Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-25 14:02 UTC

Lolia-FRP / lolia-frp

快速,简单,优雅的一键启动 LoliaFRP

Go · VueApache-2.0★ 20 stars⑂ 4 forkssince Oct 2025View on GitHub ↗

Lolia-FRP/lolia-frp holds a health index of 60 out of 100, placing it in the Moderate band. It scores highest on Vitality (85/100) and lowest on Security (35/100). It was last updated 13 days ago. A single contributor accounts for most of its recent work.

60
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

60
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

LoliaFRPOrganization
5 followers4 public repossince Oct 2025

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
Gogithub.com/fatedier/frppoints to another repo — not scoredv0.70.1-1162 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

85Excellent · 22% of overall
How it's scored
28.8/36Push recency — last push 13 days ago
24.2/36Commit cadence — 35/52 weeks with commits
18/18Commit volume — 176 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year176
human_commit_share1
days_since_last_push13
active_weeks_last_year35
How it's scored
27/27Ships releases — 12 releases published
36/36Release recency — latest release 13 days ago
27/27Release cadence — a release every ~19.9 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count12
latest_release_tagv0.69.3
releases_from_tagsno
days_since_latest_release13
mean_days_between_releases19.9

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

37At risk · 18% of overall
How it's scored
20.7/60Stars — 20 stars
4/25Forks — 4 forks
0/15Watchers — 1 watchers
Inputs used
forks4
stars20
watchers1
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (Apache-2.0)
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

50Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
4/22.5Commit distribution — top contributor authored 82% of commits
13.5/13.5Contributor breadth — 100 contributors
10/10OpenSSF Scorecard: Contributors — project has 12 contributing companies or organizations
Inputs used
bus_factor1
contributors_sampled100
top_contributor_share0.822
How it's scored
46.8/46.8Issue resolution — 100% of issues closed
0/38.3PR acceptance — no decided pull requests or no data
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Inputs used
merged_prs0
open_issues0
closed_issues1
issue_closed_ratio1
closed_unmerged_prs0
Excluded from scoring (no data or not applicable): PR acceptance. Remaining weights renormalized.
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
5.6/25Owner reach — 5 followers of Lolia-FRP
6.7/25Track record — 4 public repos, account ~0 yr old
Inputs used
followers5
owner_typeOrganization
is_verified
owner_loginLolia-FRP
public_repos4
account_age_days286

Engineering Quality

Are baseline engineering and documentation practices in place?

84Good · 20% of overall
How it's scored
24/24CI workflows — 6 workflow(s)
24/24Tests present
16/16Linter config — .golangci.yml, eslint.config.js
0/9.6Pre-commit hooks
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — no data
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configno
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.

Documentation

90Excellent
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://lolia.link
10/10Repository description
10/10Topics — 2 topics
0/10Wiki
Inputs used
topicsfrp, lolia
has_wikino
homepagehttps://lolia.link
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

35At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — no data
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 12 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0.5/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 43 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate3.5
Excluded from scoring (no data or not applicable): ci_tests. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

83Good · 0% of overall
How it's scored
45/45Agent instructions — AGENTS.md, CLAUDE.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 86 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.86
agent_instruction_filesAGENTS.md, CLAUDE.md
agent_instruction_max_bytes1,063
How it's scored
18/18One-command bootstrap — Makefile, web/frpc/Makefile, web/frps/Makefile
22/22Automated tests
11/11Lint / format config — .golangci.yml, eslint.config.js
11/11Static type checking — web/frpc/tsconfig.json, web/frps/tsconfig.json
10/10Reproducible environment — lockfile
2/10Demonstrated agent practice — 1 of the last 100 commits agent-authored or agent-credited
0/8Automated maintenance — no automated dependency updates observed
1/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
Inputs used
has_nixno
has_testsyes
lockfilesgo.sum, package-lock.json
has_dockerfileno
typed_languageyes
bootstrap_filesMakefile, web/frpc/Makefile, web/frps/Makefile
has_devcontainerno
has_linter_configyes
typecheck_configsweb/frpc/tsconfig.json, web/frps/tsconfig.json
agent_commit_share0.01
toolchain_manifestsgo.mod
dependency_bot_commit_share0
How it's scored
45/45Type-checkable code — Go (statically typed)
55/55Manageable file sizes — 0/373 source files over 60KB
Inputs used
primary_languageGo
largest_source_bytes26,183
source_files_sampled373
oversized_source_files0

Key facts

20GitHub stars
100contributors
176commits, last 12 months
13days since last push
12releases
1bus factor
0open issues
Go, npmpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • go package 'github.com/fatedier/frp' points at a different repository (https://github.com/fatedier/frp); excluded from ecosystem scoring
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

More detail

Star and fork history 0 ★ / 4 ⇿
0Stars
4Forks
5Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

1223344412026-022026-052026-07
Major 0Minor 0Patch 5
OpenSSF Scorecard 3.5 / 10
3.5aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-25 14:02 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
n/aCI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 12 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
1Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 1
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities43 existing vulnerabilities detected
Direct dependencies 43
RegistryPackageVersion constraintManifest
Gogithub.com/armon/go-socks5v0.0.0-20160902184237-e75332964ef5go.mod
Gogithub.com/charmbracelet/lipglossv1.1.0go.mod
Gogithub.com/charmbracelet/logv0.4.2go.mod
Gogithub.com/coreos/go-oidc/v3v3.14.1go.mod
Gogithub.com/fatedier/golibv0.7.0go.mod
Gogithub.com/google/uuidv1.6.0go.mod
Gogithub.com/gorilla/muxv1.8.1go.mod
Gogithub.com/gorilla/websocketv1.5.0go.mod
Gogithub.com/hashicorp/yamuxv0.1.1go.mod
Gogithub.com/onsi/ginkgo/v2v2.23.4go.mod
Gogithub.com/onsi/gomegav1.36.3go.mod
Gogithub.com/pelletier/go-toml/v2v2.2.0go.mod
Gogithub.com/pion/stun/v3v3.1.1go.mod
Gogithub.com/pires/go-proxyprotov0.7.0go.mod
Gogithub.com/prometheus/client_golangv1.19.1go.mod
Gogithub.com/quic-go/quic-gov0.55.0go.mod
Gogithub.com/rodaine/tablev1.2.0go.mod
Gogithub.com/samber/lov1.47.0go.mod
Gogithub.com/songgao/waterv0.0.0-20200317203138-2b4b6d7c09d8go.mod
Gogithub.com/spf13/cobrav1.8.0go.mod
Gogithub.com/spf13/pflagv1.0.5go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogithub.com/tidwall/gjsonv1.17.1go.mod
Gogithub.com/vishvananda/netlinkv1.3.0go.mod
Gogithub.com/xtaci/kcp-go/v5v5.6.13go.mod
Gogolang.org/x/cryptov0.49.0go.mod
Gogolang.org/x/netv0.52.0go.mod
Gogolang.org/x/oauth2v0.28.0go.mod
Gogolang.org/x/syncv0.20.0go.mod
Gogolang.org/x/sysv0.42.0go.mod
Gogolang.org/x/timev0.10.0go.mod
Gogolang.zx2c4.com/wireguardv0.0.0-20231211153847-12269c276173go.mod
Gogopkg.in/ini.v1v1.67.0go.mod
Gok8s.io/apimachineryv0.28.8go.mod
Gok8s.io/client-gov0.28.8go.mod
Gok8s.io/utilsv0.0.0-20230406110748-d93618cff8a2go.mod
npmelement-plus^2.13.0web/frpc/package.json
npmpinia^3.0.4web/frpc/package.json
npmvue^3.5.26web/frpc/package.json
npmvue-router^4.6.4web/frpc/package.json
npmelement-plus^2.13.0web/frps/package.json
npmvue^3.5.26web/frps/package.json
npmvue-router^4.6.4web/frps/package.json
All dependencies not collected

The resolved dependency set could not be collected for this report: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "frp",
        "lolia"
      ],
      "is_fork": false,
      "size_kb": 32064,
      "has_wiki": false,
      "homepage": "https://lolia.link",
      "languages": {
        "Go": 1431004,
        "CSS": 13884,
        "Vue": 230804,
        "HTML": 510,
        "SCSS": 2794,
        "Shell": 9876,
        "Makefile": 2651,
        "JavaScript": 1769,
        "TypeScript": 52179
      },
      "pushed_at": "2026-07-11T20:09:41Z",
      "created_at": "2025-10-20T16:37:39Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-22T18:54:51Z",
      "description": "快速,简单,优雅的一键启动 LoliaFRP",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "dev",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Go",
      "significant_languages": [
        "Go",
        "Vue"
      ]
    },
    "owner": {
      "blog": "https://lolia.link",
      "name": "LoliaFRP",
      "type": "Organization",
      "login": "Lolia-FRP",
      "company": null,
      "location": null,
      "followers": 5,
      "avatar_url": "https://avatars.githubusercontent.com/u/237514869?v=4",
      "created_at": "2025-10-12T02:08:06Z",
      "is_verified": null,
      "public_repos": 4,
      "account_age_days": 286
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.69.3",
          "kind": "patch",
          "published_at": "2026-07-11T20:15:30Z"
        },
        {
          "tag": "v0.69.2",
          "kind": "patch",
          "published_at": "2026-07-04T06:39:28Z"
        },
        {
          "tag": "v0.69.1",
          "kind": "patch",
          "published_at": "2026-06-21T06:16:44Z"
        },
        {
          "tag": "v0.67.5",
          "kind": "patch",
          "published_at": "2026-06-06T03:20:25Z"
        },
        {
          "tag": "v0.67.4",
          "kind": "patch",
          "published_at": "2026-03-10T10:37:17Z"
        },
        {
          "tag": "v0.67.3",
          "kind": "patch",
          "published_at": "2026-03-08T10:44:45Z"
        },
        {
          "tag": "v0.67.2",
          "kind": "patch",
          "published_at": "2026-02-20T23:47:50Z"
        },
        {
          "tag": "v0.67.1",
          "kind": "patch",
          "published_at": "2026-02-20T07:36:11Z"
        },
        {
          "tag": "v0.67.0",
          "kind": "minor",
          "published_at": "2026-02-07T17:16:13Z"
        },
        {
          "tag": "v0.66.3",
          "kind": "patch",
          "published_at": "2026-01-13T16:11:27Z"
        },
        {
          "tag": "v0.66.2",
          "kind": "patch",
          "published_at": "2026-01-12T16:13:50Z"
        },
        {
          "tag": "v0.66.1",
          "kind": "patch",
          "published_at": "2026-01-11T06:12:11Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "0ff55575718390d602c76180e13821c1851f2e50",
          "body": null,
          "is_bot": false,
          "headline": "chore(version): update version to LoliaFRP-CLI 0.69.3",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-07-11T20:09:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bce3d5a3d82cf4502ffb9c59c02fe1f6110e00af",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): use Lolia-FRP golib fork with adaptive buffer io.Join",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-07-04T20:55:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "33a29b04e4aa0ed132550ec1e4eba924029f9a89",
          "body": null,
          "is_bot": false,
          "headline": "fix(redirect): improve security in HTTP to HTTPS redirection",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-07-04T06:39:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "481ccad05e078860ee70607cb57e6a5a2d2b3b56",
          "body": null,
          "is_bot": false,
          "headline": "chore(version): update version to LoliaFRP-CLI 0.69.2",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-07-04T06:32:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "521542b796331203bdd24d83829c5f91fafe6d7d",
          "body": null,
          "is_bot": false,
          "headline": "feat(proxy): add HTTP to HTTPS redirection support",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-07-04T06:30:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e487e7f96ff10421181e250b11268d568ba75104",
          "body": null,
          "is_bot": false,
          "headline": "chore(build): add support for linux/arm/v7 platform",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-23T11:53:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2f73a38a2fc43d057d5ba224efea804059bb2d9d",
          "body": null,
          "is_bot": false,
          "headline": "fix(build): add linkname check for Android builds",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-21T06:10:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a9eb5e6901195f10dc453dfee5a20ff145eabc5d",
          "body": null,
          "is_bot": false,
          "headline": "fix(build): disable linkname check for Android builds",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-21T06:04:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "386df7f426b08b02049255f8b6583dbda2188577",
          "body": null,
          "is_bot": false,
          "headline": "chore(go.mod): update golib dependency to v0.7.4",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-21T05:52:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "79d5cc00ab4f171dcf032610b56f82a728eb33d8",
          "body": null,
          "is_bot": false,
          "headline": "chore(go.mod): update golib dependency to v0.7.4",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-21T05:51:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d43a4e8950325cefb66363968b07752dd59f4348",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'upstream/dev' into dev",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-21T05:51:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d205f2bb35543834f077296c724cb304579ad7dc",
          "body": "feat(linter): add new linters G118 and G704\nrefactor(proxy): optimize proxy status slice initialization\nfix(api): clarify comment regarding URL construction\nfix(deps): upgrade github.com/hashicorp/yamux to v0.1.2\ndocs(flags): improve DNS server flag description\nrefactor(controller): simplify port range return logic\nrefactor(featuregate): optimize enabled features string conversion",
          "is_bot": false,
          "headline": "chore(ci): update Go version and golangci-lint version",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-06T03:35:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a2b9062f2c67005defc79242dd3d4daf1e2dc213",
          "body": null,
          "is_bot": false,
          "headline": "feat(dns): add support for DNS-over-HTTPS and update version",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-06-06T03:12:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9bde0b07de61c27b627980d47f625ba41d3ceca8",
          "body": "Move the frps dashboard Clients and Proxies views to the paginated\n/api/v2/clients and /api/v2/proxies endpoints instead of fetching all\ndata at once, and extend server-side proxy search so the search box\nkeeps working under pagination.\n\nFrontend:\n- Add V2Envelope/V2Page types and getV2 HTTP helper \n[…]\n spec\n  fields: TCP/UDP remotePort and HTTP/HTTPS/TCPMux customDomains and\n  subdomain, so dashboard search no longer needs to scan every page\n- Add controller_v2 tests for the new spec-field matching",
          "is_bot": false,
          "headline": "feat: paginate dashboard clients and proxies via API v2 (#5354)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-03T06:08:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c6c545289ce07e4c718524bcbada0670ba0fdcb9",
          "body": null,
          "is_bot": false,
          "headline": "fix: normalize web package lockfile (#5353)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-02T05:39:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "503afe78b770ee4116bd7a278256d5bb5c50d4e3",
          "body": null,
          "is_bot": false,
          "headline": "feat: add dashboard API v2 pagination endpoints (#5351)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-01T12:09:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9ea1d86f0339a2d7beeb13f794a4ddf47bb103f2",
          "body": null,
          "is_bot": false,
          "headline": "test: handle wire v2 compatibility baselines (#5349)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-01T09:52:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac3e82db4e4c22af892abb3a53e6b58c62c6d1ab",
          "body": null,
          "is_bot": false,
          "headline": "Release v0.69.1 (#5348)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-01T08:22:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0773938d70bc6f8057f324908f78125880967fe4",
          "body": "SUDP payload codec follows transport wireProtocol; same-protocol v1/v1 and v2/v2 keep raw join; only mixed proxy/visitor protocols use message-aware bridge; no new capability/selection field.",
          "is_bot": false,
          "headline": "feat: bridge mixed wire protocol SUDP payloads (#5347)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-01T08:22:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9bacce22a2546e8adf3371be24a5bf6dad26d3da",
          "body": null,
          "is_bot": false,
          "headline": "feat: use wire v2 framing for XTCP NatHoleSid (#5343)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-01T08:22:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f8d68b666551180b14c13d8e1d088e2eff32526",
          "body": null,
          "is_bot": false,
          "headline": "feat: use wire v2 framing for UDP workConn payload (#5340)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-06-01T08:22:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e19ef9bfd10977447e74d120e6745990e74d8bf",
          "body": null,
          "is_bot": false,
          "headline": "feat(ui): add xtcp tab to frps dashboard (#5322)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-05-21T14:18:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e20f974d61bd8cea1da2175ce801f26751bccfa2",
          "body": null,
          "is_bot": false,
          "headline": "feat(ui): add all proxies tab to frps dashboard (#5321)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-05-20T08:20:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a88e0e9a49ac0271d9fb34c4b128775eab68f103",
          "body": null,
          "is_bot": false,
          "headline": "refactor: clean up code (#5308)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-05-12T03:13:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad07d279144426afc93b8ceb8bbcced0f2b5c63d",
          "body": null,
          "is_bot": false,
          "headline": "fix: reset UDP read deadline on write activity to prevent idle timeout",
          "author_name": "霜冷长河",
          "author_login": "silverpoetry",
          "committed_at": "2026-05-11T12:23:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "26f3af3fdd7340d21613ee7c9aaa6de099a908f0",
          "body": null,
          "is_bot": false,
          "headline": "fix(deps): downgrade github.com/hashicorp/yamux to v0.1.1",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-05-07T11:45:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7d79b83a392fd32a0510a0b9bd6eaa1aa8139ee6",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): update Go modules and package-lock files",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-05-07T10:28:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8666e3643f4e8cc3ec65780c48e20c8904b17856",
          "body": "…(#5304)",
          "is_bot": false,
          "headline": "protocol: add AEAD encryption negotiation to v2 wire control channel …",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-05-06T02:43:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "57bb9e80fe77e81d2c8ba5c52d5650ded0a23c8e",
          "body": "…tiation (#5297)",
          "is_bot": false,
          "headline": "test/e2e: add compatibility test suite for wire protocol version nego…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-04-27T10:28:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cef71fb949374a5362a32236cf5ed90d45496c74",
          "body": "…ad deadline (#5296)",
          "is_bot": false,
          "headline": "plugin/http_proxy: fix fragmented CONNECT method detection and add re…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-04-26T18:30:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "410c4861c4705ff4fb90bb4fa5ab8c966e84c66b",
          "body": null,
          "is_bot": false,
          "headline": "update Release.md (#5295)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-04-26T17:31:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9464919d1a3ab2e4ce0ed9d47ba172dfc0dfb3f",
          "body": "…otiation (#5294)",
          "is_bot": false,
          "headline": "protocol: add v2 wire protocol with binary framing and capability neg…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-04-26T16:17:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3ea471e44cdab46c6ba78c7402b01952b5332c5",
          "body": null,
          "is_bot": false,
          "headline": "feat(build): add support for loong64 architecture",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-04-25T09:51:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8dfd6efcccded4affeee9bb25f542c8280edf6e",
          "body": "…#5286)",
          "is_bot": false,
          "headline": "web/frpc: use static imports for proxy and visitor route components (…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-04-13T17:18:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a9a4416ecf20a1d90515cbc366c006db0db5b5fa",
          "body": "…tyle requests (#5285)",
          "is_bot": false,
          "headline": "vhost/http: fix auth bypass when routeByHTTPUser is used with proxy-s…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-04-13T16:58:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d667be7a0a4c6fb62185461f5ebeeac3ede1cb30",
          "body": null,
          "is_bot": false,
          "headline": "update architecture pic (#5270)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-29T19:22:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "31c3deb4f7c31a59e37b5fc0b8e6f2523ac531ec",
          "body": null,
          "is_bot": false,
          "headline": "deps: bump golib to v0.6.0 (#5269)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-29T16:29:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "31e271939b7b494396c1fb35f560a641968d4025",
          "body": "…hitelist test (#5268)",
          "is_bot": false,
          "headline": "test/e2e: allocate dynamic ports outside whitelist ranges in server w…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-29T16:21:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "061c141756e2328b3b847e0b8367ba14e4e20e66",
          "body": null,
          "is_bot": false,
          "headline": "update README.md (#5267)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-29T15:53:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98ee1adb13e4962cfe40aaa8fa2048d099e0b2b3",
          "body": "If realConnect() succeeds but fmux.Client returns an error, the\nconnection was not assigned to the connector and would leak.",
          "is_bot": false,
          "headline": "client: close TCP connection when fmux session creation fails (#5262)",
          "author_name": "cui",
          "author_login": "cuiweixie",
          "committed_at": "2026-03-29T15:16:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76abeff8812b7f10a609e625be66671bee394508",
          "body": null,
          "is_bot": false,
          "headline": "ci: remove security vulnerability scan workflow (#5266)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-29T14:55:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c694b1f6a9f33178aab7b68333c4a6c7a386770a",
          "body": null,
          "is_bot": false,
          "headline": "bump pion/stun to v3 to fix vulnerability (#5245)",
          "author_name": "Oleksandr Redko",
          "author_login": "alexandear",
          "committed_at": "2026-03-29T14:45:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ed02275da9c575a4bc3687dbac7ca4383eebfde",
          "body": null,
          "is_bot": false,
          "headline": "docker: copy shared web directory for npm workspace builds",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-20T06:39:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "60c4f5d4bd869f83852ca5bb7cc1e59179194e9e",
          "body": null,
          "is_bot": false,
          "headline": "ci: bump github actions to latest major versions (#5251)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-20T06:39:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d20e384bf1b530bc173b83b098557c9eca7edd0a",
          "body": "* web: remove redundant SCSS and CSS files superseded by shared\n\n* doc: add agent runbooks directory with release process",
          "is_bot": false,
          "headline": "doc: add agent runbooks directory with release process (#5248)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-20T05:52:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c95dc9d88aa7d80ba864bbfdea70a12fe0811f78",
          "body": null,
          "is_bot": false,
          "headline": "web: remove redundant SCSS and CSS files superseded by shared (#5247)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-20T05:08:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "38a71a6803eec7040891a006f3d7a01bbfda9856",
          "body": "…, and shared component workspace (#5246)",
          "is_bot": false,
          "headline": "web/frps: redesign frps dashboard with sidebar nav, responsive layout…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-19T19:33:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6cdef90113aafd2a85cf5aa885bcb9a2bdcbfa59",
          "body": null,
          "is_bot": false,
          "headline": "web: bump dev dependencies in frpc and frps package-lock.json (#5239)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-16T15:22:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "85e8e2c830ff0b6bcaafbbb7174c8f15e330d4e2",
          "body": "…t and detail views (#5237)",
          "is_bot": false,
          "headline": "web/frpc: redesign frpc dashboard with sidebar nav, proxy/visitor lis…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-16T01:44:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff4ad2f90729e07b1dd9374eed9de4659493f3db",
          "body": "…ests (#5234)",
          "is_bot": false,
          "headline": "auth/oidc: fix eager token fetch at startup, add validation and e2e t…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-15T14:29:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "94a631fe9c22491672b016413bb4d68067adeafb",
          "body": "* auth/oidc: cache OIDC access token and refresh before expiry\n\n- Use Config.TokenSource(ctx) once at init to create a persistent\n  oauth2.TokenSource that caches the token and only refreshes on expiry\n- Wrap with oauth2.ReuseTokenSourceWithExpiry for configurable early refresh\n- Add tokenRefreshAdv\n[…]\nG101 false positive on test-only dummy token responses.\nAdd test to verify per-request token fetch when expires_in is missing.\nUpdate caching test to account for eager initial token fetch.\n\n* fix lint",
          "is_bot": false,
          "headline": "auth/oidc: cache OIDC access token and refresh before expiry (#5175)",
          "author_name": "Shani Pathak",
          "author_login": "shani1998",
          "committed_at": "2026-03-11T16:24:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6b1be922e155def020e78aa78f4b796b7a530ea4",
          "body": null,
          "is_bot": false,
          "headline": "add AGENTS.md and CLAUDE.md, remove them from .gitignore (#5232)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-11T16:21:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f584f81d0af1a3cc5e5061c59d62a3ef136f7fe",
          "body": "… tests (#5231)\n\n* test/e2e: replace sleeps with event-driven waits in chaos/group/store tests\n\nReplace 21 time.Sleep calls with deterministic waiting using\nWaitForOutput, WaitForTCPReady, and a new WaitForTCPUnreachable helper.\nAdd CountOutput method for snapshot-based incremental log matching.\n\n* test/e2e: validate interval and cap dial/sleep to remaining deadline in WaitForTCPUnreachable",
          "is_bot": false,
          "headline": "test/e2e: replace sleeps with event-driven waits in chaos/group/store…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-11T16:11:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e66f45d8beab0d798f419d3de1f4af77a7d73877",
          "body": null,
          "is_bot": false,
          "headline": "feat(plugin): add ReadHeaderTimeout to HTTP2HTTPS redirect",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-03-10T11:08:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc0b8d0f9410624cea51b1d3c147491fc2aa6a61",
          "body": null,
          "is_bot": false,
          "headline": "chore(version): update version to 0.67.4",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-03-10T10:26:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "27237542c8a959318cbe7d21f1e21eb8730d4556",
          "body": null,
          "is_bot": false,
          "headline": "feat(plugin): add HTTP2HTTPS redirect plugin implementation",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-03-10T10:26:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9669e1ca0c2ea20030cc2b2604fd73dc397ba406",
          "body": "…iness detection (#5226)\n\n* test/e2e: replace RunProcesses client sleep with log-based proxy readiness detection\n\nReplace the fixed 1500ms sleep in RunProcesses with event-driven proxy\nregistration detection by monitoring frpc log output for \"start proxy\nsuccess\" messages.\n\nKey changes:\n- Add thread\n[…]\nle deadline in waitForClientProxyReady so total wait across\n  all proxies does not exceed the given timeout\n- Fix WaitForOutput doc comment to accurately describe single pattern\n  with count semantics",
          "is_bot": false,
          "headline": "test/e2e: replace RunProcesses client sleep with log-based proxy read…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-09T14:28:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "48e890146698fcd3c9e0dd680202ec954032ed07",
          "body": "* test/e2e: optimize RunFrps/RunFrpc with process exit detection\n\nRefactor Process to track subprocess lifecycle via a done channel,\nreplacing direct cmd.Wait() in Stop() to avoid double-Wait races.\nRunFrps/RunFrpc now use select on the done channel instead of fixed\nsleeps, allowing short-lived proc\n[…]\ntarted flag to prevent double-Start panics and allow Stop to\nreturn immediately when the process was never started. Use sync.Once\nfor closing the done channel as defense-in-depth against double close.",
          "is_bot": false,
          "headline": "test/e2e: optimize RunFrps/RunFrpc with process exit detection (#5225)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-09T02:28:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bcd2424c24cd1e3c3d0641aaee98679ae7f2a6b3",
          "body": "…ss checks (#5223)\n\nReplace the fixed 500ms sleep after each frps startup in RunProcesses\nwith a TCP dial-based readiness check that polls the server bind port.\nThis reduces the e2e suite wall time from ~97s to ~43s.\n\nAlso simplify the RunProcesses API to accept a single server template\nstring instead of a slice, matching how every call site uses it.",
          "is_bot": false,
          "headline": "test/e2e: optimize e2e test time by replacing sleeps with TCP readine…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-08T15:41:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c7ac12ea0f1fa2b7d244b96e56de0a2500cc27d5",
          "body": "…ssues (#5222)\n\n* server/group: refactor group package with shared abstractions and fix concurrency issues\n\nExtract common patterns into reusable components:\n- groupRegistry[G]: generic concurrent map for group lifecycle management\n- baseGroup: shared plumbing for listener-based groups (TCP, HTTPS, \n[…]\n baseGroup.\nAdd TCPMux group load balancing e2e test.\n\n* server/group: replace tautological assertion with require.NotPanics\n\n* server/group: remove blank line between doc comment and type declaration",
          "is_bot": false,
          "headline": "server/group: refactor with shared abstractions and fix concurrency i…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-08T10:57:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "406ea5ebee035dab2f215a3b6ccafe4363d5b122",
          "body": null,
          "is_bot": false,
          "headline": "chore(version): update version to 0.67.3",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-03-08T10:35:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "81a92d19d5585d1ddb31a448ece895e6f14f83b1",
          "body": null,
          "is_bot": false,
          "headline": "feat(proxy): add traffic counting wrapper for connections",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-03-08T10:33:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eeb0dacfc1908a21ecdf629812cbc2244630fab6",
          "body": "…lookup (#5221)\n\nRemove 4 redundant pointer map write-backs in OpenConnection,\nCloseConnection, AddTrafficIn, and AddTrafficOut since the map stores\npointers and mutations are already visible without reassignment.\n\nOptimize GetProxiesByTypeAndName from O(n) full map scan to O(1) direct\nmap lookup by proxy name.",
          "is_bot": false,
          "headline": "pkg/metrics/mem: remove redundant map write-backs and optimize proxy …",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-08T02:40:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "535eb3db3525fac4b173776ee6c77c1aeb96162a",
          "body": null,
          "is_bot": false,
          "headline": "refactor: use maps.Clone and slices.Concat (#5220)",
          "author_name": "Oleksandr Redko",
          "author_login": "alexandear",
          "committed_at": "2026-03-08T02:38:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "605f3bdece225135253c4a0a53e892e5166b7e50",
          "body": "… (#5219)\n\nExtract two shared helpers to eliminate duplicated code across STCP,\nSUDP, and XTCP visitors:\n\n- dialRawVisitorConn: handles ConnectServer + NewVisitorConn handshake\n  (auth, sign key, 10s read deadline, error check)\n- wrapVisitorConn: handles encryption + pooled compression wrapping,\n  returning a recycleFn for pool resource cleanup\n\nSUDP is upgraded from WithCompression to WithCompressionFromPool,\naligning with the pooled compression used by STCP and XTCP.",
          "is_bot": false,
          "headline": "client/visitor: deduplicate visitor connection handshake and wrapping…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-07T17:03:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "764a626b6ee6ba0cc8024148a19e7c02f181647d",
          "body": "…on (#5218)\n\nExtract closeProxy() helper to eliminate duplicated 4-step cleanup\nsequence (Close, PxyManager.Del, metrics, plugin notify) between\nworker() and CloseProxy().\n\nExtract loginUserInfo() helper to eliminate 4 repeated plugin.UserInfo\nconstructions using LoginMsg fields.\n\nOptimize worker() to snapshot and clear the proxies map under lock,\nthen perform cleanup outside the lock to reduce lock hold time.",
          "is_bot": false,
          "headline": "server/control: deduplicate close-proxy logic and UserInfo constructi…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-07T16:02:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c2454e711465acc16e5aa92018ef491052949b5b",
          "body": null,
          "is_bot": false,
          "headline": "refactor: fix modernize lint issues (#5215)",
          "author_name": "Oleksandr Redko",
          "author_login": "alexandear",
          "committed_at": "2026-03-07T15:10:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "017d71717f8a64d6ab7d3798b7258f429a7baaed",
          "body": "… (#5217)\n\nReplace 10 positional parameters in NewControl() with a single\nSessionContext struct, matching the client-side pattern. This also\neliminates the post-construction mutation of clientRegistry and\nremoves two TODO comments.",
          "is_bot": false,
          "headline": "server: introduce SessionContext to encapsulate NewControl parameters…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-07T12:17:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bd200b1a3b64845c23ca1c8fa371acfe1cc189f8",
          "body": null,
          "is_bot": false,
          "headline": "fix: typos in comments, tests, functions (#5216)",
          "author_name": "Oleksandr Redko",
          "author_login": "alexandear",
          "committed_at": "2026-03-07T10:43:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c70ceff370986a83ad3de5d62455e8cac7d5e0f2",
          "body": "…(#5214)\n\n- pkg/nathole: add RLock when reading clientCfgs map in PreCheck path\n  to prevent concurrent map read/write crash\n- server/proxy: fix error variable shadowing in GetWorkConnFromPool\n  that could return a closed connection with nil error\n- pkg/util/net: check ListenUDP error before spawning goroutines\n  and assign readConn to struct field so Close() works correctly",
          "is_bot": false,
          "headline": "fix: three high-severity bugs across nathole, proxy, and udp modules …",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-07T05:36:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bb3d0e71401b94433753398272f35fdea27097b1",
          "body": "…#5213)\n\n- Replace duplicate parseBasicAuth with existing httppkg.ParseBasicAuth\n- Extract buildDomains helper in BaseProxy for HTTP/HTTPS/TCPMux proxies\n- Extract toProxyStats helper to deduplicate ProxyStats construction\n- Extract startVisitorListener helper in BaseProxy for STCP/SUDP proxies\n- Extract acceptLoop helper in BaseVisitor for STCP/XTCP visitors",
          "is_bot": false,
          "headline": "deduplicate common logic across proxy, visitor, and metrics modules (…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-07T04:00:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cf396563f8ebf86d74ae849b0f2a5c33269203e8",
          "body": "* client/proxy: extract wrapWorkConn to deduplicate UDP/SUDP connection wrapping\n\nMove the repeated rate-limiting, encryption, and compression wrapping\nlogic from UDPProxy and SUDPProxy into a shared BaseProxy.wrapWorkConn\nmethod, reducing ~18 lines of duplication in each proxy type.\n\n* client/proxy\n[…]\ny types from WithCompression to WithCompressionFromPool.\nTCP non-plugin path calls recycleFn via defer after Join; plugin and\nUDP/SUDP paths skip recycle (objects are GC'd safely, per golib contract).",
          "is_bot": false,
          "headline": "client/proxy: unify work conn wrapping across all proxy types (#5212)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T17:33:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0b4f83cd04db1e6fc11669f6fa3d86f8be156942",
          "body": "…5210)\n\n- slices.SortedFunc + maps.Values + cmp.Compare instead of manual\n  map-to-slice collection + sort.Slice (source/aggregator.go)\n- strings.CutSuffix instead of HasSuffix+TrimSuffix, and deduplicate\n  error handling in BandwidthQuantity.UnmarshalString (types/types.go)",
          "is_bot": false,
          "headline": "pkg/config: use modern Go stdlib for sorting and string operations (#…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T15:13:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9f7a1a9f262930e032380cbd8a38c1f7978c7a6",
          "body": "- strings.CutPrefix instead of HasPrefix+TrimPrefix (naming, legacy)\n- slices.Contains instead of manual loop (plugin/server)\n- min/max builtins instead of manual comparisons (nathole)",
          "is_bot": false,
          "headline": "pkg: use modern Go stdlib functions to simplify code (#5209)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T14:14:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d6445933427c14efc5abf3452a976dc5baf6423e",
          "body": "…208)\n\nConsolidate the separate custom-domain loop and subdomain block into a\nsingle unified loop, matching the pattern already applied to HTTPProxy\nin PR #5207. No behavioral change.",
          "is_bot": false,
          "headline": "server/proxy: simplify HTTPS and TCPMux proxy domain registration (#5…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T13:31:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "427c4ca3ae1fad712af0391be47840f9f6f3e7a5",
          "body": "…licate loop (#5207)\n\nThe Run() method had two nearly identical loop blocks for registering\ncustom domains and subdomain, with the same group/non-group registration\nlogic copy-pasted (~30 lines of duplication).\n\nConsolidate by collecting all domains into a single slice first, then\niterating once with the shared registration logic. Also fixes a minor\ninconsistency where the custom domain block used routeConfig.Domain in\nCanonicalAddr but the subdomain block used tmpRouteConfig.Domain.",
          "is_bot": false,
          "headline": "server/proxy: simplify HTTP proxy domain registration by removing dup…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T13:17:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f2d1f3739ad06e38e77ab77c162cbc9b871ca2d4",
          "body": "…e value copy (#5206)\n\nIn AddPrefix, the loop `for _, p := range l.prefixes` creates a copy\nof each element. Assignments to p.Value and p.Priority only modify\nthe local copy, not the original slice element, causing updates to\nexisting prefixes to be silently lost.\n\nThis affects client/service.go whe\n[…]\nwould persist\nin log output instead of being updated to the new one.\n\nFix by using index-based access `l.prefixes[i]` to modify the\noriginal slice element, and add break since prefix names are unique.",
          "is_bot": false,
          "headline": "pkg/util/xlog: fix AddPrefix not updating existing prefix due to rang…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T12:44:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c23894f156eb6a7d55c6cfd47ae5ea1826e51587",
          "body": "- pkg/transport/tls.go: check AppendCertsFromPEM return value and\n  return clear error when CA file contains no valid PEM certificates\n- pkg/plugin/client/http2http.go: set ReadHeaderTimeout to 60s to\n  match other plugins and prevent slow header attacks\n- pkg/plugin/client/http2https.go: same ReadHeaderTimeout fix",
          "is_bot": false,
          "headline": "fix: validate CA cert parsing and add missing ReadHeaderTimeout (#5205)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T09:59:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cb459b02b618850300b9c3d1aae9cb716d3487bf",
          "body": "- pkg/util/net/websocket.go: store ln parameter in struct to prevent\n  nil pointer panic when Addr() is called\n- pkg/auth/oidc.go: replace unsynchronized []string with map + RWMutex\n  for subjectsFromLogin to fix data race across concurrent connections",
          "is_bot": false,
          "headline": "fix: WebsocketListener nil panic and OIDC auth data race (#5204)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T08:51:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f633fe363ae20d244e23b77b8dc5260b3171e8f",
          "body": "- pkg/nathole/nathole.go: add pool.PutBuf(buf) on ReadFromUDP error\n  and DecodeMessageInto error paths in waitDetectMessage\n- pkg/proto/udp/udp.go: add defer pool.PutBuf(buf) in writerFn to\n  ensure buffer is returned when the goroutine exits",
          "is_bot": false,
          "headline": "fix: return buffers to pool on error paths to reduce GC pressure (#5203)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T07:55:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c62a1da1611ed6a52893bc81108c31788b625065",
          "body": "Fix connection leaks in multiple error paths across client and server:\n- server/proxy/http: close tmpConn when WithEncryption fails\n- client/proxy: close localConn when ProxyProtocol WriteTo fails\n- client/visitor/sudp: close visitorConn on all error paths in getNewVisitorConn\n- client/visitor/xtcp:\n[…]\n/plugin/client/unix_domain_socket: close localConn and connInfo.Conn when WriteTo fails, close connInfo.Conn when DialUnix fails\n- pkg/plugin/client/tls2raw: close tlsConn when Handshake or Dial fails",
          "is_bot": false,
          "headline": "fix: close connections on error paths to prevent resource leaks (#5202)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-06T07:18:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f22f7d539c42071762b8682aa922912c38978801",
          "body": "…200)\n\nFix two bugs in TCPGroup.Listen():\n- Release acquired port when net.Listen fails to prevent port leak\n- Use realPort instead of port for net.Listen to ensure consistency\n  between port manager records and actual listening port",
          "is_bot": false,
          "headline": "server/group: fix port leak and incorrect Listen port in TCPGroup (#5…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-05T18:25:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "462c987f6debaebffa7baf6530e653c2856cea96",
          "body": "…ndant base64 encode/decode (#5198)",
          "is_bot": false,
          "headline": "pkg/msg: change UDPPacket.Content from string to []byte to avoid redu…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-05T17:38:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "541878af4d3950c92b542350b9a4a043080c0980",
          "body": null,
          "is_bot": false,
          "headline": "docs: update release notes for config parsing error improvements (#5196)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-04T16:00:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b7435967b04bd0d4f9261a91af4c31f91006ab80",
          "body": "… errors (#5195)",
          "is_bot": false,
          "headline": "pkg/config: fix line numbers shown incorrectly for TOML type mismatch…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-04T12:53:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "774478d0710e2bac7a85128bbdcd334e2d6581be",
          "body": "…g parsing (#5194)\n\nWhen frpc verify encounters config errors, the error messages now include\nline/column information to help users locate problems:\n\n- TOML syntax errors: report line and column from the TOML parser\n  (e.g., \"toml: line 4, column 11: expected character ]\")\n- Type mismatch errors: re\n[…]\nce unhelpful errors\nlike \"json: cannot unmarshal string into Go value of type v1.ClientConfig\".\n\nhttps://claude.ai/code/session_017HWLfcXS3U2hLoy4dsg8Nv\n\nCo-authored-by: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "pkg/config: improve error messages with line number details for confi…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-04T11:27:30Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "fbeb6ca43affc8878a074a08d463644aad59cf15",
          "body": "…ith typed proxy/visitor models (#5193)",
          "is_bot": false,
          "headline": "refactor: restructure API packages into client/http and server/http w…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-04T09:38:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "381245a4399e1e20e841f7b977305b46e69a856e",
          "body": null,
          "is_bot": false,
          "headline": "build: add noweb tag to allow building without frontend assets (#5189)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-01T17:32:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "01997deb98f159f798fc010e1f06d8c3c7a5089a",
          "body": null,
          "is_bot": false,
          "headline": "add persistent proxy/visitor store with CRUD API and web UI (#5188)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-03-01T17:09:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "83847f32ed4f0b5598f6601101b6b20f1e68f5f5",
          "body": null,
          "is_bot": false,
          "headline": "feat(controller): add API to close proxy by name",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-20T23:42:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f2c26761d922125ac8de522be83dcac7cee81bc",
          "body": null,
          "is_bot": false,
          "headline": "refactor(release): update changelog generation process",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-20T07:28:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c836e276a74c102a78411fd75161e21d867b7601",
          "body": null,
          "is_bot": false,
          "headline": "style(plugin): reorder import statements for clarity",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-20T07:15:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d16f07d3e8db3d07747242112956a8a52fb4ca45",
          "body": "…s' (#1) from https-acme into dev\n\nReviewed-on: https://git.lolia.link/Lolia-FRP/lolia-frp/pulls/1",
          "is_bot": false,
          "headline": "Merge pull request 'feat(proxy): add AutoTLS support for HTTPS plugin…",
          "author_name": "Mxmilu",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-20T07:07:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6bd5eb92c3d4c9aacbe3884473010387a35d33e6",
          "body": null,
          "is_bot": false,
          "headline": "feat(proxy): add AutoTLS support for HTTPS plugins",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-19T01:01:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "09602f5d74ae9123b1cf76e3ab6b334221f33bd3",
          "body": null,
          "is_bot": false,
          "headline": "chore(gitattributes): add .gitattributes for line endings",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-18T22:37:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0347325fc1c41ad31026fba08b6c0277fae8e9b",
          "body": "…h subdomain host (#5178)",
          "is_bot": false,
          "headline": "pkg/config: fix custom domain validation to prevent false matches wit…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-02-13T06:10:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d7559b39e29ebb56c00618b7d1b618119dbf1dcf",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'upstream/dev' into dev",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-07T16:57:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "519368b1fd22bd180baba3da6f4c3f46816f600b",
          "body": "…ad of JSON (#5163)",
          "is_bot": false,
          "headline": "server/api: fix DeleteProxies endpoint returning empty response inste…",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-02-06T03:22:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72d147dfa5ee44d48a8feab8ee2353d0687d2596",
          "body": null,
          "is_bot": false,
          "headline": "fix(workflows): add missing architectures for build matrix",
          "author_name": "Mxmilu666",
          "author_login": "Mxmilu666",
          "committed_at": "2026-02-04T11:32:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9634fd99d1be11b08fa5524bacf30a95d58058af",
          "body": null,
          "is_bot": false,
          "headline": "web: ensure npm install runs before build (#5154)",
          "author_name": "fatedier",
          "author_login": "fatedier",
          "committed_at": "2026-02-04T04:55:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 12,
      "commits_last_year": 176,
      "latest_release_at": "2026-07-11T20:15:30Z",
      "latest_release_tag": "v0.69.3",
      "releases_from_tags": false,
      "days_since_last_push": 13,
      "active_weeks_last_year": 35,
      "days_since_latest_release": 13,
      "mean_days_between_releases": 19.9
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 37,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/fatedier/frp",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": false,
          "registry_url": "https://pkg.go.dev/github.com/fatedier/frp",
          "is_deprecated": false,
          "latest_version": "v0.70.1",
          "repository_url": "https://github.com/fatedier/frp",
          "versions_count": 116,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-23T07:34:31Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 2
        }
      ]
    },
    "popularity": {
      "forks": 4,
      "stars": 20,
      "watchers": 1,
      "fork_history": {
        "days": [
          {
            "date": "2026-02-27",
            "count": 1
          },
          {
            "date": "2026-02-28",
            "count": 1
          },
          {
            "date": "2026-04-14",
            "count": 1
          },
          {
            "date": "2026-07-05",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 4,
        "total_forks": 4
      },
      "star_history": null,
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "web/frpc/Makefile",
        "web/frps/Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "web/frpc/tsconfig.json",
        "web/frps/tsconfig.json"
      ],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 26183,
      "source_files_sampled": 373,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 1063
    },
    "dependencies": {
      "manifests": [
        "go.mod",
        "web/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "npm"
      ],
      "dependencies": [
        {
          "name": "github.com/armon/go-socks5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20160902184237-e75332964ef5"
        },
        {
          "name": "github.com/charmbracelet/lipgloss",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "github.com/charmbracelet/log",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.4.2"
        },
        {
          "name": "github.com/coreos/go-oidc/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.14.1"
        },
        {
          "name": "github.com/fatedier/golib",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/gorilla/mux",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.8.1"
        },
        {
          "name": "github.com/gorilla/websocket",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.0"
        },
        {
          "name": "github.com/hashicorp/yamux",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.1"
        },
        {
          "name": "github.com/onsi/ginkgo/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.23.4"
        },
        {
          "name": "github.com/onsi/gomega",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.36.3"
        },
        {
          "name": "github.com/pelletier/go-toml/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.2.0"
        },
        {
          "name": "github.com/pion/stun/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.1.1"
        },
        {
          "name": "github.com/pires/go-proxyproto",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/prometheus/client_golang",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.19.1"
        },
        {
          "name": "github.com/quic-go/quic-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.55.0"
        },
        {
          "name": "github.com/rodaine/table",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.0"
        },
        {
          "name": "github.com/samber/lo",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.47.0"
        },
        {
          "name": "github.com/songgao/water",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20200317203138-2b4b6d7c09d8"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.8.0"
        },
        {
          "name": "github.com/spf13/pflag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.5"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/tidwall/gjson",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.17.1"
        },
        {
          "name": "github.com/vishvananda/netlink",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.0"
        },
        {
          "name": "github.com/xtaci/kcp-go/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.6.13"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.49.0"
        },
        {
          "name": "golang.org/x/net",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.52.0"
        },
        {
          "name": "golang.org/x/oauth2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.28.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.0"
        },
        {
          "name": "golang.org/x/sys",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.42.0"
        },
        {
          "name": "golang.org/x/time",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.10.0"
        },
        {
          "name": "golang.zx2c4.com/wireguard",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20231211153847-12269c276173"
        },
        {
          "name": "gopkg.in/ini.v1",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.67.0"
        },
        {
          "name": "k8s.io/apimachinery",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.28.8"
        },
        {
          "name": "k8s.io/client-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.28.8"
        },
        {
          "name": "k8s.io/utils",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20230406110748-d93618cff8a2"
        },
        {
          "name": "element-plus",
          "manifest": "web/frpc/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.13.0"
        },
        {
          "name": "pinia",
          "manifest": "web/frpc/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.0.4"
        },
        {
          "name": "vue",
          "manifest": "web/frpc/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.5.26"
        },
        {
          "name": "vue-router",
          "manifest": "web/frpc/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.6.4"
        },
        {
          "name": "element-plus",
          "manifest": "web/frps/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.13.0"
        },
        {
          "name": "vue",
          "manifest": "web/frps/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.5.26"
        },
        {
          "name": "vue-router",
          "manifest": "web/frps/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.6.4"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 0,
        "closed_ratio": 1,
        "closed_issues": 1,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "fatedier",
          "commits": 1197,
          "avatar_url": "https://avatars.githubusercontent.com/u/7346661?v=4"
        },
        {
          "type": "User",
          "login": "Mxmilu666",
          "commits": 60,
          "avatar_url": "https://avatars.githubusercontent.com/u/82694310?v=4"
        },
        {
          "type": "User",
          "login": "bingtianbaihua",
          "commits": 20,
          "avatar_url": "https://avatars.githubusercontent.com/u/160074757?v=4"
        },
        {
          "type": "User",
          "login": "yuyulei",
          "commits": 13,
          "avatar_url": "https://avatars.githubusercontent.com/u/18277081?v=4"
        },
        {
          "type": "User",
          "login": "blizard863",
          "commits": 12,
          "avatar_url": "https://avatars.githubusercontent.com/u/4812302?v=4"
        },
        {
          "type": "User",
          "login": "Hurricanezwf",
          "commits": 9,
          "avatar_url": "https://avatars.githubusercontent.com/u/7840122?v=4"
        },
        {
          "type": "User",
          "login": "maodanp",
          "commits": 9,
          "avatar_url": "https://avatars.githubusercontent.com/u/3859951?v=4"
        },
        {
          "type": "User",
          "login": "vashstorm",
          "commits": 9,
          "avatar_url": "https://avatars.githubusercontent.com/u/5261491?v=4"
        },
        {
          "type": "User",
          "login": "velovix",
          "commits": 7,
          "avatar_url": "https://avatars.githubusercontent.com/u/2856634?v=4"
        },
        {
          "type": "User",
          "login": "fakeboboliu",
          "commits": 4,
          "avatar_url": "https://avatars.githubusercontent.com/u/7552030?v=4"
        }
      ],
      "contributors_sampled": 100,
      "top_contributor_share": 0.822
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "build-all.yaml",
        "docker-build.yml",
        "golangci-lint.yml",
        "goreleaser.yml",
        "release.yaml",
        "stale.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yml",
        "eslint.config.js"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum",
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 12 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 1,
            "reason": "dependency not pinned by hash detected -- score normalized to 1",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "43 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "0ff55575718390d602c76180e13821c1851f2e50",
        "ran_at": "2026-07-25T14:02:08Z",
        "aggregate_score": 3.5,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-25T03:38:15Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/Lolia-FRP/lolia-frp",
    "host": "github.com",
    "name": "lolia-frp",
    "owner": "Lolia-FRP"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 60,
      "inputs": {
        "security": 35,
        "vitality": 85,
        "community": 37,
        "governance": 50,
        "engineering": 84
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 85,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 81,
            "inputs": {
              "commits_last_year": 176,
              "human_commit_share": 1,
              "days_since_last_push": 13,
              "active_weeks_last_year": 35
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 13 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 13
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "35/52 weeks with commits",
                "points": 24.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 35
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "176 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 176
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 12,
              "latest_release_tag": "v0.69.3",
              "releases_from_tags": false,
              "days_since_latest_release": 13,
              "mean_days_between_releases": 19.9
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "12 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 12
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 13 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 13
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~19.9 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 19.9
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 13,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 13 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 13
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 37,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 25,
            "inputs": {
              "forks": 4,
              "stars": 20,
              "watchers": 1,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "20 stars",
                "points": 20.7,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 20
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "4 forks",
                "points": 4,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "1 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 50,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "at_risk",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 36,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 100,
              "top_contributor_share": 0.822
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 82% of commits",
                "points": 4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 82
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "100 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 12 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 76,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 0,
              "closed_issues": 1,
              "issue_closed_ratio": 1,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "100% of issues closed",
                "points": 46.8,
                "status": "met",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "no decided pull requests or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_decided_prs_or_data",
                    "params": {}
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 42,
            "inputs": {
              "followers": 5,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "Lolia-FRP",
              "public_repos": 4,
              "account_age_days": 286
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "5 followers of Lolia-FRP",
                "points": 5.6,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 5,
                      "login": "Lolia-FRP"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "4 public repos, account ~0 yr old",
                "points": 6.7,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 4
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 84,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 80,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "6 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yml, eslint.config.js",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml, eslint.config.js"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "frp",
                "lolia"
              ],
              "has_wiki": false,
              "homepage": "https://lolia.link",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://lolia.link",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "2 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 35,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 35,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 3.5
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 12 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 0.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "43 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 10
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 83,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.86,
              "agent_instruction_files": [
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 1063
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "86 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 86,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum",
                "package-lock.json"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "web/frpc/Makefile",
                "web/frps/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "web/frpc/tsconfig.json",
                "web/frps/tsconfig.json"
              ],
              "agent_commit_share": 0.01,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, web/frpc/Makefile, web/frps/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, web/frpc/Makefile, web/frps/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yml, eslint.config.js",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml, eslint.config.js"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "web/frpc/tsconfig.json, web/frps/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "web/frpc/tsconfig.json, web/frps/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "1 of the last 100 commits agent-authored or agent-credited",
                "points": 2,
                "status": "partial",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 1,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 1,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 26183,
              "source_files_sampled": 373,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/373 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 373,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "go package 'github.com/fatedier/frp' points at a different repository (https://github.com/fatedier/frp); excluded from ecosystem scoring",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-25T14:02:25.638283Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/l/Lolia-FRP/lolia-frp.svg",
  "full_name": "Lolia-FRP/lolia-frp",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsGo.