },
        {
          "type": "User",
          "login": "microsoftopensource",
          "commits": 5,
          "avatar_url": "https://avatars.githubusercontent.com/u/22527892?v=4"
        },
        {
          "type": "User",
          "login": "cjp256",
          "commits": 5,
          "avatar_url": "https://avatars.githubusercontent.com/u/3318649?v=4"
        },
        {
          "type": "User",
          "login": "balakreddy",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/19770967?v=4"
        },
        {
          "type": "User",
          "login": "John15321",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/56229312?v=4"
        },
        {
          "type": "User",
          "login": "nellshamrell",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/813007?v=4"
        },
        {
          "type": "User",
          "login": "t-lo",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/71888?v=4"
        }
      ],
      "contributors_sampled": 11,
      "top_contributor_share": 0.28
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yaml",
        "clippy-linting.yml",
        "coverage-report.yml",
        "e2e-testing.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 8,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 10,
            "reason": "all changesets reviewed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 9 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 2,
            "reason": "SAST tool is not run on all commits -- score normalized to 2",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "02fc7809d4ffb27b47241463b1b6bef5bde05ac5",
        "ran_at": "2026-07-25T06:00:11Z",
        "aggregate_score": 7.2,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-24T19:37:55Z",
      "oldest_open_prs": [
        {
          "number": 313,
          "created_at": "2026-07-09T23:35:44Z",
          "last_comment_at": "2026-07-09T23:38:15Z",
          "last_comment_author": "codecov-commenter"
        }
      ],
      "last_merged_pr_at": "2026-07-17T18:27:42Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 4,
          "created_at": "2023-06-01T22:49:06Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 29,
          "created_at": "2023-11-03T22:01:48Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 33,
          "created_at": "2024-01-31T12:25:25Z",
          "last_comment_at": "2025-10-09T17:21:42Z",
          "last_comment_author": "cadejacobson"
        },
        {
          "number": 35,
          "created_at": "2024-02-01T18:52:42Z",
          "last_comment_at": "2024-05-03T08:44:17Z",
          "last_comment_author": "pothos"
        },
        {
          "number": 38,
          "created_at": "2024-02-15T18:32:16Z",
          "last_comment_at": "2024-02-28T18:09:10Z",
          "last_comment_author": "anhvoms"
        },
        {
          "number": 43,
          "created_at": "2024-02-28T16:28:13Z",
          "last_comment_at": "2024-02-29T12:24:40Z",
          "last_comment_author": "anhvoms"
        },
        {
          "number": 50,
          "created_at": "2024-03-07T14:52:13Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 51,
          "created_at": "2024-03-07T15:01:47Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 61,
          "created_at": "2024-03-15T16:05:54Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 68,
          "created_at": "2024-03-20T11:02:33Z",
          "last_comment_at": "2024-05-03T12:01:58Z",
          "last_comment_author": "pothos"
        },
        {
          "number": 70,
          "created_at": "2024-03-20T11:18:50Z",
          "last_comment_at": "2025-02-26T17:34:06Z",
          "last_comment_author": "peytonr18"
        },
        {
          "number": 90,
          "created_at": "2024-06-25T14:48:32Z",
          "last_comment_at": "2024-06-25T15:14:04Z",
          "last_comment_author": "dongsupark"
        },
        {
          "number": 126,
          "created_at": "2024-09-13T08:43:03Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 189,
          "created_at": "2025-04-09T23:38:25Z",
          "last_comment_at": "2025-04-24T19:13:04Z",
          "last_comment_author": "peytonr18"
        },
        {
          "number": 192,
          "created_at": "2025-04-23T01:05:20Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 226,
          "created_at": "2025-08-28T16:08:11Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 239,
          "created_at": "2025-10-01T17:57:18Z",
          "last_comment_at": "2025-10-15T15:11:19Z",
          "last_comment_author": "cadejacobson"
        },
        {
          "number": 249,
          "created_at": "2025-10-09T18:43:15Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 253,
          "created_at": "2025-10-14T17:19:58Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 258,
          "created_at": "2025-10-16T21:23:09Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/Azure/azure-init",
    "host": "github.com",
    "name": "azure-init",
    "owner": "Azure"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 66,
      "inputs": {
        "security": 78,
        "vitality": 62,
        "community": 52,
        "governance": 69,
        "engineering": 71
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "moderate",
        "name": "Vitality",
        "value": 62,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 82,
            "inputs": {
              "commits_last_year": 58,
              "human_commit_share": 0.84,
              "days_since_last_push": 7,
              "active_weeks_last_year": 29
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 7 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 7
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "29/52 weeks with commits",
                "points": 20.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 29
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "58 commits in the last year",
                "points": 15.9,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 58
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "at_risk",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 32,
            "inputs": {
              "releases_count": 1,
              "latest_release_tag": "v0.1.1",
              "releases_from_tags": true,
              "days_since_latest_release": 869,
              "mean_days_between_releases": null
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "1 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 869 days ago",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 869
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "cadence unknown (single release)",
                "points": 12.6,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence_unknown",
                    "params": {}
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 7,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 7 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 7
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 52,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "at_risk",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 34,
            "inputs": {
              "forks": 17,
              "stars": 15,
              "watchers": 10,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "15 stars",
                "points": 18.6,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 15
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "17 forks",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 17
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "10 watchers",
                "points": 5.3,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "critical",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 23,
            "inputs": {
              "packages": [
                "azure-init",
                "libazureinit"
              ],
              "dependents": null,
              "ecosystems": "crates",
              "total_downloads": 3628,
              "monthly_downloads": 22
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "22 downloads/month across crates",
                "points": 18.2,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 22,
                      "ecosystems": "crates"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 69,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "moderate",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 65,
            "inputs": {
              "bus_factor": 2,
              "contributors_sampled": 11,
              "top_contributor_share": 0.28
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "2 contributor(s) cover half of all commits",
                "points": 25.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 28% of commits",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 28
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "11 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 11
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 9 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 76,
            "inputs": {
              "merged_prs": 165,
              "open_issues": 28,
              "closed_issues": 63,
              "issue_closed_ratio": 0.692,
              "closed_unmerged_prs": 57
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "69% of issues closed",
                "points": 32.4,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 69
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "165/222 decided PRs merged",
                "points": 28.4,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 165,
                      "decided": 222
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "all changesets reviewed",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 80,
            "inputs": {
              "followers": 15076,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "Azure",
              "public_repos": 2726,
              "account_age_days": 4526
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "15,076 followers of Azure",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 15076,
                      "login": "Azure"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "2726 public repos, account ~12 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 2726
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 12
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "moderate",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 53,
            "inputs": {
              "packages": [
                "azure-init",
                "libazureinit"
              ],
              "ecosystems": "crates",
              "any_deprecated": false,
              "min_days_since_publish": 869
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "2 package(s) on crates",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 2,
                      "ecosystems": "crates"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 869 days ago",
                "points": 4,
                "status": "partial",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 869
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "1 published versions",
                "points": 4,
                "status": "partial",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 71,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 68,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "4 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "good",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "good",
        "name": "Security",
        "value": 78,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "good",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 72,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 7.2
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "all changesets reviewed",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 9 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 2",
                "points": 1,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the crates:azure-init@0.1.1 runtime dependency closure — what installing the published package pulls in — 121 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "crates:azure-init@0.1.1",
                  "assessed": 121
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 121,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 121,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 16
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 65,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "at_risk",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.988,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "83 of 84 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 83,
                      "sampled": 84
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 71,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0.01,
              "toolchain_manifests": [
                "Cargo.toml",
                "libazureinit-kvp/Cargo.toml",
                "libazureinit/Cargo.toml"
              ],
              "dependency_bot_commit_share": 0.16
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Rust (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Rust"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "1 of the last 100 commits agent-authored or agent-credited",
                "points": 2,
                "status": "partial",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 1,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "16 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 16,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 98,
            "inputs": {
              "primary_language": "Rust",
              "largest_source_bytes": 135594,
              "source_files_sampled": 34,
              "oversized_source_files": 1
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Rust (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Rust"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "1/34 source files over 60KB",
                "points": 53.4,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 34,
                      "oversized": 1
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "Could not fetch crates package 'libazureinit-kvp' from its registry"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-25T06:00:31.354411Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/a/Azure/azure-init.svg",
  "full_name": "Azure/azure-init",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticscrates.io.