Raw JSON report machine-readable
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 2403,
"has_wiki": false,
"homepage": "https://developer.laserfiche.com/",
"languages": {
"Liquid": 48136,
"Python": 12729,
"JavaScript": 1366,
"TypeScript": 2985065
},
"pushed_at": "2026-07-20T15:56:19Z",
"created_at": "2024-08-21T13:28:52Z",
"owner_type": "Organization",
"updated_at": "2026-07-20T15:56:25Z",
"description": "Laserfiche JS API clients and utilities mono-repo",
"is_archived": false,
"is_disabled": false,
"license_spdx": "MIT",
"default_branch": "main",
"license_spdx_raw": "MIT",
"primary_language": "TypeScript",
"significant_languages": [
"TypeScript"
]
},
"owner": {
"blog": "https://www.laserfiche.com/",
"name": "Laserfiche",
"type": "Organization",
"login": "Laserfiche",
"company": null,
"location": "United States of America",
"followers": 46,
"avatar_url": "https://avatars.githubusercontent.com/u/33732798?v=4",
"created_at": "2017-11-16T19:35:48Z",
"is_verified": null,
"public_repos": 21,
"account_age_days": 3170
},
"license": {
"state": "standard",
"spdx_id": "MIT",
"raw_spdx": "MIT",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [],
"recent_commits": [
{
"oid": "7a18a529e21fd384687f5ddf04e488585c1959a1",
"body": "Drop npm@latest forced upgrade before pnpm publish",
"is_bot": false,
"headline": "Merge pull request #67 from Laserfiche/fix/pnpm-publish-npm-git-checks",
"author_name": "alexgomezlf",
"author_login": "alexgomezlf",
"committed_at": "2026-07-20T15:56:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7855726ab8ce69f6a8cc3717ef46f07c606bb7a9",
"body": "npm's latest major (12.x) turns the previously soft \"Unknown cli\nconfig\" warning for pnpm-only flags (--no-git-checks) into a hard\nEUNKNOWNCONFIG error, breaking every pnpm publish step. Since the\nworkflow always installed whatever npm was \"latest\" at CI run time,\nthis broke with no repo changes once npm 12 shipped. Removing the\nforced upgrade lets Node 24's bundled npm (11.x) stand, which still\naccepts the flag.\n\nCo-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Drop npm@latest forced upgrade before pnpm publish",
"author_name": "alexandria.gomez",
"author_login": "alexgomezlf",
"committed_at": "2026-07-20T15:00:10Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "6f68ba8ee194304feae8aac8d512be93d2b855f8",
"body": "…onsolidation\n\nRegenerate V2 client for Phase 3 combined surface (annotations & stamps, access rights, records management, user areas)",
"is_bot": false,
"headline": "Merge pull request #66 from Laserfiche/feature/670528-phase3-client-c…",
"author_name": "alexgomezlf",
"author_login": "alexgomezlf",
"committed_at": "2026-07-17T11:43:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e2719d3068c099ce7e2b481b4a19bbc227e17503",
"body": "Per review on PR #66 (alexgomezlf): the package.json version field is\nCI-managed (main.yml's pnpm version step overwrites it at build/publish\ntime regardless of what's committed), so the real bump belongs in\nmain.yml's NPM_API_CLIENT_V2_VERSION/NPM_API_JS_CLIENT_VERSION env vars,\nnot in the package.json file itself — reverted that hand-edit. Also add\nthe lf-api-js 1.3.0 changelog entry mirroring the v2 client's, matching\nthe established pattern (e.g. cd0765f for the 1.2.0 Phase 2 bump).",
"is_bot": false,
"headline": "Move version bump to main.yml, add matching lf-api-js changelog entry",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-07-16T20:50:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "af65b101d4439216db2351350c6458a474d7cef7",
"body": "infra: normalize swagger servers[] to the production URL in download_swagger.py",
"is_bot": false,
"headline": "Merge pull request #56 from Laserfiche/infra/localhost-trap-normalize",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-07-16T20:37:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8a80a910fb6b967a85a697296a611a985d240759",
"body": "…olidation\n\nTrap 5: npx nswag run alone skips the optional-multipart null-check patch\n(generate-client/patch_optional_multipart.py, run via run-patch.js as part of\nnpm run nswag) - without it, omitting an optional multipart param like\nimageFiles throws instead of succeeding.\n\nTrap 6: ClientBase.ts i\n[…]\n.ts or it's unreachable via _RepositoryApiClient.* - this exact gap\nshipped in PR #60 (AnnotationsClient/StampsClient never wired).\n\nBoth were hit live regenerating the consolidated Phase 3 JS client.",
"is_bot": false,
"headline": "Document two more regen-js-client traps found during the Phase 3 cons…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-07-16T20:17:38Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b895e5747197dec23d0b9a14b1af2494a1e1e955",
"body": "…ut state, not lock state\n\nCodex review of the consolidation commit (2941495) found that gating undoCheckOut/\nunlockDocument on getDocumentLockInfo().isActive breaks down for the 'CheckOut\nwithout lock' test: checking out with lock=false leaves isActive false while the\ndocument is still checked out,\n[…]\nt test's own explicit\nundoCheckOut would leave it checked out and skip cleanup. Use\ngetEntry().isCheckedOut instead, matching the check already used earlier in this\nsame file to verify checkout state.",
"is_bot": false,
"headline": "Fix afterEach cleanup gate in CheckInCheckOut.test.ts to check checko…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-07-16T20:17:26Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "2941495575201c3e31d1161118a8b5a32b5b8e24",
"body": "…ps, access rights, records management, user areas)\n\nConsolidates #59 (Records Management), #60 (Annotations & Stamps), #61\n(unified AccessControl), and #63 (User Areas) into a single regen. Each of\nthose PRs was a full NSwag regen against a server that only had its own\nsurface, so the branches conf\n[…]\nn (#60).\n Fixed a stale parameter name in the ported RM test (forSelector ->\n eligibleFor) caught by running the suite locally.\n- Bump to 1.3.0 with a combined changelog entry for all four surfaces.",
"is_bot": false,
"headline": "Regenerate V2 client for Phase 3 combined surface (annotations & stam…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-07-16T18:51:10Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "afa80b805deb91f7960c1dd466e6b7001e661d7a",
"body": "fix(security): bump form-data to 4.0.6 to remediate CVE-2026-12143",
"is_bot": false,
"headline": "Merge pull request #65 from Laserfiche/alex/fix-form-data-cve-2026-12143",
"author_name": "alexgomezlf",
"author_login": "alexgomezlf",
"committed_at": "2026-07-15T16:58:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d30ff9aaae1d371d382dd5223dc4a06e57ff4026",
"body": null,
"is_bot": false,
"headline": "fix changelogs and versions",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-07-10T20:05:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e46eb54eb4947714fc5bf65858593a2574cfea81",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger new build",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-07-09T21:37:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f74a95a92d4a3beed48dcdd895efdd8028892cc0",
"body": null,
"is_bot": false,
"headline": "dummy commit to retrigger build",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-07-09T21:16:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2b80ce093f517353a8f1af20f93366c8dc38e433",
"body": "npm's @latest tag now resolves to npm 12, which requires Node >=22.22.2/24.15.0\nand no longer supports Node 20. That broke the \"Update npm\" step on every\nNode-20 job. No npm ci calls exist in this repo (pnpm-only), so there's no\nneed to pin npm to a fixed version like other repos do.\n\nCo-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "ci: bump setup-node to Node 24 to fix npm@latest engine mismatch",
"author_name": "alexandria.gomez",
"author_login": "alexgomezlf",
"committed_at": "2026-07-09T19:55:56Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "b85110379427ca46bc9ad4de63403c03eac7e99e",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger build",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-07-09T15:18:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "750eb236524ef437cb0ea92428bc9831682d6737",
"body": "lf-api-client-core: 1.1.20 -> 1.1.21\nlf-js-utils: 4.0.14 -> 4.0.15\nlf-repository-api-v1: 1.1.11 -> 1.1.12\nlf-api-js / repo-api-v2: form-data reference updated within existing unreleased 1.2.0 entry\n\nCo-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Bump versions and update changelogs for form-data security fix",
"author_name": "alexandria.gomez",
"author_login": "alexgomezlf",
"committed_at": "2026-07-08T22:33:19Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "77f09fbb0b4c5facc91101993517484022a0f7c4",
"body": "Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(security): bump form-data to 4.0.6 to remediate CVE-2026-12143",
"author_name": "alexandria.gomez",
"author_login": "alexgomezlf",
"committed_at": "2026-07-08T18:50:19Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "5fc4df05637be0b7ceb26207e5d9f24246f7172c",
"body": "fix(security): bump vitest to ^4.1.6",
"is_bot": false,
"headline": "Merge pull request #62 from Laserfiche/alex/fix-api-js-veraode-scan",
"author_name": "alexgomezlf",
"author_login": "alexgomezlf",
"committed_at": "2026-06-18T01:54:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "55fad6dab5e20c8d7d667ba2407e5b4ffb13cbcb",
"body": "- Adds pnpm override vitest ^4.1.6 in root package.json to force all\n workspace packages off vitest@4.1.5 (resolves to 4.1.9).\n- Aligns devDependency specifier in all five workspace packages from\n ^4.1.2 to ^4.1.6 to match the override floor.\n- Also adds overrides for other Veracode-flagged packag\n[…]\ningly.\n\nCVE: CVE-2026-47428 (critical XSS in vitest browser runner via\nunsanitized otelCarrier query param; fixed in 4.1.6)\nFixes TFS #674755\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(security): bump vitest to ^4.1.6 to remediate CVE-2026-47428",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-17T21:17:51Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "bb95c0fe12e70ec1ebd6c6907c86f095bc6f5316",
"body": "Alex/fix api js veraode scan",
"is_bot": false,
"headline": "Merge pull request #58 from Laserfiche/alex/fix-api-js-veraode-scan",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-16T23:38:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "870d6616478360b8d77cc9c0f1f5f06cb7d0116d",
"body": "…en/network blips (don't fail a passing test on cleanup)",
"is_bot": false,
"headline": "test(v2): make field-merge teardown resilient to transient dev-CA tok…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-16T23:14:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bd5e65a7ccc438641293e9e0fa645e58644a4fe6",
"body": "…v CA (was dev US; dev-US SP rejected at LFS with 9010)",
"is_bot": false,
"headline": "ci: run V1 repository-api-client cloud + self-hosted tests against de…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-16T23:02:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ecd46b2a87760c671f47cf3e1969a1a4d7204781",
"body": null,
"is_bot": false,
"headline": "dummy commit",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-16T18:52:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1c4fc7915f78a4ffbf2862a3bef9a42f4da795f7",
"body": "The v2 vitest configs raised testTimeout to 200s but left hookTimeout at the\n10s default, so setup/teardown hooks that make the same dev-CA round-trips as\nthe tests (e.g. CheckInCheckOut afterEach: undoCheckOut + unlockDocument +\nstartDeleteEntry) time out against a slow/contended shared dev repository even\nthough no single call hangs. v1 already sets hookTimeout: 200_000; this aligns\nv2 with that convention and clears the CheckInCheckOut afterEach flake.",
"is_bot": false,
"headline": "test(v2): set hookTimeout to match testTimeout (200s)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-16T17:50:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d148673550943070dc4a6d44bdb7d743377c350c",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger build",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-16T12:07:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c0ae2db557262e4ead6ca83074816c3bae96b2de",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger tests",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-16T01:41:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9aa2933f13ebadd5d17e74d0d9064392f2f8f4f4",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger build again",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-16T01:16:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3c2090de9e4a1e30f2361f63dcc6fe9509ec046c",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger build",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-16T00:52:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ce90c1ec6dc624c7f6866d29dd9e1d34c00a870e",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger build",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-15T23:58:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4269f67066c3dc2612363e79de630bfb36f9a5a9",
"body": null,
"is_bot": false,
"headline": "update changelogs",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-15T22:23:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ee8023f988f9a3a07d1c3414bd7aa6460273dce1",
"body": "pnpm.overrides was updated from >= to ^ in the previous commit but the\nlockfile still recorded the old >= strings, causing ERR_PNPM_LOCKFILE_CONFIG_MISMATCH\non frozen installs in CI. Regenerated with pnpm@9.15.9 --lockfile-only.\n\nSome transitive packages downgraded to their respective majors (flat-c\n[…]\nxpansion 5->2) because the old >= ranges had already resolved\nto newer majors. Security floors from the original CVE overrides are preserved.\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Regenerate pnpm-lock.yaml to match ^ override ranges",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-15T21:59:53Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "80ef9414ae00ea1d34fb555ad7dd1284dfaa40c2",
"body": "…ty check\n\n- Revert jsrsasign from >= to ^ to keep major-version cap on published runtime dep\n- Change pnpm.overrides >= ranges to ^ so lockfile regens stay reproducible\n- Fail veracode-scan step early if package-lock.json has fewer than 10 packages\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Address PR review: tighten dependency version ranges and add SCA sani…",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-15T21:09:07Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "a6a45a101ec300291f99f24dabe4aa67192e6d72",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger tests",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-15T13:44:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f5f417f79aafe0482dfa75f824449f9c6c86dd4c",
"body": null,
"is_bot": false,
"headline": "dummy commit to trigger pipeline",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-15T13:25:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0d1f842bc9857f9dcb58b328c48e3267c830165c",
"body": null,
"is_bot": false,
"headline": "update version and changelogs",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T22:06:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "afa01f09250def6979cc67b07b13bb9a0fb3a328",
"body": "lf-js-utils: 4.0.13 -> 4.0.14\nlf-api-client-core: 1.1.19 -> 1.1.20\nlf-repository-api-v1: 1.1.10 -> 1.1.11\nlf-repository-api-v2: 1.2.0 -> 1.2.1\nlf-api-js: 1.1.0 -> 1.2.1\n\nEach CHANGELOG gets a Security section documenting the upgraded\ntransitive deps and the removal of inflight.\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Bump versions and update changelogs for security release",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T22:03:14Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "ffab48ce86f93156f30dffbcaced676860eef534",
"body": "- ajv >=8.18.0 (resolved 8.20.0)\n- glob >=10.5.0 (resolved 13.0.6)\n- lodash >=4.18.1 (resolved 4.18.1)\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Add overrides for ajv, glob, and lodash",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T21:51:46Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "03001563fd036758dd29a8f57a840d0f2585cea8",
"body": "Global minimatch override (>=9.0.7) broke @microsoft/api-extractor@7.49.2,\nwhich was compiled against the v3 CJS export shape and calls minimatch as\nminimatch_1.default. Added a scoped override so api-extractor keeps 3.x\nwhile all other consumers get the patched 9.x+ version.\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Fix build: pin minimatch to ^3.1.2 for api-extractor",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T21:04:52Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "e45a539a5a94562f7d2eb7efdb2cfa1f1656bd8a",
"body": "main had already bumped jsrsasign to ^11.1.1; kept >=11.1.1 from our\nbranch (more permissive). Regenerated pnpm-lock.yaml by running\npnpm install on top of main''s lockfile with our overrides in place.\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Resolve merge conflicts with main",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T20:51:01Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "95135e42347060c010652418defc5bdcf52927a0",
"body": "- turbo ^2.5.8 -> ^2.9.14 (resolves to 2.9.18)\n- jsrsasign ^11.0.0 -> >=11.1.1 (resolves to 11.1.3)\n- Added pnpm.overrides to root package.json to patch transitive deps:\n brace-expansion >=2.0.3, flat-cache >=4.0.0, flatted >=3.4.0,\n form-data 4.0.4, js-yaml 4.1.1, lodash >=4.17.21,\n markdown-it \n[…]\n 7.0.5,\n ws >=8.20.1, yaml >=2.8.3\n- inflight removed entirely: upgrading flat-cache to v4+ drops the\n rimraf@3 -> glob@7 -> inflight chain\n\nCo-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Upgrade vulnerable dependencies flagged by Veracode SCA",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T20:41:19Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "61d52ca4ba3b7e2166069e3528b4e53331824599",
"body": "Bump jsrsasign 11.1.0 -> 11.1.1 (security)",
"is_bot": false,
"headline": "Merge pull request #53 from Laserfiche/chore/jsrsasign-11.1.1",
"author_name": "alexgomezlf",
"author_login": "alexgomezlf",
"committed_at": "2026-06-12T19:45:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1cbd3de150ff4c7821d26cede4bd8cb8fe866437",
"body": null,
"is_bot": false,
"headline": "update package.json",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T19:10:37Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7c7f1fb4dd6c87c1e289fd6cc121f8a4520e119e",
"body": "…swagger.py\n\nRegenerating against a local server baked localhost:11211 into the swagger\nservers[] and thus every generated client baseUrl default (the recurring\nlocalhost-baking trap), requiring a manual restore each regen.\ndownload_swagger.py now forces servers[] to the canonical production URL by\n\n[…]\n; pass an empty string to keep the source).\nindex.ts now always defaults baseUrl to production; a local host is used only\nwhen a client is constructed with it explicitly (as the integration tests do).",
"is_bot": false,
"headline": "infra: normalize swagger servers[] to the production URL in download_…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-12T17:49:36Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7c910d306e10a03a88ae5335f04e44abe69c6bb1",
"body": null,
"is_bot": false,
"headline": "try this",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T17:19:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "310c2e188609cd1a6957e38366404ae32dd98cc5",
"body": null,
"is_bot": false,
"headline": "don't remove pnpm-lock.yaml",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T17:13:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bfc3beb6a90b7f3f3785adf4edef02156bcfc610",
"body": null,
"is_bot": false,
"headline": "try hoisting packages",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T17:05:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cb9a7ae1e95b64d9e44613460d4b7fdab7f6a338",
"body": null,
"is_bot": false,
"headline": "rm pnpm-lock",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T15:33:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6e0047cd3b745513c1396e75150cdf8eecd70cc4",
"body": null,
"is_bot": false,
"headline": "add buffer",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T14:20:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b509e542611eedceea9bc9339ce0e80c82962e60",
"body": null,
"is_bot": false,
"headline": "fix api-js veracode scan",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-06-12T14:04:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cc21545b4f4bbc8e31bf708291933479dab5d3ff",
"body": "Bumps [jsrsasign](https://github.com/kjur/jsrsasign) from 11.1.0 to 11.1.1.\n- [Release notes](https://github.com/kjur/jsrsasign/releases)\n- [Changelog](https://github.com/kjur/jsrsasign/blob/master/ChangeLog.txt)\n- [Commits](https://github.com/kjur/jsrsasign/compare/11.1.0...11.1.1)\n\n---\nupdated-dependencies:\n- dependency-name: jsrsasign\n dependency-version: 11.1.1\n dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "Bump jsrsasign from 11.1.0 to 11.1.1",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-10T01:10:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "126d0c50fa133b68a5d1ce458cfc0972bbe15ec5",
"body": "Regen V2 client for full deployed surface: 6.3.A/B/C + REQ-DOC-002",
"is_bot": false,
"headline": "Merge pull request #51 from Laserfiche/bzajzon/entry-child-introspection",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-07T21:44:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9a84b35a2520bd4a29b2c5392f5fcc846a836dae",
"body": null,
"is_bot": false,
"headline": "ci: trigger fresh run (publish jobs skip on attempt 1)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-05T21:27:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c2517d1ebba3522da40e6c877d6e1644cf441b30",
"body": "The repository's audit policy requires a reason for DeleteEntry; the Task tests sent an empty request, so the async delete reported Failed (400, 'Need to provide correct audit reason for DeleteEntry') instead of Completed. Add a cached getDeleteEntryAuditReasonId/deleteEntry helper (mirrors the dotn\n[…]\nso consolidate the paging setup onto a single folder (its children double as link targets) to keep write volume low enough that back-to-back node + browser runs don't trip the repository rate limiter.",
"is_bot": false,
"headline": "Supply DeleteEntry audit reason so delete-task tests pass",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-05T20:25:58Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "2851b278af530799a1d778c0855771f7adf4dcd5",
"body": "…ata)\n\nListEntriesForEach/ListEntriesNextLink relied on fields, links, tags, and children being pre-configured on the repository root folder (entry 1). That data drifts on the shared dev repo, so the Fields/Links cases failed (0 fields, 1 link). They now create their own entries via a shared setupPagingEntries helper and populate each with >= 2 children/fields/links/tags so maxpagesize=1 paging reliably yields a next link; cleanup deletes everything afterward.",
"is_bot": false,
"headline": "Make entry-listing paging tests self-sufficient (no root-folder metad…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-05T20:15:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "90928c63c3ab6d3e269f449e0830a186ab86246c",
"body": "Bare fetch had no timeout, so a stalled first connect on a CI runner blocked until the 200s test timeout. Bound each attempt with an AbortController (20s) and retry up to 3x; server error responses still throw immediately.",
"is_bot": false,
"headline": "Add timeout + retry to TokenClient to fix CI token-request hang",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-05T17:06:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "154bb7cfa4147e2cef77b9d326b2f2091ebb7c74",
"body": "Phase 2 adds new V2 client surface (6.3.A/B/C field & template definition\nadmin + REQ-DOC-002 entry introspection) via the consolidated regen in this\nPR. These are additive endpoints with no breaking public-API changes, so a\nminor bump — mirroring Phase 1's 1.0.9 -> 1.1.0. npm latest is 1.1.0, so\npublishing without a bump would conflict.",
"is_bot": false,
"headline": "Bump V2 client to 1.2.0 for Phase 2 surface",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-06-01T23:28:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cd0765f41b2a72e273311f11e0f413156375b54f",
"body": "…pection (Phase 2)",
"is_bot": false,
"headline": "Changelog: 1.2.0 — field & template definition admin and entry intros…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-31T22:53:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9e571e7bbfe22f9f39dce83d7fd9a7d5f9711797",
"body": "…onsolidated)\n\nSingle regen off the deployed swagger bringing the JS client up to the full V2\nsurface, superseding the conflicting per-batch client PRs. 6.3.A (#49) already on main.\n\nSurface added since main:\n- Field Definition destructive ops (MergeFields, ChangeFieldType) — PRD 6.3.B\n- Template De\n[…]\n.3.C/REQ-DOC-002 brought onto this\nbranch; the childInfo test asserts the flat single-object shape. Entry discriminator\noverride applied (Trap 1); multipart tests stay SKIP_UNDER_JSDOM-gated (Trap 3).",
"is_bot": false,
"headline": "Regen V2 client for full deployed surface: 6.3.A/B/C + REQ-DOC-002 (c…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-30T05:24:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "1fa1130e0627fa28988d254cac9c72b76876db69",
"body": "Regen JS client for Field Definition Admin endpoints (PRD 6.3.A)",
"is_bot": false,
"headline": "Merge pull request #49 from Laserfiche/bzajzon/field-definition-admin",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-29T23:06:05Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ae6d9ce319ce43f86de9746b2758138f2429063c",
"body": "The 6.3.A regen was run against the local dev server, baking\nhttp://localhost:11211/repository into the committed swagger `servers`\nand every generated client's default baseUrl. Restore the production\nURL https://api.laserfiche.com/repository to match origin/main and\nprior releases.\n\nContext: the do\n[…]\ned\ninto the published artifact. API surface is unchanged — only the\nfallback baseUrl string and the swagger `servers` entry.\n\nAddresses review comments on #49 (swagger.json servers, index.ts baseUrl).",
"is_bot": false,
"headline": "Restore prod baseUrl in regen output (was localhost from local regen)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-29T21:07:43Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "defedee9e0271ad5dd4aaa66c5afcdee2c8acf9a",
"body": "…trip\n\nMirrors the three dotnet coverage tests added during pre-PR review:\n\n- All FieldTypes — create / describe / update round-trip: iterates\n over all 8 non-Blob FieldType enum values; per-type create with\n appropriate flags, independent GET, PATCH description, verify.\n- GetFieldProperties — fre\n[…]\ndations (length<1, listValues on non-list, properties empty\n key, duplicate set+remove) surface as rejections with status 400\n through the JS client.\n\n8/8 vitest cases pass against the local server.",
"is_bot": false,
"headline": "Coverage tests — all field types, LFS-internal properties, 400 round-…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-25T05:45:09Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7e56cdb6ae9bbaf833a4ac49630f7648ea34af29",
"body": "…rties\n\nPicks up the 2 new admin endpoints on the server (PRD 6.3.A\nREQ-ADMIN-004B): getFieldProperties / updateFieldProperties on\nIFieldDefinitionsClient, plus the new optional properties field on\nCreateFieldDefinitionRequest. The bag holds the WebDAV keys the\nCloud admin UI uses for list-field sor\n[…]\nroperties, getFieldProperties to verify,\nupdateFieldProperties { set, remove }, independent getFieldProperties\nto confirm the partial update persisted.\n\n5/5 vitest cases pass against the local server.",
"is_bot": false,
"headline": "Regen JS client + integration test for FieldDefinition extended prope…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-25T05:15:20Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7948b1401a0ae65c9073f05fe76ce5beb02f527c",
"body": "Codex pre-PR review flagged that the test asserted only on the PUT\nresponse body. Same-request reads can mask a missing Save() on the\nserver's RA SetItemList path (Trap 4 in the add-v2-endpoint skill).\nAdds a fresh getFieldListValues call after each replaceFieldListValues,\nmirroring the dotnet client-side change.",
"is_bot": false,
"headline": "Independent GET after each Replace in ListField round-trip test",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-25T03:51:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9425117b5b4a30df961480fbc448115a9aa20d4b",
"body": "Regenerates v2 client + swagger snapshot to pick up the 7 admin\nendpoints introduced by site-api-repository PR for US #666940\n(CreateFieldDefinition, UpdateFieldDefinition, DeleteFieldDefinition,\nGetFieldListValues, ReplaceFieldListValues, GetFieldContainingTemplates,\nGetFieldAssignedEntryCount) plu\n[…]\nAssignedEntryCountResponse). Adds FieldDefinitionAdmin.test.ts mirroring\nthe dotnet integration tests: CRUD lifecycle, list-values round-trip,\nGetContainingTemplates empty, GetAssignedEntryCount zero.",
"is_bot": false,
"headline": "Regen JS client for Field Definition Admin endpoints (PRD 6.3.A)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-25T03:20:47Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ea8e5c2197c188f26fbd6e80b6577181103d3cf0",
"body": "infra: regen-js-client skill",
"is_bot": false,
"headline": "Merge pull request #48 from Laserfiche/claude-infra-and-docs",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-25T03:11:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "47f038ce32edb46ed28fe4b9e533689840c803f0",
"body": "…riptions\n\nThe previous version named the primary workflow and reproduced its\ndescription inline. That sentence duplicated the same description\nalready present in the SKILL.md frontmatter and the\n.claude/skills/README.md table — five places total once you include\nthe workspace-level index.\n\nMake AGE\n[…]\nub/copilot-instructions.md pure pointers to\n.claude/skills/README.md (which is the canonical per-repo index). The\nskills directory stays the single source of truth for skill content\nand applicability.",
"is_bot": false,
"headline": "docs: trim AI-assistant pointer files to avoid duplicating skill desc…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-12T23:14:22Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "490e07f6ac9636ec8f9d8a7d8202a68fad70e52e",
"body": "Other AI assistants (Copilot Chat, Codex CLI, etc.) don't auto-discover\n`.claude/skills/` by frontmatter the way Claude Code does. Add the two\ncommon conventions — `AGENTS.md` at repo root and\n`.github/copilot-instructions.md` — each containing a short pointer to\n`.claude/skills/README.md`. Skill bodies stay the single source of truth;\nthese files just bridge the auto-load gap for non-Claude tools.",
"is_bot": false,
"headline": "Add cross-assistant pointer files (AGENTS.md, copilot-instructions.md)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-12T21:34:37Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e643f7e84b9273b23b2adb6ca0ee8973521558eb",
"body": "Replaces the reference to the (now-deleted) preview-NuGet user-story\nmemory with a direct link to the regen-dotnet-client skill, which is\nthe canonical home for the dotnet client publish workflow and the\nin-flight #659276 Phase 2 details.",
"is_bot": false,
"headline": "regen-js-client: link to regen-dotnet-client skill",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-11T22:21:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a51c356046b5a2273d8f898a01ffb92158dc447f",
"body": "First team-shared skill for AI coding assistants in this repo. Documents\nthe NSwag-generated V2 client regen against site-api-repository's\nswagger, plus the four traps that have silently broken the JS test\nsuite in the past: swagger-override-filepath, baseUrl trailing-slash,\njsdom multipart-Blob ski\n[…]\nor-neutral bodies so other assistants can read them)\nand authoring conventions.\n\nNo change to the repo-level README intentionally; the skills system is\nscoped to its own directory in client libraries.",
"is_bot": false,
"headline": "infra: regen-js-client skill + skills README",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-11T22:06:37Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "de6b3dbc1c4dc6b5606ff0387bcedb67db850132",
"body": "Alex/update api js version",
"is_bot": false,
"headline": "Merge pull request #47 from Laserfiche/alex/update-api-js-version",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-07T16:35:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2ae7126f523b8eff75b9a63cc38b03da6ea6dcb5",
"body": null,
"is_bot": false,
"headline": "update version and changelog",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-05-07T16:11:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3b26346e99e1e92c1ba89eebdfb8e0fb38eefa04",
"body": "…age_manipulation_APIs",
"is_bot": false,
"headline": "Merge branch 'main' of https://github.com/Laserfiche/lf-api-js into p…",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-05-07T16:07:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "02fdc556ae8972b344982691efe41407d8d58777",
"body": "…e/lf-api-js into page_manipulation_APIs",
"is_bot": false,
"headline": "Merge branch 'page_manipulation_APIs' of https://github.com/Laserfich…",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-05-07T16:07:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e41b6296e24989c8d76d91aba9716933582a09b7",
"body": null,
"is_bot": false,
"headline": "update lf-api-js version",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-05-07T16:07:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "eefb6b48dd633f91277337ef83317b943698cc3d",
"body": "build: exclude vitest.config*.ts from production tsc output",
"is_bot": false,
"headline": "Merge pull request #46 from Laserfiche/exclude-vitest-config-from-dist",
"author_name": "alexgomezlf",
"author_login": "alexgomezlf",
"committed_at": "2026-05-07T15:28:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "778456edd200415097284ca7a150f25ab2b8b39b",
"body": "`packages/lf-api-js/tsconfig.json` and `packages/lf-repository-api-client-v1/tsconfig.json` default-include root *.ts files. Their `exclude` lists covered `test/`, `dist/`, and `jest.*.js` but not the new `vitest.config*.ts` files added in #44, so `tsc -b` was emitting `dist/vitest.config.{js,d.ts,j\n[…]\nching what `lf-repository-api-client-v2` already does.\n\nVerified by clean rebuild: `dist/` no longer contains vitest config files. Vitest tests still pass (vitest reads its config independent of tsc).",
"is_bot": false,
"headline": "build: exclude vitest.config*.ts from production tsc output",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T22:51:08Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "904a5fcb25d514ac14ec2b2448b801b89f4fd2fa",
"body": "test: migrate remaining packages from Jest to vitest",
"is_bot": false,
"headline": "Merge pull request #44 from Laserfiche/vitest-migration",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T22:38:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c5f4209aecade37ba1e40b512dec34ef44036abd",
"body": "Vitest+jsdom regression vs jest+jsdom: the test sends a Blob-bearing\nFormData body to importDocument, expecting a 400 from the server. Under\nvitest+jsdom the underlying fetch throws TypeError: fetch failed before\nreaching the server (passes under vitest+node and was passing under\njest+jsdom in the b\n[…]\njsdom via test.skipIf(isBrowser()) so the test_libraries CI\nchain can flow through to V1 self-hosted, V2, and lf-api-js. Investigate\nisomorphic-fetch / jsdom Blob handling under vitest as a follow-up.",
"is_bot": false,
"headline": "test(lf-repository-api-client-v1): skip ImportDocument under jsdom",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T21:33:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a62d3ae9dc20c7b27870db1403d91979b7aeb617",
"body": "Vitest splits hook timeouts from test timeouts. The default hookTimeout\nis 10s, so afterEach cleanup loops with 5s setTimeouts per entry\n(CreateCopyEntryCopyShortcut, CreateCopyEntryCopyEntry, SearchTests,\nCloseSearchTests, Task) would fail under vitest where they passed under\nJest (Jest applies testTimeout to hooks as well).\n\nMirror testTimeout: 200_000 with hookTimeout: 200_000 in both vitest\nconfigs. Caught by Codex review on the migration branch diff.",
"is_bot": false,
"headline": "test(lf-repository-api-client-v1): set hookTimeout to 200s",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T21:33:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d43137792328b3e169a7b0350b15c1dd85715bf1",
"body": "…(#657988)\n\nSwitches all five Test Report steps from reporter: jest-junit to\nreporter: java-junit (vitest emits standard JUnit XML, not jest-junit\nattribute set).\n\nUpdates path globs for packages whose vitest config sets root: 'test'\nso JUnit is written to test/junit*.xml:\n - lf-repository-api-clie\n[…]\nvitest, out of scope for this migration) keeps\nits current report path — its reporter step has been finding nothing\nsince the V2 vitest migration on page_manipulation_APIs and is unrelated\nto this PR.",
"is_bot": false,
"headline": "ci(test_libraries): point dorny/test-reporter at vitest JUnit output …",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T21:33:22Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ffdb72c279763dd7fbbcf8236ba2944848c16ec9",
"body": "Replaces jest-runner-groups with a filename-suffix convention that vitest\nfilters via positional substring args:\n\n *.unit.test.ts UnitTests group\n *.integration-cloud.test.ts IntegrationTests/Cloud group\n *.integration-selfhosted.test.ts IntegrationTests/SelfHosted group\n[…]\nfied: test:Cloud collects 7 files, test:SelfHosted collects 7\nfiles (matches CI baseline \"7 of 9\"). Full test count parity (41 / 43)\nwill be confirmed in CI where AUTHORIZATION_TYPE and creds are set.",
"is_bot": false,
"headline": "test(lf-api-client-core-js): migrate from Jest to vitest (#657988)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T21:33:21Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3c59747990869cef0e28fa1b7424d5d225d0467c",
"body": "Two vitest configs (node + jsdom) mirroring V2's pattern.\nConditional JUnit output filename preserved via process.env.AUTHORIZATION_TYPE\ncheck (matches the existing jest-junit dynamic naming for cloud vs self-hosted\nruns).\n\nDrops --experimental-vm-modules --experimental-fetch flags (vitest covers both\nnatively). Drops ts-jest, jest-junit, babel-jest, @types/jest, jest;\nadds vitest, jsdom.\n\n66 tests collected on each config (matches baseline).",
"is_bot": false,
"headline": "test(lf-repository-api-client-v1): migrate from Jest to vitest (#657988)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T21:33:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4be4ab4087136732179c081a203e24ee89d8bfc2",
"body": "Single node config, no Jest API usage in test bodies. Drop ts-jest,\nbabel-jest, jest-junit, @types/jest, jest; add vitest. Also drops the\n--experimental-vm-modules opt-in flag.\n\n3 tests pass (matches baseline).",
"is_bot": false,
"headline": "test(lf-api-js): migrate from Jest to vitest (#657988)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T21:33:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f48a9cffbf47cea5215e55167c48acd4e38e2b6c",
"body": "Replace Jest dual-project (dom + node) config with vitest test.projects.\nOne vi.fn() conversion in lf-localization.service.spec.ts. Drop ts-jest,\njest-environment-jsdom, jest-junit, jest-config, @types/jest, jest;\nadd vitest, jsdom.\n\n362 tests pass (matches baseline from run 22864885222).",
"is_bot": false,
"headline": "test(lf-js-utils): migrate from Jest to vitest (#657988)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T21:33:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9953665d4d0a1f9c9059874f2df21f234fa8e74b",
"body": "Page manipulation apis",
"is_bot": false,
"headline": "Merge pull request #42 from Laserfiche/page_manipulation_APIs",
"author_name": "bzajzon-laserfiche",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T20:04:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "115a1ef5fb4594d8bef80031fd52a2092d663ea1",
"body": "The workflow's \"Test report\" / \"Test Report\" steps run dorny/test-reporter@v2\nwith `reporter: jest-junit` and path `./packages/lf-repository-api-client-v2/*.xml`,\nexpecting Jest's jest-junit XML output. Since the V2 package migrated to\nvitest, no XML was being produced; the reporter step failed with\n[…]\nde.xml\"\nat packages/lf-repository-api-client-v2/junit-node.xml.\n\nDistinct file names for node vs browser so the second phase doesn't\noverwrite the first; *.xml is already gitignored at workspace root.",
"is_bot": false,
"headline": "ci(v2): emit JUnit XML for dorny/test-reporter consumption",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T04:54:19Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4153749e3c7c605e98509ad09bafb13f9cf6f7ab",
"body": "The V2 client had been regenerated against a locally-running API server\non 2026-04-06 (commit 64a510c0), which baked http://localhost:11211/repository\ninto swagger.json's servers[] block. NSwag then emitted that as the\ndefault baseUrl for every generated client class — 11 EntriesClient /\nAttributesC\n[…]\nbacks\nin index.ts.\n\nNote: the regen pipeline will re-introduce localhost on the next run\nunless `download_swagger.py` (or run-patch.js) is updated to normalize\nthe servers[] block. Tracked separately.",
"is_bot": false,
"headline": "client(v2): restore production server URL in swagger.json + index.ts",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T04:26:07Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a7e76547fb033ea88a03e2ab3032ec79f23c07dd",
"body": "Local `pnpm test` previously ran only the node-env vitest config, so the\nbrowser-env (jsdom) failures introduced by #658052 (vitest+jsdom hang on\nmultipart Blob uploads) only surfaced on CI's separate test:browser\nstep. Validated locally that test:all runs both phases cleanly post-skip\n(c70d5a3): node 99 passed/1 skipped, browser 59 passed/41 skipped (12\nsuites in the page-manipulation surface).",
"is_bot": false,
"headline": "test(v2): default `pnpm test` to test:all (node + browser)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T04:24:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5d598b5b5a5db37ee784ae9e42be8a50d8ceeee9",
"body": "Wraps every V2 test suite that calls importEntry() (or otherwise relies\non a multipart Blob upload) with describe.skipIf(SKIP_UNDER_JSDOM), so\nthe browser-env vitest run no longer hangs each test for ~2 minutes on\nthe unreachable fetch.\n\nAdds a single SKIP_UNDER_JSDOM constant to BaseTest.ts with th\n[…]\nnt.test.ts, WritePage.test.ts\n\nSame vitest+jsdom regression class as the V1 ImportDocument skip\n(c768154 on vitest-migration). Passes under vitest+node and was passing\nunder jest+jsdom on origin/main.",
"is_bot": false,
"headline": "test(v2): skip multipart-Blob tests under jsdom (#658052)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T04:24:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "801020669c69d7baf57052b3a0943c3dc79a7bee",
"body": "Mirrors lf-repository-api-client-dotnet PR #198 (SetTagsTest.SetAndReturnTags).\n\n- Un-skips the test (drops test.skip and the placeholder skip rationale).\n- Filters out the \"Automatically select tags\" pseudo-tag — it has\n isSecure=false but isn't applicable to entries, so assigning it\n silently no\n[…]\nntly verify the tag was\n actually applied. Splits assertions into a list-based check and a\n PUT-response check so a failure tells you whether the tag was set\n or whether only the response is wrong.",
"is_bot": false,
"headline": "test(v2): re-enable Set Tags and verify via listTags (#657997)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-05T04:24:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dec8dd7ff2f7781a975862175f0d30a2ceac4511",
"body": null,
"is_bot": false,
"headline": "empty commit to trigger tests",
"author_name": "alexandria.gomez",
"author_login": null,
"committed_at": "2026-05-04T23:35:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "09ab5e66ffd60ee9822abd35f847d70457d556c7",
"body": "The 'Set Entries Integration Tests > Set Tags' case fails on V2 cloud\nnode CI. Investigation points to a test-environment configuration\nissue (security tag at index 0 of the CI repo, or test SP trustee\npermissions), not a client/server regression. Mirrors the existing\ndotnet SetTagsTest.SetAndReturnTags [Ignore] pattern.\n\nSkip the test and leave the candidate fix in place: filter to the\nfirst informational (isSecure=false) tag. Un-skip and validate when\nclosing #657997.",
"is_bot": false,
"headline": "test(v2): skip Set Tags pending environment fix (#657997)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-03T16:43:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fa5609580b09f121d67eabf0cd893fcc508424b9",
"body": "The nswag script invoked 'py' directly, which only exists on Windows.\nLinux runners failed with 'sh: 1: py: not found'. Replace with a small\nNode shim that tries py/python/python3 in order per platform.",
"is_bot": false,
"headline": "Fix Linux CI: dispatch Python invocation via Node shim",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-01T20:33:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f1239a4564d2d8577df19ac41b816129b5b68b22",
"body": "- `listPageInfos` returns the new `PageInfoCollectionResponse` (OData\n envelope with `value`/`odataCount`/`odataNextLink`); accepts `top`,\n `prefer`, `select`, `count`, `pageRange`. `orderby` is dropped.\n- Page-method tests (CopyPages, CreatePages, MovePages, RotateImagePage)\n unwrap the new wrap\n[…]\netPageInfo.test.ts`: 3 dedicated tests rewritten with wrapper-aware\n assertions; 7 new pagination tests added (count, top, pageRange+top\n compose, Prefer maxpagesize, invalid/out-of-range 400, 404).",
"is_bot": false,
"headline": "Regen V2 client for ListPageInfos pagination; align page-method tests",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-05-01T17:15:59Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bae699b0173d11d349a1963c6596305a03a0236a",
"body": "The server-side GET /v2/.../Entries/{id}/Document endpoint was removed\nbecause it duplicated POST /Export part=Edoc (the canonical V2 edoc\ndownload flow that supersedes V1's GET /Laserfiche.Repository.Document/edoc).\nThe endpoint never reached production — only cloudtest — so this client\nmethod was \n[…]\n- Delete test/Entries/GetDocument.test.ts\n- Drop getDocument from the unreleased 1.1.0 CHANGELOG features list\n\ngetDocumentLockInfo and FileResponse (used by getPageImage) are unrelated\nand unchanged.",
"is_bot": false,
"headline": "Regen V2 client: drop getDocument (server endpoint removed)",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-04-29T05:20:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "251330141056bffecdbdcf095fdbd583638bd655",
"body": "…+4 page-method tests\n\n- VERSION: NPM_API_CLIENT_V2_VERSION 1.0.9 → 1.1.0 (~20 new methods +\n Jest→Vitest migration; no breaking changes in the JS package since\n JavaScript has no IList/ICollection distinction).\n- CHANGELOG: 1.1.0 entry listing the new Documents / Pages / CICO+Lock\n methods, the \n[…]\n 4 missing integration tests: movePages, copyPages, rotateImagePage,\n replacePages. CopyPages explicitly verifies the source retains its\n pages (rename from TransferPages with this behavior change).",
"is_bot": false,
"headline": "1.1.0: changelog + version bump; regex fix; WritePage consolidation; …",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-04-29T01:07:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "694d2dc963d0296b65fd7e850fa9dfa05234918f",
"body": "…quest\n\n- swagger-override.json: drop the stale Entry2 schema. Its discriminator\n pointed at Document2/Folder2/Shortcut2 which used to be emitted by the\n .NET-side EntryPolymorphismDocumentProcessor (reverted in\n site-api-repository commit 439c932); NSwag now failed to resolve them.\n- swagger.jso\n[…]\nContentRequest. ReplacePages\n request body now exposes textPages.\n- test/Entries/{CreatePages,GetPageContent,GetPageInfo,WritePageText}.test.ts:\n update CreatePagesRequest references for the rename.",
"is_bot": false,
"headline": "Regenerate V2 client from path-segment swagger; rename PagesContentRe…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-04-25T01:36:36Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "873475ac80d4674c10c64e2c2c65079809dfa9a3",
"body": "The server (site-api-repository) reverted its [OpenApiTag] split so all\nEntry-related operations carry the default \"Entries\" tag again. The\ncollapse_tags() helper added to de-sugar \"Entries - Metadata\" etc. is\nnow a no-op — remove it. Regen produces identical index.ts.",
"is_bot": false,
"headline": "Retire collapse_tags() after server-side tag split revert",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-04-21T18:34:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "073fbd19e63ac785ddf7115acd673278519fcd2f",
"body": "Refresh swagger.json and regen index.ts. Server-side changes absorbed:\n- request DTOs are now proper typed classes (CreatePagesRequest,\n WritePageTextRequest) via server-side $ref emission.\n- writePage consolidates the previous writePageImage + writePageText;\n accepts optional imageFile and/or Wri\n[…]\nng textPages array.\n- WritePageImage.test.ts: writePageImage -> writePage.\n- WritePageText.test.ts: resurrect after server exposed the text field\n in WritePage swagger; uses new WritePageTextRequest.",
"is_bot": false,
"headline": "Regenerate V2 client; align page-manipulation tests with server API",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-04-21T16:17:25Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dbe809c9837569c4364692b54cffeb23c035a885",
"body": "…ator\n\n- generate-client/patch_optional_multipart.py runs post-nswag to rewrite\n NSwag's null-check throws into optional-skip blocks for multipart\n parameters the swagger marks as not-required. Operates on 9 sites\n across ImportEntry, UpdateDocument, CreatePages, WritePage. Idempotent.\n Wired in\n[…]\nipleClientsFromFirstTagAndOperationId mode from splitting\n operations across new EntriesMetadataClient / EntriesDocumentClient\n classes (which would break ClientBase.ts extensions on EntriesClient).",
"is_bot": false,
"headline": "Add optional-multipart auto-patch and tag-collapse to V2 client gener…",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-04-21T16:17:12Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "745c660c7ce6b6bc7ef31872938b8c56fbd88c42",
"body": " (packages/lf-repository-api-client-v2/test/Entries/CheckInCheckOut.test.ts):\n - Imported CheckInDocumentRequest and Document\n - Added post-checkout assertions in the first test (SID-format check via startsWith('S-1-'),\n isLockedByAnotherUser=false, isCheckedOutByAnotherUser=false) — cast getEntry result to Document\n (polymorphic fromJS picks the concrete type)\n - Added CheckIn with unlock=false keeps persistent lock test",
"is_bot": false,
"headline": "Changes to CheckInCheckOut.test.ts",
"author_name": "Barna Zajzon",
"author_login": "bzajzon-laserfiche",
"committed_at": "2026-04-15T20:08:23Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 0,
"commits_last_year": 166,
"latest_release_at": null,
"latest_release_tag": null,
"releases_from_tags": false,
"days_since_last_push": 2,
"active_weeks_last_year": 20,
"days_since_latest_release": null,
"mean_days_between_releases": null
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": false,
"health_percentage": 50,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "@laserfiche/lf-api-js",
"exists": true,
"license": "MIT",
"keywords": [
"Laserfiche"
],
"ecosystem": "npm",
"matches_repo": true,
"registry_url": "https://www.npmjs.com/package/@laserfiche/lf-api-js",
"is_deprecated": false,
"latest_version": "1.3.0",
"repository_url": "https://github.com/Laserfiche/lf-api-js",
"versions_count": 37,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 5,
"monthly_downloads": 305,
"first_published_at": "2024-10-04T21:22:59.323000Z",
"latest_published_at": "2026-07-17T16:20:24.209000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 5
},
{
"name": "@laserfiche/lf-js-utils",
"exists": true,
"license": "MIT",
"keywords": [],
"ecosystem": "npm",
"matches_repo": true,
"registry_url": "https://www.npmjs.com/package/@laserfiche/lf-js-utils",
"is_deprecated": false,
"latest_version": "4.0.15",
"repository_url": "https://github.com/Laserfiche/lf-api-js",
"versions_count": 87,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 5,
"monthly_downloads": 3532,
"first_published_at": "2022-03-18T00:19:18.308000Z",
"latest_published_at": "2026-07-17T16:20:02.460000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 5
},
{
"name": "@laserfiche/lf-api-client-core",
"exists": true,
"license": "MIT",
"keywords": [
"Laserfiche"
],
"ecosystem": "npm",
"matches_repo": true,
"registry_url": "https://www.npmjs.com/package/@laserfiche/lf-api-client-core",
"is_deprecated": false,
"latest_version": "1.1.21",
"repository_url": "https://github.com/Laserfiche/lf-api-js",
"versions_count": 140,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 5,
"monthly_downloads": 3768,
"first_published_at": "2022-05-11T17:33:13.449000Z",
"latest_published_at": "2026-07-17T16:20:08.580000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 5
},
{
"name": "@laserfiche/lf-repository-api-client",
"exists": true,
"license": "MIT",
"keywords": [
"Laserfiche"
],
"ecosystem": "npm",
"matches_repo": true,
"registry_url": "https://www.npmjs.com/package/@laserfiche/lf-repository-api-client",
"is_deprecated": false,
"latest_version": "1.1.12",
"repository_url": "https://github.com/Laserfiche/lf-api-js",
"versions_count": 104,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 5,
"monthly_downloads": 1216,
"first_published_at": "2022-04-29T16:32:49.970000Z",
"latest_published_at": "2026-07-17T16:20:13.903000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 5
},
{
"name": "@laserfiche/lf-repository-api-client-v2",
"exists": true,
"license": "MIT",
"keywords": [
"Laserfiche"
],
"ecosystem": "npm",
"matches_repo": true,
"registry_url": "https://www.npmjs.com/package/@laserfiche/lf-repository-api-client-v2",
"is_deprecated": false,
"latest_version": "1.3.0",
"repository_url": "https://github.com/Laserfiche/lf-api-js",
"versions_count": 63,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 5,
"monthly_downloads": 2698,
"first_published_at": "2023-10-04T11:12:43.531000Z",
"latest_published_at": "2026-07-17T16:20:19Z",
"latest_version_yanked": null,
"days_since_latest_publish": 5
}
]
},
"popularity": {
"forks": 2,
"stars": 0,
"watchers": 1,
"fork_history": {
"days": [
{
"date": "2026-02-19",
"count": 1
},
{
"date": "2026-03-02",
"count": 1
}
],
"complete": true,
"collected": 2,
"total_forks": 2
},
"star_history": {
"days": [],
"complete": true,
"collected": 0,
"total_stars": 0,
"collected_at": null
},
"open_issues_and_prs": 6
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [
"packages/lf-repository-api-client-v1/generate-client/swagger.json",
"packages/lf-repository-api-client-v2/generate-client/swagger.json"
],
"has_devcontainer": false,
"typecheck_configs": [
"packages/lf-api-client-core-js/tsconfig.json",
"packages/lf-api-js/tsconfig.json",
"packages/lf-js-utils/tsconfig.json",
"packages/lf-repository-api-client-v1/tsconfig.json",
"packages/lf-repository-api-client-v2/tsconfig.json",
"tsconfig.json"
],
"toolchain_manifests": [],
"largest_source_bytes": 1623069,
"source_files_sampled": 148,
"oversized_source_files": 4,
"agent_instruction_files": [
".github/copilot-instructions.md",
"AGENTS.md"
],
"agent_instruction_max_bytes": 602
},
"dependencies": {
"manifests": [
"package.json"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [
{
"name": "rollup",
"direct": false,
"version": "4.34.3",
"severity": "critical",
"ecosystem": "npm",
"cvss_score": 9.1,
"advisory_ids": [
"GHSA-mw96-cpmx-2vgc"
],
"fixed_version": "4.59.0",
"advisory_count": 1,
"oldest_advisory_days": 147
},
{
"name": "brace-expansion",
"direct": false,
"version": "2.1.1",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-3jxr-9vmj-r5cp"
],
"fixed_version": "5.0.7",
"advisory_count": 1,
"oldest_advisory_days": 2
},
{
"name": "fast-uri",
"direct": false,
"version": "3.1.2",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-4c8g-83qw-93j6",
"GHSA-v2hh-gcrm-f6hx"
],
"fixed_version": "4.1.1",
"advisory_count": 2,
"oldest_advisory_days": 1
},
{
"name": "js-yaml",
"direct": false,
"version": "4.1.1",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-52cp-r559-cp3m",
"GHSA-h67p-54hq-rp68"
],
"fixed_version": "4.3.0",
"advisory_count": 2,
"oldest_advisory_days": 37
},
{
"name": "linkify-it",
"direct": false,
"version": "5.0.1",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-v245-v573-v5vm"
],
"fixed_version": "5.0.2",
"advisory_count": 1,
"oldest_advisory_days": 1
},
{
"name": "picomatch",
"direct": false,
"version": "2.3.1",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-3v7f-55p6-f55p",
"GHSA-c2c7-rcm5-vvqj"
],
"fixed_version": "4.0.4",
"advisory_count": 2,
"oldest_advisory_days": 119
},
{
"name": "picomatch",
"direct": false,
"version": "4.0.2",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-3v7f-55p6-f55p",
"GHSA-c2c7-rcm5-vvqj"
],
"fixed_version": "4.0.4",
"advisory_count": 2,
"oldest_advisory_days": 119
},
{
"name": "vite",
"direct": false,
"version": "8.0.10",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-fx2h-pf6j-xcff",
"GHSA-v6wh-96g9-6wx3"
],
"fixed_version": "8.0.16",
"advisory_count": 2,
"oldest_advisory_days": 37
},
{
"name": "diff",
"direct": false,
"version": "4.0.2",
"severity": "moderate",
"ecosystem": "npm",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-73rr-hh4g-fpgx"
],
"fixed_version": "8.0.3",
"advisory_count": 1,
"oldest_advisory_days": 189
}
],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {
"high": 7,
"critical": 1,
"moderate": 1
},
"advisory_count": 14,
"affected_count": 9,
"assessed_count": 438,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 27,
"direct_affected_count": 0
},
"ecosystems": [
"npm"
],
"dependencies": [
{
"name": "@laserfiche/lf-js-utils",
"manifest": "packages/lf-api-client-core-js/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "jsrsasign",
"manifest": "packages/lf-api-client-core-js/package.json",
"ecosystem": "npm",
"version_constraint": "^11.1.1"
},
{
"name": "jsrsasign-util",
"manifest": "packages/lf-api-client-core-js/package.json",
"ecosystem": "npm",
"version_constraint": "^1.0.5"
},
{
"name": "@laserfiche/lf-api-client-core",
"manifest": "packages/lf-api-js/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "@laserfiche/lf-js-utils",
"manifest": "packages/lf-api-js/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "@laserfiche/lf-repository-api-client",
"manifest": "packages/lf-api-js/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "@laserfiche/lf-repository-api-client-v2",
"manifest": "packages/lf-api-js/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "@laserfiche/lf-api-client-core",
"manifest": "packages/lf-repository-api-client-v1/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "@laserfiche/lf-js-utils",
"manifest": "packages/lf-repository-api-client-v1/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "@laserfiche/lf-api-client-core",
"manifest": "packages/lf-repository-api-client-v2/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
},
{
"name": "@laserfiche/lf-js-utils",
"manifest": "packages/lf-repository-api-client-v2/package.json",
"ecosystem": "npm",
"version_constraint": "workspace:^"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "jsrsasign",
"direct": true,
"version": "11.1.1",
"ecosystem": "npm"
},
{
"name": "jsrsasign",
"direct": true,
"version": "^11.1.1",
"ecosystem": "npm"
},
{
"name": "jsrsasign-util",
"direct": true,
"version": "1.0.5",
"ecosystem": "npm"
},
{
"name": "jsrsasign-util",
"direct": true,
"version": "^1.0.5",
"ecosystem": "npm"
},
{
"name": "@asamuzakjp/css-color",
"direct": false,
"version": "3.2.0",
"ecosystem": "npm"
},
{
"name": "@babel/code-frame",
"direct": false,
"version": "7.27.1",
"ecosystem": "npm"
},
{
"name": "@babel/helper-validator-identifier",
"direct": false,
"version": "7.27.1",
"ecosystem": "npm"
},
{
"name": "@cspotcode/source-map-support",
"direct": false,
"version": "0.8.1",
"ecosystem": "npm"
},
{
"name": "@csstools/color-helpers",
"direct": false,
"version": "5.1.0",
"ecosystem": "npm"
},
{
"name": "@csstools/css-calc",
"direct": false,
"version": "2.1.4",
"ecosystem": "npm"
},
{
"name": "@csstools/css-color-parser",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "@csstools/css-parser-algorithms",
"direct": false,
"version": "3.0.5",
"ecosystem": "npm"
},
{
"name": "@csstools/css-tokenizer",
"direct": false,
"version": "3.0.4",
"ecosystem": "npm"
},
{
"name": "@emnapi/core",
"direct": false,
"version": "1.10.0",
"ecosystem": "npm"
},
{
"name": "@emnapi/runtime",
"direct": false,
"version": "1.10.0",
"ecosystem": "npm"
},
{
"name": "@emnapi/wasi-threads",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "@eslint-community/eslint-utils",
"direct": false,
"version": "4.4.1",
"ecosystem": "npm"
},
{
"name": "@eslint-community/regexpp",
"direct": false,
"version": "4.12.1",
"ecosystem": "npm"
},
{
"name": "@eslint/eslintrc",
"direct": false,
"version": "2.1.4",
"ecosystem": "npm"
},
{
"name": "@eslint/js",
"direct": false,
"version": "8.57.1",
"ecosystem": "npm"
},
{
"name": "@gerrit0/mini-shiki",
"direct": false,
"version": "1.27.2",
"ecosystem": "npm"
},
{
"name": "@humanwhocodes/config-array",
"direct": false,
"version": "0.13.0",
"ecosystem": "npm"
},
{
"name": "@humanwhocodes/module-importer",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "@humanwhocodes/object-schema",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "@isaacs/cliui",
"direct": false,
"version": "8.0.2",
"ecosystem": "npm"
},
{
"name": "@jest/expect-utils",
"direct": false,
"version": "29.7.0",
"ecosystem": "npm"
},
{
"name": "@jest/schemas",
"direct": false,
"version": "29.6.3",
"ecosystem": "npm"
},
{
"name": "@jest/types",
"direct": false,
"version": "29.6.3",
"ecosystem": "npm"
},
{
"name": "@jridgewell/gen-mapping",
"direct": false,
"version": "0.3.8",
"ecosystem": "npm"
},
{
"name": "@jridgewell/resolve-uri",
"direct": false,
"version": "3.1.2",
"ecosystem": "npm"
},
{
"name": "@jridgewell/set-array",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "@jridgewell/source-map",
"direct": false,
"version": "0.3.6",
"ecosystem": "npm"
},
{
"name": "@jridgewell/sourcemap-codec",
"direct": false,
"version": "1.5.0",
"ecosystem": "npm"
},
{
"name": "@jridgewell/sourcemap-codec",
"direct": false,
"version": "1.5.5",
"ecosystem": "npm"
},
{
"name": "@jridgewell/trace-mapping",
"direct": false,
"version": "0.3.25",
"ecosystem": "npm"
},
{
"name": "@jridgewell/trace-mapping",
"direct": false,
"version": "0.3.9",
"ecosystem": "npm"
},
{
"name": "@microsoft/api-extractor",
"direct": false,
"version": "7.49.2",
"ecosystem": "npm"
},
{
"name": "@microsoft/api-extractor",
"direct": false,
"version": "^7.47.11",
"ecosystem": "npm"
},
{
"name": "@microsoft/api-extractor-model",
"direct": false,
"version": "7.30.3",
"ecosystem": "npm"
},
{
"name": "@microsoft/tsdoc",
"direct": false,
"version": "0.15.1",
"ecosystem": "npm"
},
{
"name": "@microsoft/tsdoc-config",
"direct": false,
"version": "0.17.1",
"ecosystem": "npm"
},
{
"name": "@napi-rs/wasm-runtime",
"direct": false,
"version": "1.1.4",
"ecosystem": "npm"
},
{
"name": "@nodelib/fs.scandir",
"direct": false,
"version": "2.1.5",
"ecosystem": "npm"
},
{
"name": "@nodelib/fs.stat",
"direct": false,
"version": "2.0.5",
"ecosystem": "npm"
},
{
"name": "@nodelib/fs.walk",
"direct": false,
"version": "1.2.8",
"ecosystem": "npm"
},
{
"name": "@oxc-project/types",
"direct": false,
"version": "0.127.0",
"ecosystem": "npm"
},
{
"name": "@pkgjs/parseargs",
"direct": false,
"version": "0.11.0",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-android-arm64",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-darwin-arm64",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-darwin-x64",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-freebsd-x64",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-arm-gnueabihf",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-arm64-gnu",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-arm64-musl",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-ppc64-gnu",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-s390x-gnu",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-x64-gnu",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-x64-musl",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-openharmony-arm64",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-wasm32-wasi",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-win32-arm64-msvc",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-win32-x64-msvc",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rolldown/pluginutils",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-commonjs",
"direct": false,
"version": "26.0.3",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-commonjs",
"direct": false,
"version": "^26.0.1",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-node-resolve",
"direct": false,
"version": "15.3.1",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-node-resolve",
"direct": false,
"version": "^15.2.3",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-terser",
"direct": false,
"version": "0.4.4",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-terser",
"direct": false,
"version": "^0.4.4",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-typescript",
"direct": false,
"version": "11.1.6",
"ecosystem": "npm"
},
{
"name": "@rollup/plugin-typescript",
"direct": false,
"version": "^11.1.6",
"ecosystem": "npm"
},
{
"name": "@rollup/pluginutils",
"direct": false,
"version": "5.1.4",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-android-arm-eabi",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-android-arm64",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-darwin-arm64",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-darwin-x64",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-freebsd-arm64",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-freebsd-x64",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm-gnueabihf",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm-musleabihf",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm64-gnu",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm64-musl",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-loongarch64-gnu",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-powerpc64le-gnu",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-riscv64-gnu",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-s390x-gnu",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-x64-gnu",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-x64-musl",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-win32-arm64-msvc",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-win32-ia32-msvc",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-win32-x64-msvc",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "@rushstack/node-core-library",
"direct": false,
"version": "5.11.0",
"ecosystem": "npm"
},
{
"name": "@rushstack/rig-package",
"direct": false,
"version": "0.5.3",
"ecosystem": "npm"
},
{
"name": "@rushstack/terminal",
"direct": false,
"version": "0.14.6",
"ecosystem": "npm"
},
{
"name": "@rushstack/ts-command-line",
"direct": false,
"version": "4.23.4",
"ecosystem": "npm"
},
{
"name": "@shikijs/engine-oniguruma",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/types",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/vscode-textmate",
"direct": false,
"version": "10.0.2",
"ecosystem": "npm"
},
{
"name": "@sinclair/typebox",
"direct": false,
"version": "0.27.8",
"ecosystem": "npm"
},
{
"name": "@standard-schema/spec",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "@tsconfig/node10",
"direct": false,
"version": "1.0.11",
"ecosystem": "npm"
},
{
"name": "@tsconfig/node12",
"direct": false,
"version": "1.0.11",
"ecosystem": "npm"
},
{
"name": "@tsconfig/node14",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@tsconfig/node16",
"direct": false,
"version": "1.0.4",
"ecosystem": "npm"
},
{
"name": "@turbo/darwin-64",
"direct": false,
"version": "2.9.18",
"ecosystem": "npm"
},
{
"name": "@turbo/darwin-arm64",
"direct": false,
"version": "2.9.18",
"ecosystem": "npm"
},
{
"name": "@turbo/linux-64",
"direct": false,
"version": "2.9.18",
"ecosystem": "npm"
},
{
"name": "@turbo/linux-arm64",
"direct": false,
"version": "2.9.18",
"ecosystem": "npm"
},
{
"name": "@turbo/windows-64",
"direct": false,
"version": "2.9.18",
"ecosystem": "npm"
},
{
"name": "@turbo/windows-arm64",
"direct": false,
"version": "2.9.18",
"ecosystem": "npm"
},
{
"name": "@tybys/wasm-util",
"direct": false,
"version": "0.10.2",
"ecosystem": "npm"
},
{
"name": "@types/argparse",
"direct": false,
"version": "1.0.38",
"ecosystem": "npm"
},
{
"name": "@types/chai",
"direct": false,
"version": "5.2.3",
"ecosystem": "npm"
},
{
"name": "@types/deep-eql",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "@types/estree",
"direct": false,
"version": "1.0.6",
"ecosystem": "npm"
},
{
"name": "@types/hast",
"direct": false,
"version": "3.0.4",
"ecosystem": "npm"
},
{
"name": "@types/isomorphic-fetch",
"direct": false,
"version": "0.0.35",
"ecosystem": "npm"
},
{
"name": "@types/isomorphic-fetch",
"direct": false,
"version": "^0.0.35",
"ecosystem": "npm"
},
{
"name": "@types/istanbul-lib-coverage",
"direct": false,
"version": "2.0.6",
"ecosystem": "npm"
},
{
"name": "@types/istanbul-lib-report",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "@types/istanbul-reports",
"direct": false,
"version": "3.0.4",
"ecosystem": "npm"
},
{
"name": "@types/jest",
"direct": false,
"version": "29.5.14",
"ecosystem": "npm"
},
{
"name": "@types/json-schema",
"direct": false,
"version": "7.0.15",
"ecosystem": "npm"
},
{
"name": "@types/jsonwebtoken",
"direct": false,
"version": "8.5.9",
"ecosystem": "npm"
},
{
"name": "@types/jsonwebtoken",
"direct": false,
"version": "^8.5.6",
"ecosystem": "npm"
},
{
"name": "@types/jsrsasign",
"direct": false,
"version": "10.5.15",
"ecosystem": "npm"
},
{
"name": "@types/jsrsasign",
"direct": false,
"version": "^10.5.12",
"ecosystem": "npm"
},
{
"name": "@types/jwk-to-pem",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "@types/jwk-to-pem",
"direct": false,
"version": "^2.0.1",
"ecosystem": "npm"
},
{
"name": "@types/mocha",
"direct": false,
"version": "9.1.1",
"ecosystem": "npm"
},
{
"name": "@types/mocha",
"direct": false,
"version": "^9.1.0",
"ecosystem": "npm"
},
{
"name": "@types/node",
"direct": false,
"version": "20.17.17",
"ecosystem": "npm"
},
{
"name": "@types/node",
"direct": false,
"version": "20.19.17",
"ecosystem": "npm"
},
{
"name": "@types/node",
"direct": false,
"version": "24.5.2",
"ecosystem": "npm"
},
{
"name": "@types/node",
"direct": false,
"version": "^20.16.6",
"ecosystem": "npm"
},
{
"name": "@types/resolve",
"direct": false,
"version": "1.20.2",
"ecosystem": "npm"
},
{
"name": "@types/semver",
"direct": false,
"version": "7.5.8",
"ecosystem": "npm"
},
{
"name": "@types/stack-utils",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "@types/unist",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "@types/yargs",
"direct": false,
"version": "17.0.33",
"ecosystem": "npm"
},
{
"name": "@types/yargs-parser",
"direct": false,
"version": "21.0.3",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/eslint-plugin",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/eslint-plugin",
"direct": false,
"version": "^5.19.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/parser",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/parser",
"direct": false,
"version": "^5.19.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/scope-manager",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/type-utils",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/types",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/typescript-estree",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/utils",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@typescript-eslint/visitor-keys",
"direct": false,
"version": "5.62.0",
"ecosystem": "npm"
},
{
"name": "@ungap/structured-clone",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "@vitest/expect",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/mocker",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/pretty-format",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/runner",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/snapshot",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/spy",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/utils",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "acorn",
"direct": false,
"version": "8.14.0",
"ecosystem": "npm"
},
{
"name": "acorn-jsx",
"direct": false,
"version": "5.3.2",
"ecosystem": "npm"
},
{
"name": "acorn-walk",
"direct": false,
"version": "8.3.4",
"ecosystem": "npm"
},
{
"name": "agent-base",
"direct": false,
"version": "7.1.4",
"ecosystem": "npm"
},
{
"name": "ajv",
"direct": false,
"version": "8.20.0",
"ecosystem": "npm"
},
{
"name": "ajv-draft-04",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "ajv-formats",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "ansi-regex",
"direct": false,
"version": "5.0.1",
"ecosystem": "npm"
},
{
"name": "ansi-regex",
"direct": false,
"version": "6.2.2",
"ecosystem": "npm"
},
{
"name": "ansi-styles",
"direct": false,
"version": "4.3.0",
"ecosystem": "npm"
},
{
"name": "ansi-styles",
"direct": false,
"version": "5.2.0",
"ecosystem": "npm"
},
{
"name": "ansi-styles",
"direct": false,
"version": "6.2.3",
"ecosystem": "npm"
},
{
"name": "arg",
"direct": false,
"version": "4.1.3",
"ecosystem": "npm"
},
{
"name": "argparse",
"direct": false,
"version": "1.0.10",
"ecosystem": "npm"
},
{
"name": "argparse",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "array-union",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "assertion-error",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "asynckit",
"direct": false,
"version": "0.4.0",
"ecosystem": "npm"
},
{
"name": "balanced-match",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "brace-expansion",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "braces",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "buffer-from",
"direct": false,
"version": "1.1.2",
"ecosystem": "npm"
},
{
"name": "call-bind-apply-helpers",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "callsites",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "chai",
"direct": false,
"version": "6.2.2",
"ecosystem": "npm"
},
{
"name": "chalk",
"direct": false,
"version": "4.1.2",
"ecosystem": "npm"
},
{
"name": "ci-info",
"direct": false,
"version": "3.9.0",
"ecosystem": "npm"
},
{
"name": "color-convert",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "color-name",
"direct": false,
"version": "1.1.4",
"ecosystem": "npm"
},
{
"name": "combined-stream",
"direct": false,
"version": "1.0.8",
"ecosystem": "npm"
},
{
"name": "commander",
"direct": false,
"version": "2.20.3",
"ecosystem": "npm"
},
{
"name": "commondir",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "convert-source-map",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "create-require",
"direct": false,
"version": "1.1.1",
"ecosystem": "npm"
},
{
"name": "cross-spawn",
"direct": false,
"version": "7.0.6",
"ecosystem": "npm"
},
{
"name": "cssstyle",
"direct": false,
"version": "4.6.0",
"ecosystem": "npm"
},
{
"name": "data-urls",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "debug",
"direct": false,
"version": "4.4.0",
"ecosystem": "npm"
},
{
"name": "decimal.js",
"direct": false,
"version": "10.5.0",
"ecosystem": "npm"
},
{
"name": "deep-is",
"direct": false,
"version": "0.1.4",
"ecosystem": "npm"
},
{
"name": "deepmerge",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "delayed-stream",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "detect-libc",
"direct": false,
"version": "2.1.2",
"ecosystem": "npm"
},
{
"name": "diff",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "diff-sequences",
"direct": false,
"version": "29.6.3",
"ecosystem": "npm"
},
{
"name": "dir-glob",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "doctrine",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "dotenv",
"direct": false,
"version": "16.4.7",
"ecosystem": "npm"
},
{
"name": "dotenv",
"direct": false,
"version": "^16.0.1",
"ecosystem": "npm"
},
{
"name": "dunder-proto",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "eastasianwidth",
"direct": false,
"version": "0.2.0",
"ecosystem": "npm"
},
{
"name": "emoji-regex",
"direct": false,
"version": "8.0.0",
"ecosystem": "npm"
},
{
"name": "emoji-regex",
"direct": false,
"version": "9.2.2",
"ecosystem": "npm"
},
{
"name": "entities",
"direct": false,
"version": "4.5.0",
"ecosystem": "npm"
},
{
"name": "entities",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "es-define-property",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "es-errors",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "es-module-lexer",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "es-object-atoms",
"direct": false,
"version": "1.1.2",
"ecosystem": "npm"
},
{
"name": "es-set-tostringtag",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "escape-string-regexp",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "escape-string-regexp",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "eslint",
"direct": false,
"version": "8.57.1",
"ecosystem": "npm"
},
{
"name": "eslint",
"direct": false,
"version": "^8.13.0",
"ecosystem": "npm"
},
{
"name": "eslint-scope",
"direct": false,
"version": "5.1.1",
"ecosystem": "npm"
},
{
"name": "eslint-scope",
"direct": false,
"version": "7.2.2",
"ecosystem": "npm"
},
{
"name": "eslint-visitor-keys",
"direct": false,
"version": "3.4.3",
"ecosystem": "npm"
},
{
"name": "espree",
"direct": false,
"version": "9.6.1",
"ecosystem": "npm"
},
{
"name": "esquery",
"direct": false,
"version": "1.6.0",
"ecosystem": "npm"
},
{
"name": "esrecurse",
"direct": false,
"version": "4.3.0",
"ecosystem": "npm"
},
{
"name": "estraverse",
"direct": false,
"version": "4.3.0",
"ecosystem": "npm"
},
{
"name": "estraverse",
"direct": false,
"version": "5.3.0",
"ecosystem": "npm"
},
{
"name": "estree-walker",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "estree-walker",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "esutils",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "expect",
"direct": false,
"version": "29.7.0",
"ecosystem": "npm"
},
{
"name": "expect-type",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "fast-deep-equal",
"direct": false,
"version": "3.1.3",
"ecosystem": "npm"
},
{
"name": "fast-glob",
"direct": false,
"version": "3.3.3",
"ecosystem": "npm"
},
{
"name": "fast-levenshtein",
"direct": false,
"version": "2.0.6",
"ecosystem": "npm"
},
{
"name": "fast-uri",
"direct": false,
"version": "3.1.2",
"ecosystem": "npm"
},
{
"name": "fastq",
"direct": false,
"version": "1.19.0",
"ecosystem": "npm"
},
{
"name": "fdir",
"direct": false,
"version": "6.5.0",
"ecosystem": "npm"
},
{
"name": "file-entry-cache",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "fill-range",
"direct": false,
"version": "7.1.1",
"ecosystem": "npm"
},
{
"name": "find-up",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "flat-cache",
"direct": false,
"version": "4.0.1",
"ecosystem": "npm"
},
{
"name": "flatted",
"direct": false,
"version": "3.4.2",
"ecosystem": "npm"
},
{
"name": "foreground-child",
"direct": false,
"version": "3.3.1",
"ecosystem": "npm"
},
{
"name": "form-data",
"direct": false,
"version": "4.0.6",
"ecosystem": "npm"
},
{
"name": "fs-extra",
"direct": false,
"version": "11.3.0",
"ecosystem": "npm"
},
{
"name": "fsevents",
"direct": false,
"version": "2.3.3",
"ecosystem": "npm"
},
{
"name": "function-bind",
"direct": false,
"version": "1.1.2",
"ecosystem": "npm"
},
{
"name": "get-intrinsic",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "get-proto",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "glob",
"direct": false,
"version": "10.5.0",
"ecosystem": "npm"
},
{
"name": "glob-parent",
"direct": false,
"version": "5.1.2",
"ecosystem": "npm"
},
{
"name": "glob-parent",
"direct": false,
"version": "6.0.2",
"ecosystem": "npm"
},
{
"name": "globals",
"direct": false,
"version": "13.24.0",
"ecosystem": "npm"
},
{
"name": "globby",
"direct": false,
"version": "11.1.0",
"ecosystem": "npm"
},
{
"name": "gopd",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "graceful-fs",
"direct": false,
"version": "4.2.11",
"ecosystem": "npm"
},
{
"name": "graphemer",
"direct": false,
"version": "1.4.0",
"ecosystem": "npm"
},
{
"name": "has-flag",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "has-symbols",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "has-tostringtag",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "hasown",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "hasown",
"direct": false,
"version": "2.0.4",
"ecosystem": "npm"
},
{
"name": "html-encoding-sniffer",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "http-proxy-agent",
"direct": false,
"version": "7.0.2",
"ecosystem": "npm"
},
{
"name": "https-proxy-agent",
"direct": false,
"version": "7.0.6",
"ecosystem": "npm"
},
{
"name": "iconv-lite",
"direct": false,
"version": "0.6.3",
"ecosystem": "npm"
},
{
"name": "ignore",
"direct": false,
"version": "5.3.2",
"ecosystem": "npm"
},
{
"name": "import-fresh",
"direct": false,
"version": "3.3.1",
"ecosystem": "npm"
},
{
"name": "import-lazy",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "imurmurhash",
"direct": false,
"version": "0.1.4",
"ecosystem": "npm"
},
{
"name": "is-core-module",
"direct": false,
"version": "2.16.1",
"ecosystem": "npm"
},
{
"name": "is-extglob",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "is-fullwidth-code-point",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "is-glob",
"direct": false,
"version": "4.0.3",
"ecosystem": "npm"
},
{
"name": "is-module",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "is-number",
"direct": false,
"version": "7.0.0",
"ecosystem": "npm"
},
{
"name": "is-path-inside",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "is-potential-custom-element-name",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "is-reference",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "isexe",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "isomorphic-fetch",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "isomorphic-fetch",
"direct": false,
"version": "^3.0.0",
"ecosystem": "npm"
},
{
"name": "jackspeak",
"direct": false,
"version": "3.4.3",
"ecosystem": "npm"
},
{
"name": "jest-diff",
"direct": false,
"version": "29.7.0",
"ecosystem": "npm"
},
{
"name": "jest-get-type",
"direct": false,
"version": "29.6.3",
"ecosystem": "npm"
},
{
"name": "jest-matcher-utils",
"direct": false,
"version": "29.7.0",
"ecosystem": "npm"
},
{
"name": "jest-message-util",
"direct": false,
"version": "29.7.0",
"ecosystem": "npm"
},
{
"name": "jest-util",
"direct": false,
"version": "29.7.0",
"ecosystem": "npm"
},
{
"name": "jju",
"direct": false,
"version": "1.4.0",
"ecosystem": "npm"
},
{
"name": "js-tokens",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "js-yaml",
"direct": false,
"version": "4.1.1",
"ecosystem": "npm"
},
{
"name": "jsdom",
"direct": false,
"version": "25.0.1",
"ecosystem": "npm"
},
{
"name": "jsdom",
"direct": false,
"version": "^25.0.0",
"ecosystem": "npm"
},
{
"name": "json-buffer",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "json-schema-traverse",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "json-stable-stringify-without-jsonify",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "jsonc-parser",
"direct": false,
"version": "3.3.1",
"ecosystem": "npm"
},
{
"name": "jsonfile",
"direct": false,
"version": "6.1.0",
"ecosystem": "npm"
},
{
"name": "keyv",
"direct": false,
"version": "4.5.4",
"ecosystem": "npm"
},
{
"name": "levn",
"direct": false,
"version": "0.4.1",
"ecosystem": "npm"
},
{
"name": "lightningcss",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-android-arm64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-darwin-arm64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-darwin-x64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-freebsd-x64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-arm-gnueabihf",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-arm64-gnu",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-arm64-musl",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-x64-gnu",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-x64-musl",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-win32-arm64-msvc",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-win32-x64-msvc",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "linkify-it",
"direct": false,
"version": "5.0.1",
"ecosystem": "npm"
},
{
"name": "locate-path",
"direct": false,
"version": "6.0.0",
"ecosystem": "npm"
},
{
"name": "lodash",
"direct": false,
"version": "4.18.1",
"ecosystem": "npm"
},
{
"name": "lodash.merge",
"direct": false,
"version": "4.6.2",
"ecosystem": "npm"
},
{
"name": "lru-cache",
"direct": false,
"version": "10.4.3",
"ecosystem": "npm"
},
{
"name": "lru-cache",
"direct": false,
"version": "6.0.0",
"ecosystem": "npm"
},
{
"name": "lunr",
"direct": false,
"version": "2.3.9",
"ecosystem": "npm"
},
{
"name": "magic-string",
"direct": false,
"version": "0.30.17",
"ecosystem": "npm"
},
{
"name": "magic-string",
"direct": false,
"version": "0.30.21",
"ecosystem": "npm"
},
{
"name": "make-error",
"direct": false,
"version": "1.3.6",
"ecosystem": "npm"
},
{
"name": "markdown-it",
"direct": false,
"version": "14.2.0",
"ecosystem": "npm"
},
{
"name": "math-intrinsics",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "mdurl",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "merge2",
"direct": false,
"version": "1.4.1",
"ecosystem": "npm"
},
{
"name": "micromatch",
"direct": false,
"version": "4.0.8",
"ecosystem": "npm"
},
{
"name": "mime-db",
"direct": false,
"version": "1.52.0",
"ecosystem": "npm"
},
{
"name": "mime-types",
"direct": false,
"version": "2.1.35",
"ecosystem": "npm"
},
{
"name": "minimatch",
"direct": false,
"version": "3.1.5",
"ecosystem": "npm"
},
{
"name": "minimatch",
"direct": false,
"version": "9.0.9",
"ecosystem": "npm"
},
{
"name": "minipass",
"direct": false,
"version": "7.1.3",
"ecosystem": "npm"
},
{
"name": "ms",
"direct": false,
"version": "2.1.3",
"ecosystem": "npm"
},
{
"name": "nanoid",
"direct": false,
"version": "3.3.12",
"ecosystem": "npm"
},
{
"name": "natural-compare",
"direct": false,
"version": "1.4.0",
"ecosystem": "npm"
},
{
"name": "natural-compare-lite",
"direct": false,
"version": "1.4.0",
"ecosystem": "npm"
},
{
"name": "node-fetch",
"direct": false,
"version": "2.7.0",
"ecosystem": "npm"
},
{
"name": "nswag",
"direct": false,
"version": "14.2.0",
"ecosystem": "npm"
},
{
"name": "nswag",
"direct": false,
"version": "^14.1.0",
"ecosystem": "npm"
},
{
"name": "nwsapi",
"direct": false,
"version": "2.2.16",
"ecosystem": "npm"
},
{
"name": "obug",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "optionator",
"direct": false,
"version": "0.9.4",
"ecosystem": "npm"
},
{
"name": "p-limit",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "p-locate",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "package-json-from-dist",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "parent-module",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "parse5",
"direct": false,
"version": "7.3.0",
"ecosystem": "npm"
},
{
"name": "path-exists",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "path-key",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "path-parse",
"direct": false,
"version": "1.0.7",
"ecosystem": "npm"
},
{
"name": "path-scurry",
"direct": false,
"version": "1.11.1",
"ecosystem": "npm"
},
{
"name": "path-type",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "pathe",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "picocolors",
"direct": false,
"version": "1.1.1",
"ecosystem": "npm"
},
{
"name": "picomatch",
"direct": false,
"version": "2.3.1",
"ecosystem": "npm"
},
{
"name": "picomatch",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "picomatch",
"direct": false,
"version": "4.0.4",
"ecosystem": "npm"
},
{
"name": "postcss",
"direct": false,
"version": "8.5.15",
"ecosystem": "npm"
},
{
"name": "prelude-ls",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "prettier",
"direct": false,
"version": "3.6.2",
"ecosystem": "npm"
},
{
"name": "pretty-format",
"direct": false,
"version": "29.7.0",
"ecosystem": "npm"
},
{
"name": "punycode",
"direct": false,
"version": "2.3.1",
"ecosystem": "npm"
},
{
"name": "punycode.js",
"direct": false,
"version": "2.3.1",
"ecosystem": "npm"
},
{
"name": "queue-microtask",
"direct": false,
"version": "1.2.3",
"ecosystem": "npm"
},
{
"name": "react-is",
"direct": false,
"version": "18.3.1",
"ecosystem": "npm"
},
{
"name": "require-from-string",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "resolve",
"direct": false,
"version": "1.22.10",
"ecosystem": "npm"
},
{
"name": "resolve-from",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "reusify",
"direct": false,
"version": "1.0.4",
"ecosystem": "npm"
},
{
"name": "rolldown",
"direct": false,
"version": "1.0.0-rc.17",
"ecosystem": "npm"
},
{
"name": "rollup",
"direct": false,
"version": "4.34.3",
"ecosystem": "npm"
},
{
"name": "rollup",
"direct": false,
"version": "^4.24.0",
"ecosystem": "npm"
},
{
"name": "rrweb-cssom",
"direct": false,
"version": "0.7.1",
"ecosystem": "npm"
},
{
"name": "rrweb-cssom",
"direct": false,
"version": "0.8.0",
"ecosystem": "npm"
},
{
"name": "run-parallel",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "safer-buffer",
"direct": false,
"version": "2.1.2",
"ecosystem": "npm"
},
{
"name": "saxes",
"direct": false,
"version": "6.0.0",
"ecosystem": "npm"
},
{
"name": "semver",
"direct": false,
"version": "7.5.4",
"ecosystem": "npm"
},
{
"name": "semver",
"direct": false,
"version": "7.7.1",
"ecosystem": "npm"
},
{
"name": "serialize-javascript",
"direct": false,
"version": "7.0.5",
"ecosystem": "npm"
},
{
"name": "shebang-command",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "shebang-regex",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "siginfo",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "signal-exit",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "slash",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "smob",
"direct": false,
"version": "1.5.0",
"ecosystem": "npm"
},
{
"name": "source-map",
"direct": false,
"version": "0.6.1",
"ecosystem": "npm"
},
{
"name": "source-map-js",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "source-map-support",
"direct": false,
"version": "0.5.21",
"ecosystem": "npm"
},
{
"name": "sprintf-js",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "stack-utils",
"direct": false,
"version": "2.0.6",
"ecosystem": "npm"
},
{
"name": "stackback",
"direct": false,
"version": "0.0.2",
"ecosystem": "npm"
},
{
"name": "std-env",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "string-argv",
"direct": false,
"version": "0.3.2",
"ecosystem": "npm"
},
{
"name": "string-width",
"direct": false,
"version": "4.2.3",
"ecosystem": "npm"
},
{
"name": "string-width",
"direct": false,
"version": "5.1.2",
"ecosystem": "npm"
},
{
"name": "strip-ansi",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "strip-ansi",
"direct": false,
"version": "7.2.0",
"ecosystem": "npm"
},
{
"name": "strip-json-comments",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "supports-color",
"direct": false,
"version": "7.2.0",
"ecosystem": "npm"
},
{
"name": "supports-color",
"direct": false,
"version": "8.1.1",
"ecosystem": "npm"
},
{
"name": "supports-preserve-symlinks-flag",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "symbol-tree",
"direct": false,
"version": "3.2.4",
"ecosystem": "npm"
},
{
"name": "terser",
"direct": false,
"version": "5.38.0",
"ecosystem": "npm"
},
{
"name": "text-table",
"direct": false,
"version": "0.2.0",
"ecosystem": "npm"
},
{
"name": "tinybench",
"direct": false,
"version": "2.9.0",
"ecosystem": "npm"
},
{
"name": "tinyexec",
"direct": false,
"version": "1.1.2",
"ecosystem": "npm"
},
{
"name": "tinyglobby",
"direct": false,
"version": "0.2.17",
"ecosystem": "npm"
},
{
"name": "tinyrainbow",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "tldts",
"direct": false,
"version": "6.1.86",
"ecosystem": "npm"
},
{
"name": "tldts-core",
"direct": false,
"version": "6.1.86",
"ecosystem": "npm"
},
{
"name": "to-regex-range",
"direct": false,
"version": "5.0.1",
"ecosystem": "npm"
},
{
"name": "tough-cookie",
"direct": false,
"version": "5.1.2",
"ecosystem": "npm"
},
{
"name": "tr46",
"direct": false,
"version": "0.0.3",
"ecosystem": "npm"
},
{
"name": "tr46",
"direct": false,
"version": "5.1.1",
"ecosystem": "npm"
},
{
"name": "ts-node",
"direct": false,
"version": "10.9.2",
"ecosystem": "npm"
},
{
"name": "ts-node",
"direct": false,
"version": "^10.4.0",
"ecosystem": "npm"
},
{
"name": "tslib",
"direct": false,
"version": "1.14.1",
"ecosystem": "npm"
},
{
"name": "tslib",
"direct": false,
"version": "2.8.1",
"ecosystem": "npm"
},
{
"name": "tslib",
"direct": false,
"version": "^2.3.1",
"ecosystem": "npm"
},
{
"name": "tslib",
"direct": false,
"version": "^2.6.3",
"ecosystem": "npm"
},
{
"name": "tsutils",
"direct": false,
"version": "3.21.0",
"ecosystem": "npm"
},
{
"name": "turbo",
"direct": false,
"version": "2.9.18",
"ecosystem": "npm"
},
{
"name": "type-check",
"direct": false,
"version": "0.4.0",
"ecosystem": "npm"
},
{
"name": "type-fest",
"direct": false,
"version": "0.20.2",
"ecosystem": "npm"
},
{
"name": "typedoc",
"direct": false,
"version": "0.27.9",
"ecosystem": "npm"
},
{
"name": "typescript",
"direct": false,
"version": "4.9.5",
"ecosystem": "npm"
},
{
"name": "typescript",
"direct": false,
"version": "5.7.2",
"ecosystem": "npm"
},
{
"name": "typescript",
"direct": false,
"version": "5.9.2",
"ecosystem": "npm"
},
{
"name": "typescript",
"direct": false,
"version": "^4.5.4",
"ecosystem": "npm"
},
{
"name": "typescript",
"direct": false,
"version": "^4.5.5",
"ecosystem": "npm"
},
{
"name": "uc.micro",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "undici-types",
"direct": false,
"version": "6.19.8",
"ecosystem": "npm"
},
{
"name": "undici-types",
"direct": false,
"version": "6.21.0",
"ecosystem": "npm"
},
{
"name": "undici-types",
"direct": false,
"version": "7.12.0",
"ecosystem": "npm"
},
{
"name": "universalify",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "v8-compile-cache-lib",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "vite",
"direct": false,
"version": "8.0.10",
"ecosystem": "npm"
},
{
"name": "vitest",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "vitest",
"direct": false,
"version": "^4.1.6",
"ecosystem": "npm"
},
{
"name": "w3c-xmlserializer",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "webidl-conversions",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "webidl-conversions",
"direct": false,
"version": "7.0.0",
"ecosystem": "npm"
},
{
"name": "whatwg-encoding",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "whatwg-fetch",
"direct": false,
"version": "3.6.20",
"ecosystem": "npm"
},
{
"name": "whatwg-mimetype",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "whatwg-url",
"direct": false,
"version": "14.2.0",
"ecosystem": "npm"
},
{
"name": "whatwg-url",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "which",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "why-is-node-running",
"direct": false,
"version": "2.3.0",
"ecosystem": "npm"
},
{
"name": "word-wrap",
"direct": false,
"version": "1.2.5",
"ecosystem": "npm"
},
{
"name": "wrap-ansi",
"direct": false,
"version": "7.0.0",
"ecosystem": "npm"
},
{
"name": "wrap-ansi",
"direct": false,
"version": "8.1.0",
"ecosystem": "npm"
},
{
"name": "ws",
"direct": false,
"version": "8.21.0",
"ecosystem": "npm"
},
{
"name": "xml-name-validator",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "xmlchars",
"direct": false,
"version": "2.2.0",
"ecosystem": "npm"
},
{
"name": "yallist",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "yaml",
"direct": false,
"version": "2.9.0",
"ecosystem": "npm"
},
{
"name": "yn",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "yocto-queue",
"direct": false,
"version": "0.1.0",
"ecosystem": "npm"
}
],
"collected": true,
"truncated": false,
"total_count": 465,
"direct_count": 4,
"indirect_count": 461
}
},
"maintainership": {
"issues": {
"open_prs": 3,
"merged_prs": 44,
"open_issues": 3,
"closed_ratio": 0,
"closed_issues": 0,
"closed_unmerged_prs": 17
},
"bus_factor": 2,
"bot_contributors": 1,
"top_contributors": [
{
"type": "User",
"login": "bzajzon-laserfiche",
"commits": 61,
"avatar_url": "https://avatars.githubusercontent.com/u/96151358?v=4"
},
{
"type": "User",
"login": "alexgomezlf",
"commits": 43,
"avatar_url": "https://avatars.githubusercontent.com/u/99926015?v=4"
},
{
"type": "User",
"login": "shiyuanzhao-lf",
"commits": 42,
"avatar_url": "https://avatars.githubusercontent.com/u/124083188?v=4"
},
{
"type": "User",
"login": "turbobot-temp",
"commits": 3,
"avatar_url": "https://avatars.githubusercontent.com/u/145653950?v=4"
},
{
"type": "User",
"login": "daniel-derzsi-codespring",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/233241412?v=4"
}
],
"contributors_sampled": 5,
"top_contributor_share": 0.407
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"generate-client.yml",
"main.yml",
"veracode-scan.yml"
],
"has_docs_dir": false,
"linter_configs": [
".eslintrc"
],
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"pnpm-lock.yaml"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 4,
"reason": "branch protection is not maximal on development and all release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 10,
"reason": "6 out of 6 merged PRs checked by a CI test -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 10,
"reason": "all changesets reviewed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 0,
"reason": "project has 0 contributing companies or organizations -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 10,
"reason": "SAST tool is run on all commits",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": null,
"reason": "no releases found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 0,
"reason": "12 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "7a18a529e21fd384687f5ddf04e488585c1959a1",
"ran_at": "2026-07-23T00:12:53Z",
"aggregate_score": 5.7,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-20T17:12:55Z",
"oldest_open_prs": [
{
"number": 34,
"created_at": "2026-02-26T22:00:45Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 38,
"created_at": "2026-03-02T15:23:52Z",
"last_comment_at": "2026-03-02T15:41:53Z",
"last_comment_author": "daniel-derzsi-codespring"
},
{
"number": 43,
"created_at": "2026-05-02T05:20:17Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2026-07-20T15:56:15Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": [
{
"number": 26,
"created_at": "2025-06-20T18:43:14Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 37,
"created_at": "2026-03-02T14:28:30Z",
"last_comment_at": "2026-03-02T17:14:11Z",
"last_comment_author": "daniel-derzsi-codespring"
},
{
"number": 64,
"created_at": "2026-06-25T15:36:24Z",
"last_comment_at": null,
"last_comment_author": null
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/Laserfiche/lf-api-js",
"host": "github.com",
"name": "lf-api-js",
"owner": "Laserfiche"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 57,
"inputs": {
"security": 66,
"vitality": 47,
"community": 40,
"governance": 60,
"engineering": 72
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "at_risk",
"name": "Vitality",
"value": 47,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "good",
"name": "Development activity",
"note": null,
"notes": [],
"value": 78,
"inputs": {
"commits_last_year": 166,
"human_commit_share": 0.99,
"days_since_last_push": 2,
"active_weeks_last_year": 20
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 2 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 2
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "20/52 weeks with commits",
"points": 13.8,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 20
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "166 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 166
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "critical",
"name": "Release discipline",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 1,
"inputs": {
"releases_count": 0
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "no releases published",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_releases_published",
"params": {}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "no releases",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_releases",
"params": {}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "no releases",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_releases",
"params": {}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 2,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 2 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 2
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "at_risk",
"name": "Community & Adoption",
"value": 40,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 1,
"inputs": {
"forks": 2,
"stars": 0,
"watchers": 1,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "0 stars",
"points": 0,
"status": "missed",
"details": [
{
"code": "stars",
"params": {
"count": 0
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "2 forks",
"points": 0,
"status": "missed",
"details": [
{
"code": "forks",
"params": {
"count": 2
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "1 watchers",
"points": 0,
"status": "missed",
"details": [
{
"code": "watchers",
"params": {
"count": 1
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "moderate",
"name": "Community health",
"note": null,
"notes": [],
"value": 65,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": false,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (MIT)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "MIT"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 13.5,
"status": "met",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
},
{
"key": "ecosystem_adoption",
"band": "moderate",
"name": "Ecosystem adoption (downloads)",
"note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"registry_dependents"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 68,
"inputs": {
"packages": [
"@laserfiche/lf-api-js",
"@laserfiche/lf-js-utils",
"@laserfiche/lf-api-client-core",
"@laserfiche/lf-repository-api-client",
"@laserfiche/lf-repository-api-client-v2"
],
"dependents": null,
"ecosystems": "npm",
"total_downloads": null,
"monthly_downloads": 11519
},
"components": [
{
"key": "monthly_downloads",
"name": "Monthly downloads",
"detail": "11,519 downloads/month across npm",
"points": 54.2,
"status": "partial",
"details": [
{
"code": "downloads_monthly",
"params": {
"count": 11519,
"ecosystems": "npm"
}
}
],
"max_points": 80
},
{
"key": "registry_dependents",
"name": "Registry dependents",
"detail": "not reported by this ecosystem",
"points": 0,
"status": "excluded",
"details": [
{
"code": "not_reported_by_this_ecosystem",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 60,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "at_risk",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 45,
"inputs": {
"bus_factor": 2,
"contributors_sampled": 5,
"top_contributor_share": 0.407
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "2 contributor(s) cover half of all commits",
"points": 25.2,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 2
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 41% of commits",
"points": 13.3,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 41
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "5 contributors",
"points": 6.8,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 5
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 0 contributing companies or organizations -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "at_risk",
"name": "Issue & PR responsiveness",
"note": null,
"notes": [],
"value": 43,
"inputs": {
"merged_prs": 44,
"open_issues": 3,
"closed_issues": 0,
"issue_closed_ratio": 0,
"closed_unmerged_prs": 17
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "0% of issues closed",
"points": 0,
"status": "missed",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 0
}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "44/61 decided PRs merged",
"points": 27.6,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 44,
"decided": 61
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "all changesets reviewed",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "moderate",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 64,
"inputs": {
"followers": 46,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "Laserfiche",
"public_repos": 21,
"account_age_days": 3170
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "46 followers of Laserfiche",
"points": 12,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 46,
"login": "Laserfiche"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "21 public repos, account ~8 yr old",
"points": 21.8,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 21
}
},
{
"code": "account_age_years",
"params": {
"years": 8
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"@laserfiche/lf-api-js",
"@laserfiche/lf-js-utils",
"@laserfiche/lf-api-client-core",
"@laserfiche/lf-repository-api-client",
"@laserfiche/lf-repository-api-client-v2"
],
"ecosystems": "npm",
"any_deprecated": false,
"min_days_since_publish": 5
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "5 package(s) on npm",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 5,
"ecosystems": "npm"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 5 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 5
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "140 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 140
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "good",
"name": "Engineering Quality",
"value": 72,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "good",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 84,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "3 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 3
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": ".eslintrc",
"points": 16,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".eslintrc"
}
}
],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "6 out of 6 merged PRs checked by a CI test -- score normalized to 10",
"points": 20,
"status": "met",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "moderate",
"name": "Documentation",
"note": null,
"notes": [],
"value": 55,
"inputs": {
"topics": [],
"has_wiki": false,
"homepage": "https://developer.laserfiche.com/",
"has_readme": true,
"has_docs_dir": false,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://developer.laserfiche.com/",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "moderate",
"name": "Security",
"value": 66,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "moderate",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Packaging, Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"packaging",
"signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 57,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 16,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 2,
"scorecard_aggregate": 5.7
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection is not maximal on development and all release branches",
"points": 3,
"status": "partial",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "6 out of 6 merged PRs checked by a CI test -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "all changesets reviewed",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 0 contributing companies or organizations -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is run on all commits",
"points": 5,
"status": "met",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "12 existing vulnerabilities detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 438 resolved dependencies against OSV; 27 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories",
"no_advisories_left_outstanding"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 438
}
},
{
"code": "advisories_unassessed",
"params": {
"count": 27
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 100,
"inputs": {
"source": "osv",
"advisories": 14,
"affected_packages": 9,
"assessed_packages": 438,
"unassessed_packages": 27,
"affected_by_severity": "critical 1, high 7, moderate 1",
"direct_affected_packages": 0
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "no direct dependency carries a known advisory",
"points": 35,
"status": "met",
"details": [
{
"code": "no_direct_advisories",
"params": {}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory carries a publication date",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_no_publication_date",
"params": {}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 438,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 1
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "good",
"name": "AI Readiness",
"value": 75,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "good",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 84,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.727,
"agent_instruction_files": [
".github/copilot-instructions.md",
"AGENTS.md"
],
"agent_instruction_max_bytes": 602
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": ".github/copilot-instructions.md, AGENTS.md",
"points": 45,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".github/copilot-instructions.md, AGENTS.md"
}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "72 of 99 human commits state their intent (structured subject or explanatory body)",
"points": 38.8,
"status": "partial",
"details": [
{
"code": "legible_history",
"params": {
"legible": 72,
"sampled": 99
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "good",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 72,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"pnpm-lock.yaml"
],
"has_dockerfile": false,
"typed_language": true,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": true,
"typecheck_configs": [
"packages/lf-api-client-core-js/tsconfig.json",
"packages/lf-api-js/tsconfig.json",
"packages/lf-js-utils/tsconfig.json",
"packages/lf-repository-api-client-v1/tsconfig.json",
"packages/lf-repository-api-client-v2/tsconfig.json",
"tsconfig.json"
],
"agent_commit_share": 0.12,
"toolchain_manifests": [],
"dependency_bot_commit_share": 0.01
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": ".eslintrc",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".eslintrc"
}
}
],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "packages/lf-api-client-core-js/tsconfig.json, packages/lf-api-js/tsconfig.json, packages/lf-js-utils/tsconfig.json, packages/lf-repository-api-client-v1/tsconfig.json, packages/lf-repository-api-client-v2/tsconfig.json, tsconfig.json",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "packages/lf-api-client-core-js/tsconfig.json, packages/lf-api-js/tsconfig.json, packages/lf-js-utils/tsconfig.json, packages/lf-repository-api-client-v1/tsconfig.json, packages/lf-repository-api-client-v2/tsconfig.json, tsconfig.json"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "12 of the last 100 commits agent-authored or agent-credited",
"points": 10,
"status": "met",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 12,
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "1 of the last 100 commits are automated dependency updates",
"points": 8,
"status": "met",
"details": [
{
"code": "dependency_bot_commits",
"params": {
"count": 1,
"sampled": 100
}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "excellent",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 98,
"inputs": {
"primary_language": "TypeScript",
"largest_source_bytes": 1623069,
"source_files_sampled": 148,
"oversized_source_files": 4
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "TypeScript (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "TypeScript"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "4/148 source files over 60KB",
"points": 53.5,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 148,
"oversized": 4
}
}
],
"max_points": 55
}
]
},
{
"key": "ai_interfaces",
"band": "at_risk",
"name": "Machine-readable interfaces",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"example_dirs": [],
"has_mcp_signal": false,
"api_schema_files": [
"packages/lf-repository-api-client-v1/generate-client/swagger.json",
"packages/lf-repository-api-client-v2/generate-client/swagger.json"
]
},
"components": [
{
"key": "api_schema_openapi_graphql_proto",
"name": "API schema (OpenAPI/GraphQL/proto)",
"detail": "packages/lf-repository-api-client-v1/generate-client/swagger.json, packages/lf-repository-api-client-v2/generate-client/swagger.json",
"points": 40,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "packages/lf-repository-api-client-v1/generate-client/swagger.json, packages/lf-repository-api-client-v2/generate-client/swagger.json"
}
}
],
"max_points": 40
},
{
"key": "mcp_server",
"name": "MCP server",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "runnable_examples",
"name": "Runnable examples",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 40
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"deps.dev does not index npm:@laserfiche/lf-api-js@1.3.0; advisories assessed against the repository dependency graph instead"
],
"report_type": "repository",
"generated_at": "2026-07-23T00:13:10.015147Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/l/Laserfiche/lf-api-js.svg",
"full_name": "Laserfiche/lf-api-js",
"license_state": "standard",
"license_spdx": "MIT"
}