Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-23 22:43 UTC

LegionIO / legion-data

Persistence layer for LegionIO: SQLite, PostgreSQL, and MySQL via Sequel.

RubyApache-2.0★ 1 star⑂ 1 forksince Mar 2026forkView on GitHub ↗

LegionIO/legion-data holds a health index of 60 out of 100, placing it in the Moderate band. It scores highest on Vitality (81/100) and lowest on Community & Adoption (24/100). It was last updated today. A single contributor accounts for most of its recent work.

60
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

60
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

LegionIOOrganization
23 followers199 public repossince Dec 2018

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
RubyGemslegion-data1.10.8-750 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

81Good · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
11.1/36Commit cadence — 16/52 weeks with commits
18/18Commit volume — 310 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year310
human_commit_share1
days_since_last_push0
active_weeks_last_year16
How it's scored
27/27Ships releases — 68 releases published
36/36Release recency — latest release 0 days ago
27/27Release cadence — a release every ~6.4 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count68
latest_release_tagv1.10.8
releases_from_tagsno
days_since_latest_release0
mean_days_between_releases6.4

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

24Critical · 18% of overall
How it's scored
0/60Stars — 1 stars
0/25Forks — 1 forks
0/15Watchers — 1 watchers
Inputs used
forks1
stars1
watchers1
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
0/22.5README
22.5/22.5License — recognized license (Apache-2.0)
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeno
has_licenseno
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno
How it's scored
48.1/80Total downloads — 42,449 downloads all-time across rubygems
0/20Registry dependents — not reported by this ecosystem
Inputs used
packageslegion-data
dependents
ecosystemsrubygems
total_downloads42,449
monthly_downloads
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

62Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0.2/22.5Commit distribution — top contributor authored 99% of commits
4.1/13.5Contributor breadth — 3 contributors
6/10OpenSSF Scorecard: Contributors — project has 2 contributing companies or organizations -- score normalized to 6
Inputs used
bus_factor1
contributors_sampled3
top_contributor_share0.991
How it's scored
46.8/46.8Issue resolution — 100% of issues closed
35.6/38.3PR acceptance — 41/44 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/14 approved changesets -- score normalized to 0
Inputs used
merged_prs41
open_issues0
closed_issues20
issue_closed_ratio1
closed_unmerged_prs3
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
9.9/25Owner reach — 23 followers of LegionIO
25/25Track record — 199 public repos, account ~7 yr old
Inputs used
followers23
owner_typeOrganization
is_verified
owner_loginLegionIO
public_repos199
account_age_days2,778
How it's scored
25/25Published & resolvable — 1 package(s) on rubygems
35/35Publish recency — latest publish 0 days ago
20/20Version history — 75 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packageslegion-data
ecosystemsrubygems
any_deprecatedno
min_days_since_publish0

Engineering Quality

Are baseline engineering and documentation practices in place?

64Moderate · 20% of overall
How it's scored
24/24CI workflows — 1 workflow(s)
24/24Tests present
16/16Linter config — .rubocop.yml
9.6/9.6Pre-commit hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 3 out of 3 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configyes

Documentation

20Critical
How it's scored
0/30README
0/25Documentation directory
0/15Documentation / homepage site
0/10Repository description
10/10Topics — 5 topics
10/10Wiki
Inputs used
topicsdatabase, legion-core, legionio, ruby, sequel
has_wikiyes
homepage
has_readmeno
has_docs_dirno
has_descriptionno

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

66Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
2.2/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 3 out of 3 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/14 approved changesets -- score normalized to 0
1.5/2.5Contributors — project has 2 contributing companies or organizations -- score normalized to 6
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
5/5SAST — SAST tool is run on all commits
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
7.5/7.5Token-Permissions — GitHub workflow tokens follow principle of least privilege
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate6.6
Excluded from scoring (no data or not applicable): packaging. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

58Moderate · 0% of overall
How it's scored
45/45Agent instructions — AGENTS.md, CLAUDE.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 84 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.84
agent_instruction_filesAGENTS.md, CLAUDE.md
agent_instruction_max_bytes11,079
How it's scored
0/18One-command bootstrap
22/22Automated tests
11/11Lint / format config — .rubocop.yml
0/11Static type checking
0/10Reproducible environment
0/10Demonstrated agent practice — no agent-authored commits among the last 100
5/8Automated maintenance — dependency automation configured, none observed in the sampled commits
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileno
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0
How it's scored
0/45Type-checkable code — Ruby without a type-check config
55/55Manageable file sizes — 0/276 source files over 60KB
Inputs used
primary_languageRuby
largest_source_bytes23,947
source_files_sampled276
oversized_source_files0

Key facts

1GitHub stars
3contributors
310commits, last 12 months
0days since last push
68releases
1bus factor
0open issues
RubyGemspackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • Community profile unavailable
  • No resolved dependencies carried a version and a supported ecosystem

More detail

OpenSSF Scorecard 6.6 / 10
6.6aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-23 22:43 UTC

10Binary-Artifactsno binaries found in the repo
3Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests3 out of 3 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/14 approved changesets -- score normalized to 0
6Contributorsproject has 2 contributing companies or organizations -- score normalized to 6
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
10SASTSAST tool is run on all commits
10Security-Policysecurity policy file detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
10Token-PermissionsGitHub workflow tokens follow principle of least privilege
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 2
RegistryPackageVersion constraintManifest
RubyGemsmysql2>= 0.5.5Gemfile
RubyGemspg>= 1.5Gemfile
All dependencies 13

Full resolved dependency set from the GitHub dependency graph: 2 direct and 11 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
RubyGemsmysql2direct
RubyGemspgdirect
RubyGemscsvindirect
RubyGemslegion-jsonindirect
RubyGemslegion-loggingindirect
RubyGemslegion-settingsindirect
RubyGemsrakeindirect
RubyGemsrspecindirect
RubyGemsrspec_junit_formatterindirect
RubyGemsrubocop-legionindirect
RubyGemssequelindirect
RubyGemssimplecovindirect
RubyGemssqlite3indirect
Dependency advisories not assessed

Advisory matching could not run for this report: No resolved dependencies carried a version and a supported ecosystem

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "database",
        "legion-core",
        "legionio",
        "ruby",
        "sequel"
      ],
      "is_fork": true,
      "size_kb": 667,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "Ruby": 522582,
        "Shell": 403
      },
      "pushed_at": "2026-07-23T22:33:29Z",
      "created_at": "2026-03-13T01:03:11Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-23T22:32:46Z",
      "description": "Persistence layer for LegionIO: SQLite, PostgreSQL, and MySQL via Sequel.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Ruby",
      "significant_languages": [
        "Ruby"
      ]
    },
    "owner": {
      "blog": null,
      "name": "LegionIO",
      "type": "Organization",
      "login": "LegionIO",
      "company": null,
      "location": null,
      "followers": 23,
      "avatar_url": "https://avatars.githubusercontent.com/u/45882021?v=4",
      "created_at": "2018-12-14T17:37:00Z",
      "is_verified": null,
      "public_repos": 199,
      "account_age_days": 2778
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": false
    },
    "activity": {
      "releases": [
        {
          "tag": "v1.10.8",
          "kind": "patch",
          "published_at": "2026-07-23T22:33:31Z"
        },
        {
          "tag": "v1.10.7",
          "kind": "patch",
          "published_at": "2026-07-15T22:58:10Z"
        },
        {
          "tag": "v1.10.6",
          "kind": "patch",
          "published_at": "2026-07-06T16:42:42Z"
        },
        {
          "tag": "v1.10.5",
          "kind": "patch",
          "published_at": "2026-06-16T19:21:11Z"
        },
        {
          "tag": "v1.10.3",
          "kind": "patch",
          "published_at": "2026-06-11T03:46:15Z"
        },
        {
          "tag": "v1.10.2",
          "kind": "patch",
          "published_at": "2026-06-02T17:08:23Z"
        },
        {
          "tag": "v1.10.1",
          "kind": "patch",
          "published_at": "2026-06-01T23:45:43Z"
        },
        {
          "tag": "v1.10.0",
          "kind": "minor",
          "published_at": "2026-06-01T23:30:29Z"
        },
        {
          "tag": "v1.9.0",
          "kind": "minor",
          "published_at": "2026-06-01T23:00:28Z"
        },
        {
          "tag": "v1.8.9",
          "kind": "patch",
          "published_at": "2026-05-27T17:36:53Z"
        },
        {
          "tag": "v1.8.8",
          "kind": "patch",
          "published_at": "2026-05-22T06:17:22Z"
        },
        {
          "tag": "v1.8.7",
          "kind": "patch",
          "published_at": "2026-05-18T16:41:48Z"
        },
        {
          "tag": "v1.8.6",
          "kind": "patch",
          "published_at": "2026-05-15T23:18:00Z"
        },
        {
          "tag": "v1.8.5",
          "kind": "patch",
          "published_at": "2026-05-09T19:09:28Z"
        },
        {
          "tag": "v1.8.4",
          "kind": "patch",
          "published_at": "2026-05-08T09:02:47Z"
        },
        {
          "tag": "v1.8.3",
          "kind": "patch",
          "published_at": "2026-05-08T02:45:37Z"
        },
        {
          "tag": "v1.8.2",
          "kind": "patch",
          "published_at": "2026-05-07T19:27:42Z"
        },
        {
          "tag": "v1.8.1",
          "kind": "patch",
          "published_at": "2026-05-07T18:24:12Z"
        },
        {
          "tag": "v1.8.0",
          "kind": "minor",
          "published_at": "2026-05-06T19:28:02Z"
        },
        {
          "tag": "v1.7.4",
          "kind": "patch",
          "published_at": "2026-04-28T16:33:53Z"
        },
        {
          "tag": "v1.7.3",
          "kind": "patch",
          "published_at": "2026-04-27T21:28:23Z"
        },
        {
          "tag": "v1.7.0",
          "kind": "minor",
          "published_at": "2026-04-24T08:02:04Z"
        },
        {
          "tag": "v1.6.30",
          "kind": "patch",
          "published_at": "2026-04-23T01:54:52Z"
        },
        {
          "tag": "v1.6.29",
          "kind": "patch",
          "published_at": "2026-04-17T21:31:15Z"
        },
        {
          "tag": "v1.6.27",
          "kind": "patch",
          "published_at": "2026-04-17T21:04:02Z"
        },
        {
          "tag": "v1.6.25",
          "kind": "patch",
          "published_at": "2026-04-14T02:42:07Z"
        },
        {
          "tag": "v1.6.24",
          "kind": "patch",
          "published_at": "2026-04-14T02:32:35Z"
        },
        {
          "tag": "v1.6.23",
          "kind": "patch",
          "published_at": "2026-04-07T18:35:57Z"
        },
        {
          "tag": "v1.6.22",
          "kind": "patch",
          "published_at": "2026-04-06T23:51:09Z"
        },
        {
          "tag": "v1.6.21",
          "kind": "patch",
          "published_at": "2026-04-06T20:15:18Z"
        },
        {
          "tag": "v1.6.20",
          "kind": "patch",
          "published_at": "2026-04-03T18:13:10Z"
        },
        {
          "tag": "v1.6.19",
          "kind": "patch",
          "published_at": "2026-04-03T00:35:02Z"
        },
        {
          "tag": "v1.6.18",
          "kind": "patch",
          "published_at": "2026-03-30T20:50:36Z"
        },
        {
          "tag": "v1.6.17",
          "kind": "patch",
          "published_at": "2026-03-30T20:39:11Z"
        },
        {
          "tag": "v1.6.16",
          "kind": "patch",
          "published_at": "2026-03-30T14:43:50Z"
        },
        {
          "tag": "v1.6.15",
          "kind": "patch",
          "published_at": "2026-03-30T04:31:55Z"
        },
        {
          "tag": "v1.6.14",
          "kind": "patch",
          "published_at": "2026-03-30T03:09:02Z"
        },
        {
          "tag": "v1.6.13",
          "kind": "patch",
          "published_at": "2026-03-29T04:13:50Z"
        },
        {
          "tag": "v1.6.12",
          "kind": "patch",
          "published_at": "2026-03-28T18:09:29Z"
        },
        {
          "tag": "v1.6.11",
          "kind": "patch",
          "published_at": "2026-03-28T17:13:37Z"
        },
        {
          "tag": "v1.6.9",
          "kind": "patch",
          "published_at": "2026-03-27T09:01:05Z"
        },
        {
          "tag": "v1.6.8",
          "kind": "patch",
          "published_at": "2026-03-27T05:54:52Z"
        },
        {
          "tag": "v1.6.7",
          "kind": "patch",
          "published_at": "2026-03-27T04:14:21Z"
        },
        {
          "tag": "v1.6.6",
          "kind": "patch",
          "published_at": "2026-03-25T23:50:51Z"
        },
        {
          "tag": "v1.6.4",
          "kind": "patch",
          "published_at": "2026-03-25T21:51:43Z"
        },
        {
          "tag": "v1.6.3",
          "kind": "patch",
          "published_at": "2026-03-25T20:57:05Z"
        },
        {
          "tag": "v1.6.1",
          "kind": "patch",
          "published_at": "2026-03-25T17:26:57Z"
        },
        {
          "tag": "v1.6.0",
          "kind": "minor",
          "published_at": "2026-03-25T16:17:54Z"
        },
        {
          "tag": "v1.5.3",
          "kind": "patch",
          "published_at": "2026-03-25T07:41:44Z"
        },
        {
          "tag": "v1.5.2",
          "kind": "patch",
          "published_at": "2026-03-25T02:02:44Z"
        },
        {
          "tag": "v1.5.0",
          "kind": "minor",
          "published_at": "2026-03-24T17:30:31Z"
        },
        {
          "tag": "v1.4.19",
          "kind": "patch",
          "published_at": "2026-03-24T03:00:17Z"
        },
        {
          "tag": "v1.4.18",
          "kind": "patch",
          "published_at": "2026-03-23T05:20:06Z"
        },
        {
          "tag": "v1.4.17",
          "kind": "patch",
          "published_at": "2026-03-23T02:57:13Z"
        },
        {
          "tag": "v1.4.16",
          "kind": "patch",
          "published_at": "2026-03-22T15:50:14Z"
        },
        {
          "tag": "v1.4.15",
          "kind": "patch",
          "published_at": "2026-03-22T15:25:56Z"
        },
        {
          "tag": "v1.4.14",
          "kind": "patch",
          "published_at": "2026-03-22T15:14:05Z"
        },
        {
          "tag": "v1.4.13",
          "kind": "patch",
          "published_at": "2026-03-22T15:07:48Z"
        },
        {
          "tag": "v1.4.12",
          "kind": "patch",
          "published_at": "2026-03-22T03:10:25Z"
        },
        {
          "tag": "v1.4.11",
          "kind": "patch",
          "published_at": "2026-03-22T02:36:19Z"
        },
        {
          "tag": "v1.4.9",
          "kind": "patch",
          "published_at": "2026-03-21T23:29:07Z"
        },
        {
          "tag": "v1.4.8",
          "kind": "patch",
          "published_at": "2026-03-20T21:24:57Z"
        },
        {
          "tag": "v1.4.7",
          "kind": "patch",
          "published_at": "2026-03-20T20:17:29Z"
        },
        {
          "tag": "v1.4.4",
          "kind": "patch",
          "published_at": "2026-03-19T15:02:09Z"
        },
        {
          "tag": "v1.4.3",
          "kind": "patch",
          "published_at": "2026-03-19T04:49:15Z"
        },
        {
          "tag": "v1.4.2",
          "kind": "patch",
          "published_at": "2026-03-17T15:27:41Z"
        },
        {
          "tag": "v1.3.8",
          "kind": "patch",
          "published_at": "2026-03-17T06:25:33Z"
        },
        {
          "tag": "v1.3.7",
          "kind": "patch",
          "published_at": "2026-03-17T06:02:02Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "28ec9aca6eeab2d99c64de4c6e332cbf4764f9e6",
          "body": "fix: detect auth failures and trigger Vault lease reissue",
          "is_bot": false,
          "headline": "Merge pull request #65 from LegionIO/fix/auth-failure-lease-reissue",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-07-23T22:32:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3c420faf9aac26aa11d0e77425c13fd7ecde14ff",
          "body": null,
          "is_bot": false,
          "headline": "style: fix rubocop offenses in connection.rb",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-23T22:25:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cbbc2eef8e5f91aa10fe0ce8bd5759ac4eb99ddf",
          "body": "Sequel's disconnect only drains the available queue — connections\nchecked out by threads keep using dead credentials until returned.\nexpire_all_pooled_connections sets all connection_expiration timestamps\nto 0 so they're dropped on next pool acquire.",
          "is_bot": false,
          "headline": "fix: expire all pooled connections on credential rotation",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-23T22:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4413e98839839a78c117c6376725d291e2e363f1",
          "body": "OPTS resolves in the module's own scope, not Sequel's. NameError at\nruntime prevented the hook from ever firing.",
          "is_bot": false,
          "headline": "fix: use Sequel::OPTS constant reference in raise_error override",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-23T21:20:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "818c800477d4405767cc73b8e3759a48b2ef274f",
          "body": "log_exception only fires when Sequel loggers are configured (log: false\nby default). raise_error is the universal path for every database error\nregardless of logging config.",
          "is_bot": false,
          "headline": "fix: hook raise_error instead of log_exception for query-time detection",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-23T20:58:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72a5a9648c1df04cf8b15653c6a7caf5ef353af1",
          "body": "ConnectHook only catches errors on NEW pool connections. When Vault\nrevokes a lease, existing pooled connections stay open but lose grants.\nQueries then fail with \"permission denied for table\" — not a connect\nerror. Add log_exception hook to detect these at query time and trigger\nthe same reissue path. Rename ConnectHook → SequelHook.",
          "is_bot": false,
          "headline": "fix: handle query-time permission denied as credential revocation signal",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-23T20:54:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d00a5ec7867dfec56873cc37c4b892a8c042107d",
          "body": "…ication",
          "is_bot": false,
          "headline": "fix: log Vault lease_id alongside connection string for lease identif…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-23T20:44:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e97068a0a3a333f9eb24f960d81fe706fdcf8637",
          "body": "When Vault-issued Postgres credentials are revoked server-side (role\ndropped, lease force-revoked), clients retry the same dead credentials\nforever because the LeaseManager only reissues at 50% TTL. With 31-day\nleases that means 15.5 days of failing connections.\n\nAuthFailureHandler intercepts Sequel\n[…]\nfailure patterns (role does not exist, password authentication failed)\nand immediately calls LeaseManager.reissue_lease(:postgresql). A\n30-second cooldown prevents reissue storms during bulk rotation.",
          "is_bot": false,
          "headline": "fix: detect auth failures and trigger immediate Vault lease reissue",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-23T20:16:01Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9a6933a942884d413bb68b3a8fcc69d8c008f0e2",
          "body": "F1: Fail loud on unresolved lease:// credentials",
          "is_bot": false,
          "headline": "Merge pull request #64 from LegionIO/fix/f1-lease-placeholder-fail-loud",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-07-15T22:57:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a431e65d12b8b2327df2d2e2654536a95f4e7783",
          "body": null,
          "is_bot": false,
          "headline": "fixing .rubocop.yml",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-15T19:13:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "932b933e20c801c8563a65add505198836c8ea9e",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version + changelog",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-15T17:17:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b68694d3e07a2f9955174b1b0ab47df535727ad8",
          "body": null,
          "is_bot": false,
          "headline": "chore: rubocop + spec fixes",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-15T17:15:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8e29e58e8652d2c079b3971eeba4b6b2fe3237eb",
          "body": "…t/env URIs\n\nWhen the settings resolver fails to resolve a lease://postgresql#username\n(or vault:// / env://) placeholder, the literal URI string was flowing into\nPG connect, producing confusing GSSAPI authentication errors. Now\nlegion-data validates credentials before connecting and raises\nUnresolv\n[…]\ne message naming the exact\nsetting path that needs resolution.\n\nThe error intentionally bypasses dev_fallback — a misconfigured resolver\nis a config error, not a transient network failure.\n\nCloses #63",
          "is_bot": false,
          "headline": "fix: refuse to connect when credentials contain unresolved lease/vaul…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-15T05:37:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "169807933e38fb678d5918901fa2ac870075b223",
          "body": "Drop (conversation_id, seq) unique on llm_messages — a conversation is a tree",
          "is_bot": false,
          "headline": "Merge pull request #62 from LegionIO/fix/llm-messages-seq-nonunique",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-07-06T16:41:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "65495bf097d433d62b564695a0ddb50376a6e0ae",
          "body": "- RescueLogLevel: :debug -> :warn in rescue handle_exception calls\n  (data.rb, extract/handlers/base.rb, models/function.rb, models/node.rb)\n- NoLoopDo: archiver batch loop uses bounded `while` instead of `loop do`\n- NoUnderscorePrefixedKwargs / UnusedMethodArgument: unused **_opts -> **\n  (connecti\n[…]\n/:type/:circuit_state) but `type:` in those paths is a\n  Sequel column type (foreign_key type: :uuid) or the extract API, not LLM\n  taxonomy. Removes the now-redundant inline disable in migration 136.",
          "is_bot": false,
          "headline": "style: fix rubocop offenses across legion-data",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-03T22:37:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d854830aa21efc8e76399e8b9ae0be39c3e7e888",
          "body": "The debug toggle (log: true, query_log: true) had leaked into committed\ndefaults. With query_log true it wins over log in Connection#setup, installing\nQueryFileLogger instead of SlowQueryLogger and skipping log_warn_duration —\nbreaking connection_spec. Restore both to false (opt-in only).",
          "is_bot": false,
          "headline": "fix: restore log/query_log defaults to false",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-03T22:34:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a22c409a2bdc9437a8d9a606c32f66063ffdcb5c",
          "body": null,
          "is_bot": false,
          "headline": "fixing rubocop errors",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-03T22:12:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84f83f8a7b7b31eb46e474e6c188996abd419268",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 1.10.6 and update CHANGELOG for migration 136",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-03T22:10:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "41ea2932adead6e9118eb7ba3696670b286396a8",
          "body": "A conversation is a tree, not a line: a single parent can legitimately\nhave two children at the same depth (e.g. a failed branch and the branch\nthat continued), so two distinct messages can share (conversation_id, seq)\nand that is truth, not a duplicate.\n\nThe unique constraint rejected those legitim\n[…]\n.\n\nSQLite emulates the constraint drop by rebuilding the table (which drops\nthe inline uuid UNIQUE), so we re-assert the uuid unique index; on\nPostgreSQL DROP CONSTRAINT is surgical and it is a no-op.",
          "is_bot": false,
          "headline": "feat(schema): drop (conversation_id, seq) unique on llm_messages",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-07-03T21:58:42Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2749dcb7380d382db6daa9e39e78298b004cec74",
          "body": "feat(schema): context token accounting columns and events table",
          "is_bot": false,
          "headline": "Merge pull request #61 from LegionIO/feat/route-attempt-columns",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-16T19:20:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ee83084957e88a1396f920e4147cc71df1f3a285",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'main' into feat/route-attempt-columns",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-16T19:06:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "beca5ddb5c8b77d41bcb1b4697e2da33d67f38e8",
          "body": "Migration 135 adds pipeline-estimated context token columns to\nllm_message_inference_metrics (canonical roll-up) and creates\nllm_context_accounting_events for drill-down evidence. Metrics table\nis now the single source of truth for all token accounting.",
          "is_bot": false,
          "headline": "feat(schema): add context token accounting columns and events table",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-16T00:48:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ca2538f5b04fa39ab5c02076b6c16cb2e4b8f56",
          "body": "…n-default\n\nfix: default connection_validation to false — per-checkout SELECT NUL…",
          "is_bot": false,
          "headline": "Merge pull request #60 from LegionIO/fix/disable-connection-validatio…",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-14T15:21:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ddbb3ad662eb80893b257c070b465f09b3096134",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 1.10.4 and update CHANGELOG",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-13T03:15:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7ba247a304ef5d1a387ad9bf458b2d97f1f61bf7",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'main' into fix/disable-connection-validation-default",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-13T03:13:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "16f68f9947c01832064f17516da5606d24a46732",
          "body": "Feat/route attempt columns",
          "is_bot": false,
          "headline": "Merge pull request #59 from LegionIO/feat/route-attempt-columns",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-11T03:45:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fc64eb62462ea32dd6143844c0126001834cba4a",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 1.10.3 and update CHANGELOG",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-11T03:43:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd7c562023cffc034b82a9103eeaea047424892b",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'main' into fix/disable-connection-validation-default",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-11T03:41:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "19d8c17fccfc8a8f8d910402212dee9bcae53ab6",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'main' into feat/route-attempt-columns",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-11T03:41:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c192e9cae047caaca5278a261dff9482cbeffce2",
          "body": "…mpts\n\nAdd three columns to llm_route_attempts to support enriched route\nattempt auditing per B2 ledger writer column mapping:\n\n- operation (String, size 64, indexed) — LLM operation type\n- dispatch_path (String, size 32) — dispatch routing path\n- idempotency_key (String, size 128, indexed) — provider\n  idempotency key for dedup",
          "is_bot": false,
          "headline": "feat: add operation, dispatch_path, idempotency_key to llm_route_atte…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-10T22:29:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c0cb687546ebbee31b5c21ce4ee50bb3084284f",
          "body": "…L validation degrades throughput\n\nQuery-time error handling already recovers stale connections. Also remove\ninline || 600 / || 14_400 pool timeout fallbacks that shadowed the\ndocumented settings defaults.",
          "is_bot": false,
          "headline": "fix: default connection_validation to false — per-checkout SELECT NUL…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-10T16:49:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c508c831fd548ceb041966d4058604d8ec9d92e5",
          "body": "fix: idempotent migrations + LocalJumpError",
          "is_bot": false,
          "headline": "Merge pull request #58 from LegionIO/feat/add-skill-events-table",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-02T17:07:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "878e4c89880f16facf4eeaba5e82e25c9e466a36",
          "body": null,
          "is_bot": false,
          "headline": "chore: update CHANGELOG for 1.10.2",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T16:48:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "de534bff8d712e84a948077c70f9a33364c96839",
          "body": null,
          "is_bot": false,
          "headline": "fix: allow null context_tokens on llm_message_inference_requests",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T16:41:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84b53556ad39105f26d3c75c86d24640454e7290",
          "body": null,
          "is_bot": false,
          "headline": "fix: remove unnecessary table_exists? guards from migrations 131-132",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T16:28:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6de6503560218d70e29752f29e5545261e47827e",
          "body": "Restore 131 (add schema_version to llm_tool_calls) with idempotent\nguard so existing installations don't break. Add 132 to drop the\ncolumn since no code reads/writes it. Both migrations are safe for\nfresh installs (131 adds, 132 removes) and existing installs that\nalready have the column (131 skips, 132 drops).",
          "is_bot": false,
          "headline": "fix: restore migration 131, add 132 to drop schema_version",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T16:26:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "363f84e667594fc943069a3ee36cf47e0b1a15fd",
          "body": "Sequel's IntegerMigrator requires a contiguous file sequence.\nInstallations that ran the original 131 (add schema_version to\nllm_tool_calls) would error on startup if the file is missing.\nKeep it as a no-op so existing DBs stay at 131 harmlessly.",
          "is_bot": false,
          "headline": "fix: restore migration 131 as no-op for contiguous sequence",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T16:23:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "83cb45e7845e55618700c39f0de23ac5301430c1",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 1.10.2",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T16:18:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18b67538f235166e9d1a9d4148d21755297c6f6c",
          "body": "…-table",
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'origin/main' into feat/add-skill-events…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T16:16:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec5fe25bb1a4be0c57a93bdddf178777c49477de",
          "body": "Guard add_column/create_table with existence checks so migrations\ndon't crash on re-run when the schema already has the columns\n(e.g. after a partial migration failure that didn't record completion).",
          "is_bot": false,
          "headline": "fix: make all migrations idempotent",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T15:54:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec80f1894f56abf0f36a1b6efa0373f3ca0a8212",
          "body": "Sequel migrations use instance_exec, so bare `return` raises\nLocalJumpError at runtime. Use `next` to exit early from the block.",
          "is_bot": false,
          "headline": "fix: replace return with next in migration blocks",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T15:44:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "36aaa80b759df6efd360f59494b661affe1652b3",
          "body": "schema_version is being removed from lex-llm-ledger writer entirely.\nMigration 130 now only adds pii_types_json and jurisdictions_json.",
          "is_bot": false,
          "headline": "fix: remove schema_version from migration 130, delete migration 131",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-02T00:21:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4626a7900eb41b6727b18d49f5928d627ee1b4f",
          "body": "feat: add missing columns for lex-llm-ledger official writer",
          "is_bot": false,
          "headline": "Merge pull request #57 from LegionIO/feat/add-skill-events-table",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-01T23:44:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e35eb16ca300885c73269724777dba33a8a2c24b",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'main' into feat/add-skill-events-table",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-01T23:43:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd0e49690d168d55246e9ad5539a4ce34a390b14",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump version to 1.10.1 for migrations 130-131",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T23:42:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9e4c521da8c795f3c218d0c1b00ed174efc1325",
          "body": "…ons 130-131)\n\nMigration 130 adds pii_types_json, jurisdictions_json, and schema_version\nto llm_conversations. Migration 131 adds schema_version to llm_tool_calls.\nThese columns are written by OfficialRecordWriter in lex-llm-ledger.",
          "is_bot": false,
          "headline": "feat: add missing columns for lex-llm-ledger official writer (migrati…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T23:36:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0ad3016a4bcf1cb5f8a5869ad9040953155ca25c",
          "body": "feat: add llm_skill_events table as core LLM lifecycle table (migrati…",
          "is_bot": false,
          "headline": "Merge pull request #56 from LegionIO/feat/add-skill-events-table",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-01T23:29:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "afcf5a3b21ff925cfc236b9cbb0c88974360f667",
          "body": "…ion 129",
          "is_bot": false,
          "headline": "fix: use inline index: true instead of separate index calls in migrat…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T23:28:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4fd18cf95597a8ccb19390d60c894f8301113fd1",
          "body": "…on 129)\n\nMoves llm_skill_events from lex-llm-ledger extension into legion-data as a\ncore table. This ensures all LLM lifecycle tables are owned by legion-data,\neliminating cross-repo migration conflicts.",
          "is_bot": false,
          "headline": "feat: add llm_skill_events table as core LLM lifecycle table (migrati…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T23:22:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "61d88e32759f820038c5434f62c136475d9dde7d",
          "body": "…onal-index\n\nfix(migration): remove conditional index from migration 116",
          "is_bot": false,
          "headline": "Merge pull request #54 from LegionIO/fix/migration-116-remove-conditi…",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-06-01T22:59:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ebe667dc412a4e82fff05e648017ed625ce3a412",
          "body": "Adds nullable identity_principal_id, identity_id, and\nidentity_canonical_name to apollo_access_log, memory_traces,\nmemory_associations, audit_log, and audit_records.",
          "is_bot": false,
          "headline": "feat: add identity columns to shared tables (migration 128)",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T22:55:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d4653d4fc76cb72d8b62a58b524188fd7b8b850",
          "body": null,
          "is_bot": false,
          "headline": "disabling a single spec",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T22:53:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5f5665126d67e1d8cba6a80f161f45f9dece65d6",
          "body": "The extract_step_timings spec failed because the fresh test DB had no\ntables — only the llm model specs were running migrations explicitly.",
          "is_bot": false,
          "headline": "fix: run migrations in spec_helper so all specs have a fully migrated DB",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T22:44:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "833d643c0f49c5788798a5e6e2e0b5202b9e7f9c",
          "body": "…ions, test isolation\n\n- Migrations 123-125: replace bare `Text` with `:text` (valid Sequel type)\n- Migration 125: guard with `next unless table_exists?` (llm_escalation_events\n  table has no create migration)\n- Remove 4 untracked duplicate migrations (119-122) that conflicted with the\n  consolidate\n[…]\nest DB file\n  deleted before each run for clean state\n- audit_record_spec: add migration/model setup for Model::AuditRecord\n- llm specs: remove after(:all) Connection.shutdown, use unique request_refs",
          "is_bot": false,
          "headline": "fix: resolve rspec failures — migration Text constant, duplicate vers…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T22:39:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3881395b9bb9580ded8b9c4ca6c62f7dd32e3d95",
          "body": "Add audit columns across five LLM lifecycle tables for FedRAMP/CMS\ncompliance:\n\n- 123: llm_tool_calls — tool_arguments_json, tool_result_json,\n  tool_category, data_handling_classification, policy_decision,\n  requires_human_approval + indexes (conversation_id skipped, exists\n  in migration 117)\n- 12\n[…]\n- 127: llm_message_inference_requests — parent_request_id self-referencing\n  FK (request_content_hash, curation_strategy, tool_policy skipped, all\n  exist in migration 079)\n\nBump gem version to 1.9.0.",
          "is_bot": false,
          "headline": "feat: migrations 123-127 — FedRAMP/CMS audit compliance columns",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T22:04:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "961731111454d071c895bf2e59ec8495620d76f1",
          "body": null,
          "is_bot": false,
          "headline": "fixing cop failures",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:13:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c24200e4caf864cddc2575eabc96084fe87f7c44",
          "body": "…xist\n\nMigration 115 had a bug: it guarded on :definition (from migration 055)\ninstead of :runtime_caller_class. This migration ensures the columns\nexist on any deployment that may have skipped them.\n\nAlso: capture exception variable in connection health check (rubocop fix).",
          "is_bot": false,
          "headline": "fix(migrations): add migration 122 to ensure runtime_caller columns e…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:09:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9194175490c1eb27af5f66ff9a3e8f575e9f2d6c",
          "body": "… llm_message_inference_metrics\n\nTracks cache hit tokens and cache write tokens separately from standard\ninput/output token counts.\n\nSee: https://github.com/LegionIO/legion-data/issues/55",
          "is_bot": false,
          "headline": "feat(migration): add cached_input_tokens and cache_creation_tokens to…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:05:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bdf6fc84ca6e339aff3e7f1aa994871746e99ae0",
          "body": null,
          "is_bot": false,
          "headline": "udpating rubocop.yml",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:04:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f81ce2a11da8730e49e8d482ad79db50212e99e",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): remove synapse tables from expected tables list",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:03:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b56304f155ab864733237c495fc1aa48e4bef574",
          "body": "…ents from spec\n\n- model_helpers: capture StandardError => e and log table availability check failures\n- spool: capture Errno::ENOENT => e and log missing event file at debug level\n- migrations spec: remove llm_skill_events from expected tables",
          "is_bot": false,
          "headline": "fix: capture and log exceptions in rescue blocks; remove llm_skill_ev…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:02:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "814455701b60c35febc72cf32ea51789a77ffa7f",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): remove llm_registry_availability_records from expected tables",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:01:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4de7ca6125dd62ae06d6e1baf75b2d72756faad0",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): remove llm_escalation_events from expected tables",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T21:01:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "429b234f5bc72dd77f337ad8777b6e6aeb5ecb28",
          "body": "…uby)",
          "is_bot": false,
          "headline": "fix(spec): remove inline comments from %i[] array (not supported by R…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:58:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72756c3a1d82865c81c7d5af119610293bfb53a8",
          "body": "Scanning migration files for create_table/drop_table can't correctly handle\ntable renames (e.g. portable_* → identity_*, migration 098/099). Use the\nactual production schema as the source of truth.",
          "is_bot": false,
          "headline": "fix(spec): use authoritative table list instead of scanning migrations",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:56:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "da51c60ba36e6578f1944645f3e3bc5cf70e0da6",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): convert Set to Array in table diff operation",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:51:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d3fff689a8e6c33657acbd8880e44f17989b226a",
          "body": "Instead of hardcoding table names (which drifts as migrations change),\nscan migration files for create_table and drop_table calls to compute\nthe expected final schema. Tables dropped in later migrations are excluded.",
          "is_bot": false,
          "headline": "fix(spec): derive expected tables dynamically from migration files",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:51:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "570722bb5aaad5d4197495b5703058b20cf5580e",
          "body": null,
          "is_bot": false,
          "headline": "simple cop fixes",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:48:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "47e229836ced1f6151efbd43315c8c4ff3c68944",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): correct rbac table names in expected tables list",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:41:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "10c1f43493ff823a2169693a29a405cba45f0ed0",
          "body": "…pters (The Great Convergence parts 2-3)\n\nMigration 119: creates apollo_relations, apollo_expertise, apollo_access_log,\nand apollo_operations on all adapters. These were created on PostgreSQL only\nby migrations 012 and 047, leaving SQLite/MySQL deployments without them.\n\nMigration 120: adds all apol\n[…]\n EXISTS SQL since Sequel's add_index inside alter_table\ndoes not honor if_not_exists on SQLite (triggers table recreation).\n\nFix spec to use flexible migration table detection and proper RSpec syntax.",
          "is_bot": false,
          "headline": "feat(migrations): create missing apollo tables and indexes on all ada…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:38:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4304c57dba906f8f717e64f7605f78fa35ba998e",
          "body": "…ion test\n\nRemove 25 individual migration spec files that exercised per-migration\nup/down paths via target-based Migrator.run calls. These were fragile:\nthey shared a single database, cascade-rolled back through all\nsubsequent migrations, and failed when down blocks had bugs\n(drop_table? instead of \n[…]\nracefully when no global\nconnection is configured (local dev).\n\nThis aligns with the principle that schema migrations should never\nuse conditional guards in their up blocks — there is nothing to test.",
          "is_bot": false,
          "headline": "refactor(spec): replace migration-specific specs with single integrat…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:27:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "929a91efeeb8b9bcc4a7f1a1f3f08602cb8078ac",
          "body": "…e Great Convergence part 1/2)\n\nMigration 068 added entity_type to audit_records on PostgreSQL only,\nleaving SQLite and MySQL deployments missing this column. This one-off\ncatch-up ensures schema parity across all adapters.",
          "is_bot": false,
          "headline": "feat(migration): add entity_type to audit_records on all adapters (Th…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:24:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3572160b64ec08ca2d788dc3d90df5fab2b6f657",
          "body": "… block\n\n- Migration 116: merge three separate alter_table calls into one\n  to avoid repeated SQLite table recreation losing indexes between\n  each call. Guard drop_index with if_exists: true in both up and\n  down to survive cascade rollbacks from migration 117.\n\n- Migration 117: move add_index insi\n[…]\n alter_table block in the\n  down path. Previously it was outside, which meant it ran as a bare\n  DDL statement after the alter_table transaction had potentially\n  completed, creating a race on SQLite.",
          "is_bot": false,
          "headline": "refactor(migrations): consolidate alter_table blocks and fix 117 down…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:14:25Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7b7c2d1c1143b7f3046c79348294bc18ed4d2357",
          "body": null,
          "is_bot": false,
          "headline": "fix(migration): guard drop_index in migration 116 down with if_exists",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-06-01T20:12:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b5000ddfde0c69081c05d9ae69b29a576be83927",
          "body": "SQLite's set_column_allow_null and set_column_not_null recreate the\ntable internally. When these are mixed with drop_index and add_index\nin the same alter_table block, the ordering of index DDL relative to\nthe table recreation is adapter-dependent and can drop the wrong index\nor create on a stale ta\n[…]\nrecreated table\n\nThis mirrors the two-block pattern used in the original migration and\nis portable across SQLite and PostgreSQL without guards.\n\nhttps://claude.ai/code/session_017XH7em7Efsu7ucyQbGdoBd",
          "is_bot": false,
          "headline": "fix(migration): use separate alter_table blocks in migration 116",
          "author_name": "Claude",
          "author_login": "claude",
          "committed_at": "2026-05-31T03:01:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a4738e689baf2380549d4e10ed5deccfc672f0ff",
          "body": "set_column_allow_null and set_column_not_null on SQLite recreate the\ntable internally, silently dropping all non-primary indexes. Migration\n116 previously used ignore_errors: true to re-add the index, which\naborts PG transactions when the index already exists.\n\nFix: explicitly drop idx_tool_calls_id\n[…]\nession.\n\nAlso add a spec for migration 116 that asserts message_inference_response_id\nis nullable and the partial index survives the migration.\n\nhttps://claude.ai/code/session_017XH7em7Efsu7ucyQbGdoBd",
          "is_bot": false,
          "headline": "fix(migration): explicitly manage index lifecycle in migration 116",
          "author_name": "Claude",
          "author_login": "claude",
          "committed_at": "2026-05-31T02:11:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d78ae10fee28565f1988f14bfbb4e84388608eec",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'main' into fix/migration-116-remove-conditional-index",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-05-28T20:27:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "108d64e4291af3d2a9537c25dcd73074a6838726",
          "body": "The default 2MB cache_size was starving reads on a 107MB database,\ncausing 9+ second full-table scans on memory_traces. mmap eliminates\nsyscall overhead for hot-path reads in WAL mode.",
          "is_bot": false,
          "headline": "perf(local): bump SQLite cache to 20MB and enable 256MB mmap",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-28T16:00:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a292cccf080b4abba918a6da4d0625d7f3534139",
          "body": "ignore_errors: true on add_index does not prevent PG from aborting\nthe transaction when the index already exists (created by migration\n109). Remove the conditional index recreation entirely — on PG,\nset_column_allow_null does not drop indexes.\n\nBumps to 1.8.10.",
          "is_bot": false,
          "headline": "fix(migration): remove conditional index from migration 116",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-28T02:08:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c60c5f6b453e70cc6775f5c271d326ed753f9998",
          "body": "fix(schema): make tool_calls response_id nullable, add conversation_id",
          "is_bot": false,
          "headline": "Merge pull request #53 from LegionIO/fix/tool-calls-nullable-response-id",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-05-27T17:35:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6db833c1bc5956d5a96430c7e74dd3751d5f9d94",
          "body": "…tion\n\nset_column_allow_null on SQLite triggers duplicate_table which cannot\nreconstruct partial indexes (those with WHERE clauses) because\nSequel's indexes() method doesn't return them. Re-add the partial index\nfrom migration 109 with ignore_errors:true so it's a no-op on PG\n(where the index survives ALTER COLUMN) and a restore on SQLite.",
          "is_bot": false,
          "headline": "fix(migration): restore partial index lost during SQLite table recrea…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-27T15:21:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa191ca1a4fae357f2e4be4b051f302f569a5121",
          "body": "NULL != NULL in SQL unique constraints, so rows with NULL response_id\nnever violate the composite unique index. No need to drop it — just\nmaking the column nullable is sufficient. This avoids SQLite's table\nrecreation behavior which destroys indexes added by later migrations.",
          "is_bot": false,
          "headline": "fix(migration): simplify to just set_column_allow_null",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-27T02:45:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a4c3463350c586d1916b1fedaa7c1f4ff9ddda7e",
          "body": "…straint removal\n\nSQLite implements `unique [...]` in create_table as an inline table\nconstraint (sqlite_autoindex_*), not a named index. Using drop_index\nfails on SQLite. Use drop_constraint(type: :unique) which triggers\ntable recreation on SQLite. Re-add uuid unique constraint since SQLite's\napproach drops ALL unique constraints during recreation.",
          "is_bot": false,
          "headline": "fix(migration): use drop_constraint for portable SQLite/PG unique con…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-27T02:41:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "75236b16f22d558772a2b3f86cb480eeaa0da3cd",
          "body": "…le and add conversation_id\n\nTool audit AMQP messages were dead-lettered at 30-40% rate because the\ntool call message frequently arrives before the parent response row is\nwritten. Making the FK nullable allows tool calls to be inserted\nimmediately, with conversation_id providing traceability when th\n[…]\nsite unique index, make response FK nullable\n- Migration 117: add nullable conversation_id FK to llm_conversations\n- Add many_to_one :conversation association to ToolCall model\n- Bump version to 1.8.9",
          "is_bot": false,
          "headline": "fix(schema): make llm_tool_calls.message_inference_response_id nullab…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-27T02:21:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "63525633522cb38e7affa37dbac7e8a297b6c6fb",
          "body": "fix(connection): implement reconnect_with_fresh_creds for Vault dynamic PG credential rotation",
          "is_bot": false,
          "headline": "Merge pull request #52 from LegionIO/fix/vault-pg-credential-rotation",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-05-22T06:16:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a5a25ca47b2efbee3c245573604a561202bc905",
          "body": null,
          "is_bot": false,
          "headline": "bump version to 1.8.8 and update CHANGELOG",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-20T20:37:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8dbb899304a15da9b048818e6bb77e8a74b107ee",
          "body": "…ix/vault-pg-credential-rotation",
          "is_bot": false,
          "headline": "Merge branch 'main' of https://github.com/LegionIO/legion-data into f…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-20T20:36:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d5677e4b8c190b44624f03ba7375d57ce234aaf",
          "body": "…ic PG credential rotation\n\nLeaseManager calls this method after rotating a dynamic PostgreSQL lease,\nbut it was missing from Legion::Data::Connection. The legacy fallback\n(disconnect + test_connection) fails because Sequel stores credentials in\n@opts at connect time — disconnecting the pool doesn't update them.\n\nCloses LegionIO/legion-data#51",
          "is_bot": false,
          "headline": "fix(connection): implement reconnect_with_fresh_creds for Vault dynam…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-20T20:34:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "484510fe54c377ae0dcea953242feb17483de711",
          "body": "feat(migrations): 103 — standardized identity columns for all LLM lifecycle tables",
          "is_bot": false,
          "headline": "Merge pull request #50 from LegionIO/feature/llm-identity-columns",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-05-18T16:40:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e1cd5c6c92c6fdefc02cd3c76aa14c29402bc370",
          "body": null,
          "is_bot": false,
          "headline": "Add runtime_caller_class and runtime_caller_client to inference requests",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-17T20:33:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa1d709e507c6f14fced360f245bf0a99dd7c906",
          "body": "Removes all `run` statements from migrations 103-114. Index creation now\nuses `add_index` with `name:` and `where: Sequel.negate(...)` for partial\nindexes. Rollback uses `drop_index` with `name:`. No raw SQL remains.",
          "is_bot": false,
          "headline": "fix(migrations): replace raw SQL with Sequel DSL add_index/drop_index",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-17T18:25:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fc182097d9861ba5489f0b5352d28402a82babf9",
          "body": "Addresses PR feedback: each table modification is now its own migration file.\nNo loops or iterators — each file alters exactly one table. Bumps version to\n1.8.7 and adds CHANGELOG entry for the identity columns migration series.\n\nMigration mapping:\n  103 - llm_conversations (access_scope + identity_\n[…]\nversation_compactions (full four-column set)\n  112 - llm_policy_evaluations (full four-column set)\n  113 - llm_security_events (full four-column set)\n  114 - llm_registry_events (full four-column set)",
          "is_bot": false,
          "headline": "refactor(migrations): split 103 into one migration per table (103-114)",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-17T17:23:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4c6594b4518e0e6ec0be18068ac7be2c6576af60",
          "body": "…ecycle tables\n\nAdds access_scope, identity_principal_id, identity_id, and identity_canonical_name\nto the 10 LLM tables that had no identity columns at all, and adds the two missing\ncolumns (access_scope + identity_canonical_name) to llm_conversations and\nllm_message_inference_requests which already carry principal/identity under legacy\nnames. Does not rename any existing columns. Adds access_scope and partial\nidentity_principal_id indexes on all affected tables. Fully reversible (up/down).",
          "is_bot": false,
          "headline": "feat(migrations): 103 — standardized identity columns for all LLM lif…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-17T17:15:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "014bc7d324bfd5e6e4382798086d1a37e84fbd19",
          "body": "…dentity-access-scope\n\nfeat(data): migrations 100-101 — access_scope and identity columns on apollo_entries",
          "is_bot": false,
          "headline": "Merge pull request #49 from LegionIO/feat/migrations-100-101-apollo-i…",
          "author_name": "Matthew Iverson",
          "author_login": "Esity",
          "committed_at": "2026-05-15T23:16:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b3bb8c89390fe4863c1004d718a176d9a58b923f",
          "body": "…apters",
          "is_bot": false,
          "headline": "fix(spec): query sqlite_master for partial indexes on non-postgres ad…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-15T23:15:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "60088c931cbe0c0634f7923ba2accefda02815d0",
          "body": "- Rename 102_add_apollo_identity_indexes.rb to 102_add_apollo_access_scope_and_identity_indexes.rb\n- Add CREATE INDEX IF NOT EXISTS for re-run safety, matching DROP INDEX IF EXISTS in down block\n- Fix 101 spec: run to target 101 only (column assertions), wrap test insert in rollback transaction\n- Ad\n[…]\n102 spec covering index creation (idx_apollo_access_scope, idx_apollo_identity_principal_id, idx_apollo_identity_id)\n- Fix CHANGELOG to accurately describe each migration's scope and adapter targeting",
          "is_bot": false,
          "headline": "apply copilot review suggestions (#49)",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-15T23:12:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bc2d32183742d827ccb428676136b205494bb89c",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): strip adapter-specific quotes from default value assertion",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-15T22:56:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "50d2b48f729ade69de433640bb0eb7dceac92233",
          "body": "… on all adapters without guards",
          "is_bot": false,
          "headline": "fix(migrations): 100 creates bare tables on non-postgres; 101-102 run…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-15T22:50:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5a653fd725cef685b18e52eb3f23ceb685061fab",
          "body": "…s already present on SQLite from 100",
          "is_bot": false,
          "headline": "fix(migrations): 101 and 102 guard with next unless postgres — column…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-15T22:48:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "736d226225ddf3b01e6f107f04834279eb37d6c6",
          "body": "…n on all adapters without guards",
          "is_bot": false,
          "headline": "feat(data): migration 100 creates apollo tables on SQLite; 101-102 ru…",
          "author_name": "Esity",
          "author_login": "Esity",
          "committed_at": "2026-05-15T22:45:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 68,
      "commits_last_year": 310,
      "latest_release_at": "2026-07-23T22:33:31Z",
      "latest_release_tag": "v1.10.8",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 16,
      "days_since_latest_release": 0,
      "mean_days_between_releases": 6.4
    },
    "community": {
      "has_readme": false,
      "has_license": false,
      "has_description": false,
      "has_contributing": false,
      "health_percentage": null,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "legion-data",
          "exists": true,
          "license": "Apache-2.0",
          "keywords": [],
          "ecosystem": "rubygems",
          "matches_repo": true,
          "registry_url": "https://rubygems.org/gems/legion-data",
          "is_deprecated": false,
          "latest_version": "1.10.8",
          "repository_url": "https://github.com/LegionIO/legion-data",
          "versions_count": 75,
          "total_downloads": 42449,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": "2019-01-27T22:29:23.246000Z",
          "latest_published_at": "2026-07-23T22:33:32.635000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 0
        }
      ]
    },
    "popularity": {
      "forks": 1,
      "stars": 1,
      "watchers": 1,
      "fork_history": {
        "days": [
          {
            "date": "2026-04-21",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 1,
        "total_forks": 1
      },
      "star_history": null,
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [],
      "largest_source_bytes": 23947,
      "source_files_sampled": 276,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 11079
    },
    "dependencies": {
      "manifests": [
        "Gemfile"
      ],
      "advisories": {
        "error": "No resolved dependencies carried a version and a supported ecosystem",
        "scope": "repository_graph",
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 13,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "rubygems"
      ],
      "dependencies": [
        {
          "name": "mysql2",
          "manifest": "Gemfile",
          "ecosystem": "rubygems",
          "version_constraint": ">= 0.5.5"
        },
        {
          "name": "pg",
          "manifest": "Gemfile",
          "ecosystem": "rubygems",
          "version_constraint": ">= 1.5"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "mysql2",
            "direct": true,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "pg",
            "direct": true,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "csv",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "legion-json",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "legion-logging",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "legion-settings",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "rake",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "rspec",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "rspec_junit_formatter",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "rubocop-legion",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "sequel",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "simplecov",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          },
          {
            "name": "sqlite3",
            "direct": false,
            "version": null,
            "ecosystem": "rubygems"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 13,
        "direct_count": 2,
        "indirect_count": 11
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 41,
        "open_issues": 0,
        "closed_ratio": 1,
        "closed_issues": 20,
        "closed_unmerged_prs": 3
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "Esity",
          "commits": 317,
          "avatar_url": "https://avatars.githubusercontent.com/u/1851830?v=4"
        },
        {
          "type": "User",
          "login": "claude",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/81847?v=4"
        },
        {
          "type": "User",
          "login": "amyschoen",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/7476114?v=4"
        }
      ],
      "contributors_sampled": 3,
      "top_contributor_share": 0.991
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [
        ".rubocop.yml"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": true
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 3,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/14 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 6,
            "reason": "project has 2 contributing companies or organizations -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 10,
            "reason": "SAST tool is run on all commits",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 10,
            "reason": "GitHub workflow tokens follow principle of least privilege",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "28ec9aca6eeab2d99c64de4c6e332cbf4764f9e6",
        "ran_at": "2026-07-23T22:43:24Z",
        "aggregate_score": 6.6,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-23T22:33:39Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-23T22:32:29Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/LegionIO/legion-data",
    "host": "github.com",
    "name": "legion-data",
    "owner": "LegionIO"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 60,
      "inputs": {
        "security": 66,
        "vitality": 81,
        "community": 24,
        "governance": 62,
        "engineering": 64
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 81,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "commits_last_year": 310,
              "human_commit_share": 1,
              "days_since_last_push": 0,
              "active_weeks_last_year": 16
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "16/52 weeks with commits",
                "points": 11.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 16
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "310 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 310
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 68,
              "latest_release_tag": "v1.10.8",
              "releases_from_tags": false,
              "days_since_latest_release": 0,
              "mean_days_between_releases": 6.4
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "68 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 68
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~6.4 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 6.4
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "critical",
        "name": "Community & Adoption",
        "value": 24,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 1,
              "stars": 1,
              "watchers": 1,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "1 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "1 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "1 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "critical",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 25,
            "inputs": {
              "has_readme": false,
              "has_license": false,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 60,
            "inputs": {
              "packages": [
                "legion-data"
              ],
              "dependents": null,
              "ecosystems": "rubygems",
              "total_downloads": 42449,
              "monthly_downloads": null
            },
            "components": [
              {
                "key": "total_downloads",
                "name": "Total downloads",
                "detail": "42,449 downloads all-time across rubygems",
                "points": 48.1,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_total",
                    "params": {
                      "count": 42449,
                      "ecosystems": "rubygems"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 62,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 19,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 3,
              "top_contributor_share": 0.991
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 99% of commits",
                "points": 0.2,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 99
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "3 contributors",
                "points": 4.1,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 82,
            "inputs": {
              "merged_prs": 41,
              "open_issues": 0,
              "closed_issues": 20,
              "issue_closed_ratio": 1,
              "closed_unmerged_prs": 3
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "100% of issues closed",
                "points": 46.8,
                "status": "met",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "41/44 decided PRs merged",
                "points": 35.6,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 41,
                      "decided": 44
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/14 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 65,
            "inputs": {
              "followers": 23,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "LegionIO",
              "public_repos": 199,
              "account_age_days": 2778
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "23 followers of LegionIO",
                "points": 9.9,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 23,
                      "login": "LegionIO"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "199 public repos, account ~7 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 199
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 7
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "legion-data"
              ],
              "ecosystems": "rubygems",
              "any_deprecated": false,
              "min_days_since_publish": 0
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on rubygems",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "rubygems"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 0 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "75 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 75
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 64,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 94,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": true
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "1 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".rubocop.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".rubocop.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 9.6,
                "status": "met",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "critical",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 20,
            "inputs": {
              "topics": [
                "database",
                "legion-core",
                "legionio",
                "ruby",
                "sequel"
              ],
              "has_wiki": true,
              "homepage": null,
              "has_readme": false,
              "has_docs_dir": false,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "5 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 5
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 66,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Packaging. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "packaging"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 66,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 6.6
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/14 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is run on all commits",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "GitHub workflow tokens follow principle of least privilege",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 2
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 58,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.84,
              "agent_instruction_files": [
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 11079
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "84 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 84,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "at_risk",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 38,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".rubocop.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".rubocop.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "dependency automation configured, none observed in the sampled commits",
                "points": 5,
                "status": "partial",
                "details": [
                  {
                    "code": "dependency_bot_config_only",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "moderate",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "primary_language": "Ruby",
              "largest_source_bytes": 23947,
              "source_files_sampled": 276,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Ruby without a type-check config",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_typecheck_config_language",
                    "params": {
                      "language": "Ruby"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/276 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 276,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "Community profile unavailable",
    "No resolved dependencies carried a version and a supported ecosystem"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-23T22:43:36.844952Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/l/LegionIO/legion-data.svg",
  "full_name": "LegionIO/legion-data",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsRubyGems.