Public record
Software health reportschema 0.26.0 · metrics 1.13.0 · 2026-07-22 18:53 UTC

LayeredCraft / aws-secrets-manager-provider

AWS Secrets Manager Configuration Provider

C#Custom license★ 11 stars⑂ 2 forkssince May 2025View on GitHub ↗

LayeredCraft/aws-secrets-manager-provider holds a health index of 59 out of 100, placing it in the Moderate band. It scores highest on Vitality (77/100) and lowest on Sustainability & Governance (50/100). It was last updated today. A single contributor accounts for most of its recent work.

59
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

59
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

LayeredCraftOrganization
1 follower17 public repossince May 2025

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publishTags
NuGetAWSSecretsManager.Provider1.2.1.27-18109 days agoawssecretsmanagerconfigurationsecretsproviderdotnetextension

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

77Good · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
9.7/36Commit cadence — 14/52 weeks with commits
12.1/18Commit volume — 21 commits in the last year
3/10OpenSSF Scorecard: Maintained — 4 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 3
Inputs used
commits_last_year21
human_commit_share0.946
days_since_last_push0
active_weeks_last_year14

Release discipline

100Excellent
How it's scored
27/27Ships releases — 31 releases published
36/36Release recency — latest release 26 days ago
27/27Release cadence — a release every ~18.7 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count31
latest_release_tagv1.3.3
releases_from_tagsno
days_since_latest_release26
mean_days_between_releases18.7
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

55Moderate · 18% of overall
How it's scored
16.2/60Stars — 11 stars
0/25Forks — 2 forks
0/15Watchers — 2 watchers
Inputs used
forks2
stars11
watchers2
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

Community health

86Excellent
How it's scored
22.5/22.5README
16.9/22.5License — license file present, not a recognized license
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateyes
How it's scored
59/80Total downloads — 478,503 downloads all-time across nuget
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesAWSSecretsManager.Provider
dependents
ecosystemsnuget
total_downloads478,503
monthly_downloads
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

50Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0.7/22.5Commit distribution — top contributor authored 97% of commits
2.7/13.5Contributor breadth — 2 contributors
3/10OpenSSF Scorecard: Contributors — project has 1 contributing companies or organizations -- score normalized to 3
Inputs used
bus_factor1
contributors_sampled2
top_contributor_share0.971
How it's scored
46.8/46.8Issue resolution — 100% of issues closed
11.3/38.3PR acceptance — 31/105 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 2/28 approved changesets -- score normalized to 0
Inputs used
merged_prs31
open_issues0
closed_issues2
issue_closed_ratio1
closed_unmerged_prs74
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
2.2/25Owner reach — 1 followers of LayeredCraft
11.5/25Track record — 17 public repos, account ~1 yr old
Inputs used
followers1
owner_typeOrganization
is_verified
owner_loginLayeredCraft
public_repos17
account_age_days427
How it's scored
25/25Published & resolvable — 1 package(s) on nuget
35/35Publish recency — latest publish 109 days ago
20/20Version history — 18 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesAWSSecretsManager.Provider
ecosystemsnuget
any_deprecatedno
min_days_since_publish109

Engineering Quality

Are baseline engineering and documentation practices in place?

57Moderate · 20% of overall
How it's scored
24/24CI workflows — 6 workflow(s)
24/24Tests present
0/16Linter config
0/9.6Pre-commit hooks
0/6.4.editorconfig
14/20OpenSSF Scorecard: CI-Tests — 22 out of 28 merged PRs checked by a CI test -- score normalized to 7
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configno
has_precommit_configno

Documentation

50Moderate
How it's scored
30/30README
0/25Documentation directory
0/15Documentation / homepage site
10/10Repository description
10/10Topics — 5 topics
0/10Wiki
Inputs used
topicsaws, dotnet, layeredcraft, open-source, serverless
has_wikino
homepage
has_readmeyes
has_docs_dirno
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

53Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
1.8/2.5CI-Tests — 22 out of 28 merged PRs checked by a CI test -- score normalized to 7
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 2/28 approved changesets -- score normalized to 0
0.8/2.5Contributors — project has 1 contributing companies or organizations -- score normalized to 3
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5License — license file detected
2.2/7.5Maintained — 4 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 3
0/5Packaging — no data
0.5/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated15
scorecard_versionv5.5.0
checks_inconclusive3
scorecard_aggregate5.3
Excluded from scoring (no data or not applicable): branch_protection, packaging, signed_releases. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

71Good · 0% of overall
How it's scored
45/45Agent instructions — CLAUDE.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 31 of 35 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.886
agent_instruction_filesCLAUDE.md
agent_instruction_max_bytes4,507
How it's scored
12.6/18One-command bootstrap — samples/Sample1/Sample1.csproj, samples/Sample2/Sample2.csproj, samples/Sample3/Sample3.csproj (toolchain convention, no task runner)
22/22Automated tests
0/11Lint / format config
11/11Static type checking — C# (statically typed)
0/10Reproducible environment
10/10Demonstrated agent practice — 17 of the last 37 commits agent-authored or agent-credited
5/8Automated maintenance — dependency automation configured, none observed in the sampled commits
1/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileno
typed_languageyes
bootstrap_files
has_devcontainerno
has_linter_configno
typecheck_configs
agent_commit_share0.459
toolchain_manifestssamples/Sample1/Sample1.csproj, samples/Sample2/Sample2.csproj, samples/Sample3/Sample3.csproj, samples/Sample4/Sample4.csproj, samples/Sample5/Sample5.csproj, samples/Sample6/Sample6.csproj, samples/Sample7/Sample7.csproj, samples/SampleWeb/SampleWeb.csproj, src/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj, tests/AWSSecretsManager.Provider.Tests/AWSSecretsManager.Provider.Tests.csproj
dependency_bot_commit_share0
How it's scored
45/45Type-checkable code — C# (statically typed)
55/55Manageable file sizes — 0/24 source files over 60KB
Inputs used
primary_languageC#
largest_source_bytes30,302
source_files_sampled24
oversized_source_files0
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — samples
Inputs used
example_dirssamples
has_mcp_signalno
api_schema_files

Key facts

11GitHub stars
2contributors
21commits, last 12 months
0days since last push
31releases
1bus factor
0open issues
package ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • No resolved dependencies carried a version and a supported ecosystem

More detail

Star and fork history 0 ★ / 2 ⇿
0Stars
2Forks
5Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

111222212025-102026-012026-03
Major 0Minor 0Patch 0
OpenSSF Scorecard 5.3 / 10
5.3aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-22 18:53 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
7CI-Tests22 out of 28 merged PRs checked by a CI test -- score normalized to 7
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 2/28 approved changesets -- score normalized to 0
3Contributorsproject has 1 contributing companies or organizations -- score normalized to 3
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
3Maintained4 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 3
n/aPackagingpackaging workflow not detected
1Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 1
0SASTSAST tool is not run on all commits -- score normalized to 0
10Security-Policysecurity policy file detected
n/aSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 3
RegistryPackageVersion constraintManifest
NuGetAWSSDK.SecretsManagersrc/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj
NuGetLayeredCraft.StructuredLoggingsrc/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj
NuGetMicrosoft.Extensions.Configurationsrc/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj
All dependencies 15

Full resolved dependency set from the GitHub dependency graph: 3 direct and 12 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
NuGetAWSSDK.SecretsManagerdirect
NuGetLayeredCraft.StructuredLoggingdirect
NuGetMicrosoft.Extensions.Configurationdirect
NuGetAutoFixtureindirect
NuGetAutoFixture.AutoNSubstituteindirect
NuGetAutoFixture.Xunit3indirect
NuGetAwesomeAssertionsindirect
NuGetMicrosoft.Extensions.Loggingindirect
NuGetMicrosoft.Extensions.Logging.Abstractionsindirect
NuGetMicrosoft.Extensions.Logging.Consoleindirect
NuGetMicrosoft.NET.Test.Sdkindirect
NuGetMicrosoft.Testing.Extensions.CodeCoverageindirect
NuGetNSubstituteindirect
NuGetxunit.runner.visualstudioindirect
NuGetxunit.v3.mtp-v2indirect
Dependency advisories not assessed

Advisory matching could not run for this report: No resolved dependencies carried a version and a supported ecosystem

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "aws",
        "dotnet",
        "layeredcraft",
        "open-source",
        "serverless"
      ],
      "is_fork": false,
      "size_kb": 584,
      "has_wiki": false,
      "homepage": null,
      "languages": {
        "C#": 90231
      },
      "pushed_at": "2026-07-22T17:12:04Z",
      "created_at": "2025-05-08T17:11:27Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-22T17:05:45Z",
      "description": "AWS Secrets Manager Configuration Provider",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "main",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "C#",
      "significant_languages": [
        "C#"
      ]
    },
    "owner": {
      "blog": null,
      "name": null,
      "type": "Organization",
      "login": "LayeredCraft",
      "company": null,
      "location": "United States of America",
      "followers": 1,
      "avatar_url": "https://avatars.githubusercontent.com/u/212735200?v=4",
      "created_at": "2025-05-21T14:02:38Z",
      "is_verified": null,
      "public_repos": 17,
      "account_age_days": 427
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v1.3.3",
          "kind": "patch",
          "published_at": "2026-06-26T12:14:16Z"
        },
        {
          "tag": "v1.3.2",
          "kind": "patch",
          "published_at": "2026-05-14T12:04:13Z"
        },
        {
          "tag": "v1.3.1",
          "kind": "patch",
          "published_at": "2026-04-18T18:25:19Z"
        },
        {
          "tag": "v1.3.0.29",
          "kind": "other",
          "published_at": "2026-04-18T18:13:13Z"
        },
        {
          "tag": "v1.3.0.28",
          "kind": "other",
          "published_at": "2026-04-16T18:55:21Z"
        },
        {
          "tag": "v1.2.1.27",
          "kind": "other",
          "published_at": "2026-04-04T01:13:00Z"
        },
        {
          "tag": "v1.2.0.26",
          "kind": "other",
          "published_at": "2026-03-19T01:46:24Z"
        },
        {
          "tag": "v1.1.9.25",
          "kind": "other",
          "published_at": "2026-02-11T13:21:40Z"
        },
        {
          "tag": "v1.1.8.24",
          "kind": "other",
          "published_at": "2026-02-09T13:49:37Z"
        },
        {
          "tag": "v1.1.7.23",
          "kind": "other",
          "published_at": "2026-01-09T12:42:40Z"
        },
        {
          "tag": "v1.1.6.22",
          "kind": "other",
          "published_at": "2025-11-11T19:53:30Z"
        },
        {
          "tag": "v1.1.5.21",
          "kind": "other",
          "published_at": "2025-10-19T00:39:55Z"
        },
        {
          "tag": "v1.1.4.20",
          "kind": "other",
          "published_at": "2025-10-14T14:44:25Z"
        },
        {
          "tag": "v1.1.3.19",
          "kind": "other",
          "published_at": "2025-09-08T17:04:23Z"
        },
        {
          "tag": "v1.1.2.18",
          "kind": "other",
          "published_at": "2025-09-08T16:39:56Z"
        },
        {
          "tag": "v1.2.0-preview.17",
          "kind": "prerelease",
          "published_at": "2025-09-05T17:38:20Z"
        },
        {
          "tag": "v1.1.2.16",
          "kind": "other",
          "published_at": "2025-08-22T12:30:46Z"
        },
        {
          "tag": "v1.1.1.15",
          "kind": "other",
          "published_at": "2025-07-25T12:52:59Z"
        },
        {
          "tag": "v1.1.1.14",
          "kind": "other",
          "published_at": "2025-07-10T13:28:00Z"
        },
        {
          "tag": "v1.1.0.13",
          "kind": "other",
          "published_at": "2025-06-23T13:45:14Z"
        },
        {
          "tag": "v1.1.0.12",
          "kind": "other",
          "published_at": "2025-06-06T12:26:56Z"
        },
        {
          "tag": "v1.1.0-beta.11",
          "kind": "prerelease",
          "published_at": "2025-06-05T20:32:09Z"
        },
        {
          "tag": "v1.1.0-beta.10",
          "kind": "prerelease",
          "published_at": "2025-06-05T14:22:57Z"
        },
        {
          "tag": "v1.0.2-beta.9",
          "kind": "prerelease",
          "published_at": "2025-06-05T14:18:22Z"
        },
        {
          "tag": "v1.0.1.8",
          "kind": "other",
          "published_at": "2025-05-21T15:36:59Z"
        },
        {
          "tag": "v1.0.1.7",
          "kind": "other",
          "published_at": "2025-05-19T13:06:12Z"
        },
        {
          "tag": "v1.0.1.6",
          "kind": "other",
          "published_at": "2025-05-09T15:24:40Z"
        },
        {
          "tag": "v1.0.1.4",
          "kind": "other",
          "published_at": "2025-05-08T20:14:32Z"
        },
        {
          "tag": "v1.0.1.3",
          "kind": "other",
          "published_at": "2025-05-08T20:07:33Z"
        },
        {
          "tag": "v1.0.0.2",
          "kind": "other",
          "published_at": "2025-05-08T20:01:16Z"
        },
        {
          "tag": "v1.0.0.1",
          "kind": "other",
          "published_at": "2025-05-08T19:51:07Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "5964c88d64ea0c7d220d759c5e792739ea9beef3",
          "body": null,
          "is_bot": false,
          "headline": "ci(github): configure dependabot automation (#107)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-07-22T17:03:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e0c78bab60937dc4f1aa7489e6701fb5e7762619",
          "body": "Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci(github): update devops-templates refs to v10.1",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-06-26T13:14:20Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "cb17188561eaee09bbf621726ae7f603c7ada2b1",
          "body": "…#101)\n\nSplit publish jobs into build (shared template) and push (composite\naction) so OIDC job_workflow_ref matches the NuGet trusted publisher\npolicy. Version-bump-only for pr-build, pr-title-check, release-drafter.\nIncludes package updates from Directory.Packages.props.\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci: upgrade devops-templates to v10.0 with NuGet trusted publishing (…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-06-26T12:12:54Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "4f810b87b5b44ab7707800252af55f0c49e82009",
          "body": "- Bump devops-templates workflows from v8.0 to v8.2\n- Bump AWSSDK.SecretsManager 4.0.4.17 → 4.0.4.21\n- Bump LayeredCraft.StructuredLogging 1.2.0 → 1.2.1\n- Bump Microsoft.Extensions.Logging* 10.0.6 → 10.0.8\n- Bump Microsoft.Extensions.Configuration (net9/10/11 variants)\n- Bump Microsoft.NET.Test.Sdk 18.4.0 → 18.5.1\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(deps): bump NuGet packages and CI workflows to latest (#92)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-05-14T11:55:47Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9183b3bb70bfe80c28af5b90b8692595cea0da4c",
          "body": "… to 1.2.0 (#87)\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(ci): add permissions to pr-title-check and bump StructuredLogging…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-04-18T18:21:45Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "838acf38e1e96e77341414744a2ac3a747459a45",
          "body": "…after (#86)\n\n- Remove build.yaml; replace with publish-preview and publish-release\n- publish-preview triggers on push to main; version from Release Drafter\n- publish-release triggers on GitHub release published event\n- Add release-drafter workflow (standalone for PR labeling/draft updates)\n- Add pr\n[…]\ntle-check workflow\n- Pin all devops-templates references to v8.0\n- Fix pr-build.yaml typo (10.0.xpwd → 10.0.x)\n- Update slnx and README badge\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci(github): migrate to new NuGet publish workflows and add release-dr…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-04-18T18:15:59Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "2f9ce3533d05c68fa666028946175567f91026f1",
          "body": "Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci(github): add release-drafter config to default branch",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-04-18T18:12:03Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "f6523a7de77edf16d241a199c8b1bf1f15140800",
          "body": "* build: add net11 targeting and refresh workflows\n\n* build: bump version prefix to 1.3.0\n\n* ci: restore MTP runner in PR workflow",
          "is_bot": false,
          "headline": "build: add net11 targeting and refresh workflows (#84)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-04-16T18:54:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be2721f53d9f79089708067e298a3b6bf3f5ce30",
          "body": "…ion (#75)\n\nFixes #74. `JsonValueKind.Null` was previously grouped with\n`JsonValueKind.Undefined` and threw `FormatException(\"unsupported json\ntoken\")`. Null JSON properties are now correctly mapped to null\nconfiguration entries. Internal tuple types updated from `(string, string)`\nto `(string, string?)` throughout the fetch/load pipeline.\n\nAlso bumps `VersionPrefix` to 1.2.1 and updates package references.\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix: handle JSON null values in secrets without throwing FormatExcept…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-04-04T01:12:11Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "845654babab6a6020c188820b8380c878e5cfd12",
          "body": "* docs: update README.md [skip ci]\n\n* docs: update .all-contributorsrc [skip ci]\n\n---------\n\nCo-authored-by: allcontributors[bot] <46447321+allcontributors[bot]@users.noreply.github.com>\nCo-authored-by: Nick Cipollina <ncipollina@gmail.com>",
          "is_bot": true,
          "headline": "docs: add ransagy as a contributor for code (#71)",
          "author_name": "allcontributors[bot]",
          "author_login": "allcontributors[bot]",
          "committed_at": "2026-03-19T01:47:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39af212805c49e3082ff01ecf7f38947b94be728",
          "body": "* fix: match secrets by name/partial ARN in batch fetch\n\nAWS Secrets Manager always returns full ARNs in BatchGetSecretValue responses\neven when the caller supplied a short name or partial ARN. The previous\n.Join() on exact ARN equality silently dropped all results in those cases.\n\nReplace with Firs\n[…]\nhen the returned full ARN ends\nwith the supplied string (partial ARN) or equals the secret's Name field\n(short name). Adds three regression tests covering all three input forms.\n\n* Bump version prefix",
          "is_bot": false,
          "headline": "fix: match secrets by name/partial ARN in batch fetch (#67)",
          "author_name": "Ran Sagy",
          "author_login": "ransagy",
          "committed_at": "2026-03-19T01:45:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "54c33d89b57cc4d62deca15f10e5984843e3de47",
          "body": "Update package versions:\n- LayeredCraft.StructuredLogging: 1.1.6.17 → 1.1.7.18\n- Microsoft.Extensions.Logging: 10.0.2 → 10.0.3\n- Microsoft.Extensions.Logging.Abstractions: 10.0.2 → 10.0.3\n- Microsoft.Extensions.Logging.Console: 10.0.2 → 10.0.3\n- Microsoft.Extensions.Configuration (net9.0): 9.0.12 → 9.0.13\n- Microsoft.Extensions.Configuration (net10.0): 10.0.2 → 10.0.3\n\nCo-authored-by: Claude Opus 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(deps): update package references and bump version to 1.1.9 (#60)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-02-11T13:20:33Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "b2d8d82c43eaacb45f6f169a0a33af900ac334e7",
          "body": "* chore: enable central package management and bump version to 1.1.8\n\n* fix: pin Microsoft.NET.Test.Sdk to 18.0.1",
          "is_bot": false,
          "headline": "chore: enable central package management (#58)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-02-09T13:48:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aba978944da848fb87bfa8e10ad6a21d1e4a917e",
          "body": null,
          "is_bot": false,
          "headline": "chore: update package references and bump version to 1.1.7 (#50)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2026-01-08T21:56:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7ad9f12538227c32c8d237e995ca19ced9baefab",
          "body": null,
          "is_bot": false,
          "headline": "chore: update package references and bump version to 1.1.6 (#38)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-11-11T19:52:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "603cea6238e28445ca8be70014f5695c21be43fe",
          "body": "- Add net10.0 target framework to main library and tests\n- Update GitHub Actions workflows to use devops-templates v6.2\n- Add .NET 10.0.x to dotnet-version matrix in CI workflows\n- Update package references:\n  - AWSSDK.SecretsManager: 4.0.1.8 → 4.0.1.9\n  - LayeredCraft.StructuredLogging: 1.1.1.8 → 1\n[…]\nferences by target framework for better compatibility\n- Bump version from 1.1.4 to 1.1.5\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: add .NET 10 support and update package references to v1.1.5 (#37)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-10-19T00:39:00Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "496ebdebc281e06ad5a465f883aafc316a40c440",
          "body": "* chore: update package references and bump version to 1.1.4\n\n* chore: downgrade Microsoft.Testing.Extensions.CodeCoverage and Microsoft.NET.Test.Sdk package versions",
          "is_bot": false,
          "headline": "chore: update package references and bump version to 1.1.4 (#35)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-10-14T14:43:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9c46a57bd4d010670e396a28dab9f85d9fc7cc50",
          "body": "* feat: add comprehensive sample documentation and update to v1.1.3\n\n- Add detailed README.md files for all 8 sample projects with usage examples\n- Create main samples/README.md with overview and quick start guide\n- Update AWSSDK.SecretsManager to 4.0.1.1 (latest version)\n- Increment version to 1.1.\n[…]\niled READMEs and learning progression\n\n🤖 Generated with [Claude Code](https://claude.ai/code)\n\nCo-Authored-By: Claude <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: add comprehensive sample documentation and update to v1.1.3 (#30)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-09-08T17:03:31Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "c3050c4313f139ebf10edbc2d0681141e475ff7e",
          "body": "…ics, tra…\" (#29)\n\nThis reverts commit f18e39155c03ecd8adad01d1638bef483a46559f.",
          "is_bot": false,
          "headline": "Revert \"feat: add comprehensive OpenTelemetry observability with metr…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-09-08T16:39:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f18e39155c03ecd8adad01d1638bef483a46559f",
          "body": "…cing, and AWS region support (#28)\n\n* feat: add OpenTelemetry observability support for AWS Secrets Manager with metrics and tracing\n\n* feat: bump version to 1.2.0-preview with comprehensive documentation and SampleWebOtel\n\n- Bump version from 1.1.2 to 1.2.0-preview for OpenTelemetry features\n- Add\n[…]\ntches actual implementation constants\n\n🤖 Generated with [Claude Code](https://claude.ai/code)\n\nCo-Authored-By: Claude <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: add comprehensive OpenTelemetry observability with metrics, tra…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-09-05T17:37:17Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e3f63a6ca4a10e521605d4fc494100f493a1e5bf",
          "body": "- Update AWSSDK.SecretsManager to 4.0.0.20\n- Update Microsoft.Extensions packages to 9.0.8\n- Update System.Text.Json to 9.0.8\n- Update LayeredCraft.StructuredLogging to 1.1.1.8\n- Update xunit.v3 to 3.0.1 and xunit.runner.visualstudio to 3.1.4\n- Bump version to 1.1.2 in Directory.Build.props\n\n🤖 Generated with [Claude Code](https://claude.ai/code)\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: update packages and bump version to 1.1.2 (#26)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-08-22T12:29:55Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "543c41eade61c1da9046e20aa4703190b2753e10",
          "body": "* feat: update workflows to use multi-framework MTP support\n\n- Point to feature/multi-framework-mtp-support branch in devops-templates\n- Enable proper multi-framework testing for net8.0 and net9.0\n- Support Microsoft Testing Platform with framework-specific execution\n\nThis will test the library agai\n[…]\nease with multi-framework MTP support\n\n🤖 Generated with [Claude Code](https://claude.ai/code)\n\nCo-Authored-By: Claude <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: update packages and enable multi-framework MTP testing (#22)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-07-25T12:52:09Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d64e5f3ccd8bdf13c1ae562932a4954980eb2eb7",
          "body": "…s, and comprehensive XML docs for v1.1.1 (#18)\n\n* feat: update packages, add structured logging with performance metrics, and comprehensive XML docs for v1.1.1\n\n- Update version to 1.1.1 in Directory.Build.props\n- Update NuGet packages to latest versions:\n  - Microsoft.Extensions.Configuration: 9.0\n[…]\nons.Logging packages in Sample7 to 9.0.7\n\n- Microsoft.Extensions.Logging: 9.0.6 → 9.0.7\n- Microsoft.Extensions.Logging.Console: 9.0.6 → 9.0.7\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: update packages, add structured logging with performance metric…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-07-10T13:26:55Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4c9f48db2ddfdc103a946d8e2f12e7632cb0796f",
          "body": "* chore: update package references to latest versions\n\n* chore: add coverlet.collector package for code coverage\n\n* chore: remove coverlet.collector package and update pr-build.yaml to use v5.0",
          "is_bot": false,
          "headline": "chore: update package references to latest versions (#15)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-06-23T13:44:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "904070ede53322276fb55d2763097cb76d360419",
          "body": "* feat: Convert unit tests from NUnit to XUnit v3 with NSubstitute and AwesomeAssertions\n\n- **Test Framework Migration:**\n  - Migrated from NUnit to XUnit v3 (2.0.2)\n  - Replaced Moq with NSubstitute (5.3.0)\n  - Added AwesomeAssertions (9.0.0) for fluent assertions\n  - Updated AutoFixture to work wi\n[…]\nom version\n- Ready for stable release\n\n🤖 Generated with [Claude Code](https://claude.ai/code)\n\nCo-Authored-By: Claude <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: modernize test framework and release v1.1.0 (#11)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-06-06T12:26:05Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d31d9ea0d9f44c4274f2e78843ec4475e0659649",
          "body": "…eAssertions (#10)\n\n* feat: Convert unit tests from NUnit to XUnit v3 with NSubstitute and AwesomeAssertions\n\n- **Test Framework Migration:**\n  - Migrated from NUnit to XUnit v3 (2.0.2)\n  - Replaced Moq with NSubstitute (5.3.0)\n  - Added AwesomeAssertions (9.0.0) for fluent assertions\n  - Updated Au\n[…]\nfiguration for better build isolation\n\n🤖 Generated with [Claude Code](https://claude.ai/code)\n\nCo-Authored-By: Claude <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Convert unit tests from NUnit to XUnit v3 with NSubstitute and Awesom…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-06-05T20:31:11Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "5ebcde7fe9c0bdc52fb76581a5f120aec56eaacc",
          "body": "- Update from 1.0.2-beta to 1.1.0-beta to reflect minor release\n- New logging functionality warrants minor version bump per semantic versioning\n- Beta tag allows for testing before stable 1.1.0 release",
          "is_bot": false,
          "headline": "chore: update version to 1.1.0-beta (#9)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-06-05T14:22:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00ae826c57d013ace3af9e161022cfb3384a93a7",
          "body": "* feat: add comprehensive logging support with ILogger integration\n\n- Added ILogger support to SecretsManagerConfigurationProvider constructor\n- Implemented comprehensive logging at appropriate levels:\n  * Information: Loading, reloading, polling status, key counts\n  * Debug: Batch processing detail\n[…]\noviders\n- ConfigureAwait(false) helps prevent deadlocks in sync contexts\n\nAddresses final GitHub Copilot feedback about async-in-sync pattern\n\n---------\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: Add comprehensive logging support with ILogger integration (#8)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-06-05T14:17:30Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "47b42e481dbeea79981fef88bcfcdef6a8486471",
          "body": "* docs: update README.md [skip ci]\n\n* docs: create .all-contributorsrc [skip ci]\n\n---------\n\nCo-authored-by: allcontributors[bot] <46447321+allcontributors[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "docs: add ncipollina as a contributor for code (#6)",
          "author_name": "allcontributors[bot]",
          "author_login": "allcontributors[bot]",
          "committed_at": "2025-05-22T14:50:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59d72543b1254f899bc50c76f32547d2bd551aa1",
          "body": "* Update dependencies and repository references to LayeredCraft\n\n* Updated icon",
          "is_bot": false,
          "headline": "Feature/move orgs (#5)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-21T15:36:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "91751ebecd205994c16ed3e2326dd18b0c1fcabe",
          "body": "* Add package metadata and resources for AWSSecretsManager.Provider\n\n* Update package references to latest versions",
          "is_bot": false,
          "headline": "Feature/package updates (#4)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-19T13:05:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa321e522fe0cf74ae85a0369c6eea90d274b265",
          "body": "…vider",
          "is_bot": false,
          "headline": "Update README to reflect new NuGet package name AWSSecretsManager.Pro…",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-09T15:23:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ab1426a68863c7c1e91d0a1a145659e2771a9d2",
          "body": null,
          "is_bot": false,
          "headline": "Update README to reflect project name change to AWSSecretsManager",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-09T15:22:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0443f290a6f3f374bac302568b3fb41537338d3a",
          "body": null,
          "is_bot": false,
          "headline": "Rename project and update namespaces to AWSSecretsManager",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-08T20:13:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7e020373c3db8c8d11b5d6c3e8f389cd71f87167",
          "body": null,
          "is_bot": false,
          "headline": "Bump version to 1.0.1 and update acknowledgment in README (#2)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-08T20:06:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bfc8d5ba7fd12653975308a69c2bd5f66a4bf32f",
          "body": "* Add initial project files and configuration for AWS Secrets Manager provider\n\n* Add MIT License to AWSSecretsManagerConfigurationExtensions.txt\n\n* Remove unnecessary property groups and clean up project file\n\n* Remove .NET Framework 4.8 from target frameworks in project file\n\n* Update NOTICE and README for project ownership and enhancements",
          "is_bot": false,
          "headline": "Feature/initial copy (#1)",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-08T19:50:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4c361981b2173c08420b4e026a742c757426973",
          "body": null,
          "is_bot": false,
          "headline": "Initial commit",
          "author_name": "Nick Cipollina",
          "author_login": "ncipollina",
          "committed_at": "2025-05-08T17:11:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 31,
      "commits_last_year": 21,
      "latest_release_at": "2026-06-26T12:14:16Z",
      "latest_release_tag": "v1.3.3",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 14,
      "days_since_latest_release": 26,
      "mean_days_between_releases": 18.7
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 87,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "AWSSecretsManager.Provider",
          "exists": true,
          "license": null,
          "keywords": [
            "aws",
            "secretsmanager",
            "configuration",
            "secrets",
            "provider",
            "dotnet",
            "extension"
          ],
          "ecosystem": "nuget",
          "matches_repo": true,
          "registry_url": "https://www.nuget.org/packages/AWSSecretsManager.Provider",
          "is_deprecated": false,
          "latest_version": "1.2.1.27",
          "repository_url": "https://github.com/LayeredCraft/aws-secrets-manager-provider",
          "versions_count": 18,
          "total_downloads": 478503,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-04-04T01:12:58.770000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 109
        }
      ]
    },
    "popularity": {
      "forks": 2,
      "stars": 11,
      "watchers": 2,
      "fork_history": {
        "days": [
          {
            "date": "2025-10-17",
            "count": 1
          },
          {
            "date": "2026-03-18",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 2,
        "total_forks": 2
      },
      "star_history": null,
      "open_issues_and_prs": 1
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "samples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "samples/Sample1/Sample1.csproj",
        "samples/Sample2/Sample2.csproj",
        "samples/Sample3/Sample3.csproj",
        "samples/Sample4/Sample4.csproj",
        "samples/Sample5/Sample5.csproj",
        "samples/Sample6/Sample6.csproj",
        "samples/Sample7/Sample7.csproj",
        "samples/SampleWeb/SampleWeb.csproj",
        "src/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj",
        "tests/AWSSecretsManager.Provider.Tests/AWSSecretsManager.Provider.Tests.csproj"
      ],
      "largest_source_bytes": 30302,
      "source_files_sampled": 24,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 4507
    },
    "dependencies": {
      "manifests": [],
      "advisories": {
        "error": "No resolved dependencies carried a version and a supported ecosystem",
        "scope": "repository_graph",
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 15,
        "direct_affected_count": 0
      },
      "ecosystems": [],
      "dependencies": [
        {
          "name": "AWSSDK.SecretsManager",
          "manifest": "src/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj",
          "ecosystem": "nuget",
          "version_constraint": null
        },
        {
          "name": "LayeredCraft.StructuredLogging",
          "manifest": "src/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj",
          "ecosystem": "nuget",
          "version_constraint": null
        },
        {
          "name": "Microsoft.Extensions.Configuration",
          "manifest": "src/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj",
          "ecosystem": "nuget",
          "version_constraint": null
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "AWSSDK.SecretsManager",
            "direct": true,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "LayeredCraft.StructuredLogging",
            "direct": true,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "Microsoft.Extensions.Configuration",
            "direct": true,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "AutoFixture",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "AutoFixture.AutoNSubstitute",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "AutoFixture.Xunit3",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "AwesomeAssertions",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "Microsoft.Extensions.Logging",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "Microsoft.Extensions.Logging.Abstractions",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "Microsoft.Extensions.Logging.Console",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "Microsoft.NET.Test.Sdk",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "Microsoft.Testing.Extensions.CodeCoverage",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "NSubstitute",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "xunit.runner.visualstudio",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          },
          {
            "name": "xunit.v3.mtp-v2",
            "direct": false,
            "version": null,
            "ecosystem": "nuget"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 15,
        "direct_count": 3,
        "indirect_count": 12
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 1,
        "merged_prs": 31,
        "open_issues": 0,
        "closed_ratio": 1,
        "closed_issues": 2,
        "closed_unmerged_prs": 74
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "ncipollina",
          "commits": 34,
          "avatar_url": "https://avatars.githubusercontent.com/u/1405469?v=4"
        },
        {
          "type": "User",
          "login": "ransagy",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/6785058?v=4"
        }
      ],
      "contributors_sampled": 2,
      "top_contributor_share": 0.971
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "dependabot-auto-merge.yml",
        "pr-build.yaml",
        "pr-title-check.yaml",
        "publish-preview.yaml",
        "publish-release.yaml",
        "release-drafter.yaml"
      ],
      "has_docs_dir": false,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 7,
            "reason": "22 out of 28 merged PRs checked by a CI test -- score normalized to 7",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 2/28 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 3,
            "reason": "project has 1 contributing companies or organizations -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 3,
            "reason": "4 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 1,
            "reason": "dependency not pinned by hash detected -- score normalized to 1",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "5964c88d64ea0c7d220d759c5e792739ea9beef3",
        "ran_at": "2026-07-22T18:53:19Z",
        "aggregate_score": 5.3,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-22T17:14:14Z",
      "oldest_open_prs": [
        {
          "number": 108,
          "created_at": "2026-07-22T17:12:05Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-07-22T17:04:00Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/LayeredCraft/aws-secrets-manager-provider",
    "host": "github.com",
    "name": "aws-secrets-manager-provider",
    "owner": "LayeredCraft"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 59,
      "inputs": {
        "security": 53,
        "vitality": 77,
        "community": 55,
        "governance": 50,
        "engineering": 57
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 77,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 61,
            "inputs": {
              "commits_last_year": 21,
              "human_commit_share": 0.946,
              "days_since_last_push": 0,
              "active_weeks_last_year": 14
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "14/52 weeks with commits",
                "points": 9.7,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 14
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "21 commits in the last year",
                "points": 12.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 21
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "4 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 31,
              "latest_release_tag": "v1.3.3",
              "releases_from_tags": false,
              "days_since_latest_release": 26,
              "mean_days_between_releases": 18.7
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "31 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 31
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 26 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 26
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~18.7 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 18.7
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 0,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 0 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 55,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 16,
            "inputs": {
              "forks": 2,
              "stars": 11,
              "watchers": 2,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "11 stars",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 11
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "2 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "2 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 86,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "good",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 74,
            "inputs": {
              "packages": [
                "AWSSecretsManager.Provider"
              ],
              "dependents": null,
              "ecosystems": "nuget",
              "total_downloads": 478503,
              "monthly_downloads": null
            },
            "components": [
              {
                "key": "total_downloads",
                "name": "Total downloads",
                "detail": "478,503 downloads all-time across nuget",
                "points": 59,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_total",
                    "params": {
                      "count": 478503,
                      "ecosystems": "nuget"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 50,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 15,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 2,
              "top_contributor_share": 0.971
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 97% of commits",
                "points": 0.7,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 97
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "2 contributors",
                "points": 2.7,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 58,
            "inputs": {
              "merged_prs": 31,
              "open_issues": 0,
              "closed_issues": 2,
              "issue_closed_ratio": 1,
              "closed_unmerged_prs": 74
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "100% of issues closed",
                "points": 46.8,
                "status": "met",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "31/105 decided PRs merged",
                "points": 11.3,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 31,
                      "decided": 105
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 2/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 44,
            "inputs": {
              "followers": 1,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "LayeredCraft",
              "public_repos": 17,
              "account_age_days": 427
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "1 followers of LayeredCraft",
                "points": 2.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 1,
                      "login": "LayeredCraft"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "17 public repos, account ~1 yr old",
                "points": 11.5,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 17
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 1
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "AWSSecretsManager.Provider"
              ],
              "ecosystems": "nuget",
              "any_deprecated": false,
              "min_days_since_publish": 109
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on nuget",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "nuget"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 109 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 109
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "18 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 18
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 57,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 62,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "6 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "22 out of 28 merged PRs checked by a CI test -- score normalized to 7",
                "points": 14,
                "status": "partial",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "topics": [
                "aws",
                "dotnet",
                "layeredcraft",
                "open-source",
                "serverless"
              ],
              "has_wiki": false,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "5 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 5
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 53,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection",
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 53,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 15,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 3,
              "scorecard_aggregate": 5.3
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "22 out of 28 merged PRs checked by a CI test -- score normalized to 7",
                "points": 1.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 2/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "4 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 3",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 0.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 3
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 71,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.886,
              "agent_instruction_files": [
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 4507
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "31 of 35 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 31,
                      "sampled": 35
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 62,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0.459,
              "toolchain_manifests": [
                "samples/Sample1/Sample1.csproj",
                "samples/Sample2/Sample2.csproj",
                "samples/Sample3/Sample3.csproj",
                "samples/Sample4/Sample4.csproj",
                "samples/Sample5/Sample5.csproj",
                "samples/Sample6/Sample6.csproj",
                "samples/Sample7/Sample7.csproj",
                "samples/SampleWeb/SampleWeb.csproj",
                "src/AWSSecretsManager.Provider/AWSSecretsManager.Provider.csproj",
                "tests/AWSSecretsManager.Provider.Tests/AWSSecretsManager.Provider.Tests.csproj"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "samples/Sample1/Sample1.csproj, samples/Sample2/Sample2.csproj, samples/Sample3/Sample3.csproj (toolchain convention, no task runner)",
                "points": 12.6,
                "status": "partial",
                "details": [
                  {
                    "code": "toolchain_convention",
                    "params": {
                      "files": "samples/Sample1/Sample1.csproj, samples/Sample2/Sample2.csproj, samples/Sample3/Sample3.csproj"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "C# (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "C#"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "17 of the last 37 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 17,
                      "sampled": 37
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "dependency automation configured, none observed in the sampled commits",
                "points": 5,
                "status": "partial",
                "details": [
                  {
                    "code": "dependency_bot_config_only",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 1,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "C#",
              "largest_source_bytes": 30302,
              "source_files_sampled": 24,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "C# (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "C#"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/24 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 24,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "samples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "samples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "samples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "No resolved dependencies carried a version and a supported ecosystem"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T18:53:35.450916Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/l/LayeredCraft/aws-secrets-manager-provider.svg",
  "full_name": "LayeredCraft/aws-secrets-manager-provider",
  "license_state": "custom",
  "license_spdx": null
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.26.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsNuGet.