Public record
Software health reportschema 0.27.0 · metrics 2.5.0 · 2026-08-02 15:21 UTC

MainfluxLabs / mainflux

GoApache-2.0★ 153 stars⑂ 43 forkssince Aug 2022View on GitHub ↗
KindCommand-line toolhow this is determined

MainfluxLabs/mainflux holds a health index of 89 out of 100, placing it in the Excellent band. It scores highest on Vitality (99/100) and lowest on Security (44/100). It was last updated 4 days ago. 4 contributors account for most of its recent work.

89
overall / 100
Excellent

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean, calibrated against the distribution of the public record so bands carry percentile meaning; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At Risk ceiling of 34.

89
Exceptional93-100The record's top tier (≈ top 5%); essentially all checked criteria met
Excellent80-92Strong across the board; minor gaps
Good65-79Healthy; gaps are limited and manageable
Moderate50-64Acceptable with notable gaps; review recommended
Weak35-49Material weaknesses across several areas
At Risk20-34Significant weaknesses; adoption warrants caution
Critical1-19Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

The weighted overall 75 is calibrated to 89 on the published index scale (record calibration 2026-08-02).

Ownership

MainfluxLabsOrganization
24 followers9 public repossince May 2017

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
Gogithub.com/MainfluxLabs/mainfluxv0.41.1-3911 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

99Exceptional · 21% of overall
How it's scored
36/36Push recency — last push 4 days ago
35.3/36Commit cadence — 51/52 weeks with commits
18/18Commit volume — 311 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year311
human_commit_share1
days_since_last_push4
active_weeks_last_year51

Release discipline

100Exceptional
How it's scored
27/27Ships releases — 37 releases published
36/36Release recency — latest release 9 days ago
27/27Release cadence — a release every ~17.5 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count37
latest_release_tagv0.41.1
releases_from_tagsno
days_since_latest_release9
mean_days_between_releases17.5
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

64Moderate · 17% of overall
How it's scored
35.4/60Stars — 153 stars
13.5/25Forks — 43 forks
3.9/15Watchers — 6 watchers
Inputs used
forks43
stars153
watchers6
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (Apache-2.0)
18/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
readme_badges
has_contributingyes
has_issue_templateno
has_code_of_conductno
readme_badge_services
has_pull_request_templateyes

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

84Excellent · 23% of overall
How it's scored
43.2/54Bus factor — 4 contributor(s) cover half of all commits
17.6/22.5Commit distribution — top contributor authored 22% of commits
13.5/13.5Contributor breadth — 63 contributors
10/10OpenSSF Scorecard: Contributors — project has 20 contributing companies or organizations
Inputs used
bus_factor4
contributors_sampled63
top_contributor_share0.217
How it's scored
39.7/42Issue resolution — 94% of issues closed
29.5/30PR acceptance — 774/786 decided PRs merged
0/13Newcomer PR acceptance — no first-time contributor's PR decided in 30d
13.5/15OpenSSF Scorecard: Code-Review — Found 28/30 approved changesets -- score normalized to 9
Inputs used
merged_prs774
open_issues28
closed_issues479
prs_merged_7d
prs_decided_7d
prs_merged_30d
prs_decided_30d
issue_closed_ratio0.945
closed_unmerged_prs12
first_time_authors_30d
first_time_prs_merged_30d
first_time_prs_decided_30d
Excluded from scoring (no data or not applicable): newcomer_pr_acceptance. Remaining weights renormalized.
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
10.1/25Owner reach — 24 followers of MainfluxLabs
19.3/25Track record — 9 public repos, account ~9 yr old
Inputs used
followers24
owner_typeOrganization
is_verified
owner_loginMainfluxLabs
public_repos9
account_age_days3,361

Package maintenance

100Exceptional
How it's scored
25/25Published & resolvable — 1 package(s) on go
35/35Publish recency — latest publish 11 days ago
20/20Version history — 39 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesgithub.com/MainfluxLabs/mainflux
ecosystemsgo
any_deprecatedno
min_days_since_publish11

Engineering Quality

Are baseline engineering and documentation practices in place?

76Good · 19% of overall
How it's scored
24/24CI workflows — 2 workflow(s)
24/24Tests present
16/16Linter config — .golangci.yaml, .golangci.yml
0/9.6Pre-commit hooks
6.4/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 29 out of 29 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigyes
has_linter_configyes
has_precommit_configno

Documentation

55Moderate
How it's scored
30/30README
0/25Documentation directory
15/15Documentation / homepage site — https://mainflux.com
0/10Repository description
0/10Topics
10/10Wiki
Inputs used
topics
has_wikiyes
homepagehttps://mainflux.com
has_readmeyes
has_docs_dirno
has_descriptionno

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

44Weak · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
2.5/2.5CI-Tests — 29 out of 29 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
6.8/7.5Code-Review — Found 28/30 approved changesets -- score normalized to 9
2.5/2.5Contributors — project has 20 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 48 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated15
scorecard_versionv5.5.0
checks_inconclusive3
scorecard_aggregate4.6
Excluded from scoring (no data or not applicable): branch_protection, packaging, signed_releases. Remaining weights renormalized.
How it's scored
3.8/35Direct dependencies free of known advisories — 5 affected: github.com/jackc/pgx/v5 v5.5.4 (critical 9.8), golang.org/x/crypto v0.49.0 (critical 10.0), google.golang.org/grpc v1.64.1 (critical 9.1), +2 more
0/25Indirect dependencies free of known advisories — transitive set not separable from development and test dependencies in this scope
23.6/40No advisories left outstanding — 3 advisory-carrying package(s) unaddressed past 90 days; oldest published 136 days ago
Inputs used
sourceosv
advisories86
affected_packages11
assessed_packages114
unassessed_packages0
affected_by_severitycritical 3, high 4, moderate 2, unknown 2
direct_affected_packages5
Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 114 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight (4%): agent tooling is a real maintenance signal, but a repository with none can still reach 100/100.

62Moderate · 4% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 97 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.97
agent_instruction_files
agent_instruction_max_bytes
How it's scored
18/18One-command bootstrap — Makefile, docker/ssl/Makefile, tools/mqtt-bench/Makefile, tools/provision/Makefile, vendor/github.com/go-redis/redis/v8/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/hashicorp/hcl/Makefile, vendor/github.com/matttproud/golang_protobuf_extensions/pbutil/Makefile, vendor/github.com/opentracing/opentracing-go/Makefile, vendor/github.com/pelletier/go-toml/Makefile, vendor/github.com/pion/dtls/v2/Makefile, vendor/github.com/pkg/errors/Makefile, vendor/github.com/prometheus/procfs/Makefile, vendor/github.com/rabbitmq/amqp091-go/Makefile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/uber/jaeger-client-go/Makefile, vendor/go.uber.org/atomic/Makefile, vendor/google.golang.org/grpc/Makefile, vendor/gopkg.in/ini.v1/Makefile
22/22Automated tests
11/11Lint / format config — .golangci.yaml, .golangci.yml
11/11Static type checking — Go (statically typed)
10/10Reproducible environment — Dockerfile, lockfile
0/10Demonstrated agent practice — no agent-authored commits among the last 100
0/8Automated maintenance — no automated dependency updates observed
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfilesgo.sum
has_dockerfileyes
typed_languageyes
bootstrap_filesMakefile, docker/ssl/Makefile, tools/mqtt-bench/Makefile, tools/provision/Makefile, vendor/github.com/go-redis/redis/v8/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/hashicorp/hcl/Makefile, vendor/github.com/matttproud/golang_protobuf_extensions/pbutil/Makefile, vendor/github.com/opentracing/opentracing-go/Makefile, vendor/github.com/pelletier/go-toml/Makefile, vendor/github.com/pion/dtls/v2/Makefile, vendor/github.com/pkg/errors/Makefile, vendor/github.com/prometheus/procfs/Makefile, vendor/github.com/rabbitmq/amqp091-go/Makefile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/uber/jaeger-client-go/Makefile, vendor/go.uber.org/atomic/Makefile, vendor/google.golang.org/grpc/Makefile, vendor/gopkg.in/ini.v1/Makefile
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0
toolchain_manifestsgo.mod
dependency_bot_commit_share0
How it's scored
45/45Type-checkable code — Go (statically typed)
54.8/55Manageable file sizes — 3/734 source files over 60KB
Inputs used
primary_languageGo
largest_source_bytes371,076
source_files_sampled734
oversized_source_files3
How it's scored
40/40API schema (OpenAPI/GraphQL/proto) — pkg/proto/mfx.proto, vendor/github.com/docker/docker/api/types/swarm/runtime/plugin.proto
0/20MCP server
0/40Runnable examples
Inputs used
example_dirs
has_mcp_signalno
api_schema_filespkg/proto/mfx.proto, vendor/github.com/docker/docker/api/types/swarm/runtime/plugin.proto

Key facts

153GitHub stars
63contributors
311commits, last 12 months
4days since last push
37releases
4bus factor
28open issues
Gopackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token

More detail

Star and fork history 0 ★ / 43 ⇿
0Stars
43Forks
36Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

010203040504322022-112024-092026-07
Major 0Minor 24Patch 12

Each point covers 4 days.

OpenSSF Scorecard 4.6 / 10
4.6aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-08-02 15:21 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
10CI-Tests29 out of 29 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
9Code-ReviewFound 28/30 approved changesets -- score normalized to 9
10Contributorsproject has 20 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
n/aSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities48 existing vulnerabilities detected
Direct dependencies 46
RegistryPackageVersion constraintManifest
Gogithub.com/MainfluxLabs/senmlv1.0.5go.mod
Gogithub.com/Shopify/go-luav0.0.0-20250718183320-1e37f32ad7d0go.mod
Gogithub.com/Shopify/goluagov0.0.0-20240527182001-ec4ec6c26eabgo.mod
Gogithub.com/cenkalti/backoff/v4v4.1.3go.mod
Gogithub.com/docker/dockerv28.3.3+incompatiblego.mod
Gogithub.com/eclipse/paho.mqtt.golangv1.5.1go.mod
Gogithub.com/fatih/colorv1.13.0go.mod
Gogithub.com/fiorix/go-smppv0.0.0-20210403173735-2894b96e70bago.mod
Gogithub.com/go-kit/kitv0.13.0go.mod
Gogithub.com/go-kit/logv0.2.1go.mod
Gogithub.com/go-redis/redis/v8v8.11.5go.mod
Gogithub.com/go-zoo/bonev1.3.0go.mod
Gogithub.com/goburrow/modbusv0.1.0go.mod
Gogithub.com/gofrs/uuidv4.2.0+incompatiblego.mod
Gogithub.com/gogo/protobufv1.3.2go.mod
Gogithub.com/golang-jwt/jwt/v4v4.5.2go.mod
Gogithub.com/golang/protobufv1.5.4go.mod
Gogithub.com/gorilla/websocketv1.5.3go.mod
Gogithub.com/hokaccha/go-prettyjsonv0.0.0-20211117102719-0474bc63780fgo.mod
Gogithub.com/jackc/pgerrcodev0.0.0-20220416144525-469b46aa5efago.mod
Gogithub.com/jackc/pgx/v5v5.5.4go.mod
Gogithub.com/jmoiron/sqlxv1.3.5go.mod
Gogithub.com/nats-io/nats.gov1.15.0go.mod
Gogithub.com/oklog/ulid/v2v2.1.0go.mod
Gogithub.com/opentracing/opentracing-gov1.2.0go.mod
Gogithub.com/ory/dockertest/v3v3.9.1go.mod
Gogithub.com/pelletier/go-tomlv1.9.5go.mod
Gogithub.com/plgd-dev/go-coap/v2v2.6.0go.mod
Gogithub.com/prometheus/client_golangv1.11.1go.mod
Gogithub.com/rabbitmq/amqp091-gov1.4.0go.mod
Gogithub.com/robfig/cron/v3v3.0.1go.mod
Gogithub.com/rubenv/sql-migratev1.1.2go.mod
Gogithub.com/spf13/cobrav1.5.0go.mod
Gogithub.com/spf13/viperv1.12.0go.mod
Gogithub.com/stretchr/testifyv1.8.1go.mod
Gogithub.com/subosito/gotenvv1.4.0go.mod
Gogithub.com/uber/jaeger-client-gov2.30.0+incompatiblego.mod
Gogolang.org/x/cryptov0.49.0go.mod
Gogolang.org/x/netv0.52.0go.mod
Gogolang.org/x/oauth2v0.35.0go.mod
Gogolang.org/x/syncv0.20.0go.mod
Gogolang.org/x/timev0.0.0-20211116232009-f0f3c7e86c11go.mod
Gogonum.org/v1/gonumv0.11.0go.mod
Gogoogle.golang.org/grpcv1.64.1go.mod
Gogoogle.golang.org/protobufv1.34.2go.mod
Gogopkg.in/gomail.v2v2.0.0-20160411212932-81ebce5c23dfgo.mod
All dependencies 114

Full resolved dependency set from the GitHub dependency graph: 46 direct and 68 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
Gogithub.com/cenkalti/backoff/v4v4.1.3direct
Gogithub.com/docker/dockerv28.3.3+incompatibledirect
Gogithub.com/eclipse/paho.mqtt.golangv1.5.1direct
Gogithub.com/fatih/colorv1.13.0direct
Gogithub.com/fiorix/go-smppv0.0.0-20210403173735-2894b96e70badirect
Gogithub.com/go-kit/kitv0.13.0direct
Gogithub.com/go-kit/logv0.2.1direct
Gogithub.com/go-redis/redis/v8v8.11.5direct
Gogithub.com/go-zoo/bonev1.3.0direct
Gogithub.com/goburrow/modbusv0.1.0direct
Gogithub.com/gofrs/uuidv4.2.0+incompatibledirect
Gogithub.com/gogo/protobufv1.3.2direct
Gogithub.com/golang-jwt/jwt/v4v4.5.2direct
Gogithub.com/golang/protobufv1.5.4direct
Gogithub.com/gorilla/websocketv1.5.3direct
Gogithub.com/hokaccha/go-prettyjsonv0.0.0-20211117102719-0474bc63780fdirect
Gogithub.com/jackc/pgerrcodev0.0.0-20220416144525-469b46aa5efadirect
Gogithub.com/jackc/pgx/v5v5.5.4direct
Gogithub.com/jmoiron/sqlxv1.3.5direct
Gogithub.com/mainfluxlabs/senmlv1.0.5direct
Gogithub.com/nats-io/nats.gov1.15.0direct
Gogithub.com/oklog/ulid/v2v2.1.0direct
Gogithub.com/opentracing/opentracing-gov1.2.0direct
Gogithub.com/ory/dockertest/v3v3.9.1direct
Gogithub.com/pelletier/go-tomlv1.9.5direct
Gogithub.com/plgd-dev/go-coap/v2v2.6.0direct
Gogithub.com/prometheus/client_golangv1.11.1direct
Gogithub.com/rabbitmq/amqp091-gov1.4.0direct
Gogithub.com/robfig/cron/v3v3.0.1direct
Gogithub.com/rubenv/sql-migratev1.1.2direct
Gogithub.com/shopify/go-luav0.0.0-20250718183320-1e37f32ad7d0direct
Gogithub.com/shopify/goluagov0.0.0-20240527182001-ec4ec6c26eabdirect
Gogithub.com/spf13/cobrav1.5.0direct
Gogithub.com/spf13/viperv1.12.0direct
Gogithub.com/stretchr/testifyv1.8.1direct
Gogithub.com/subosito/gotenvv1.4.0direct
Gogithub.com/uber/jaeger-client-gov2.30.0+incompatibledirect
Gogolang.org/x/cryptov0.49.0direct
Gogolang.org/x/netv0.52.0direct
Gogolang.org/x/oauth2v0.35.0direct
Gogolang.org/x/syncv0.20.0direct
Gogolang.org/x/timev0.0.0-20211116232009-f0f3c7e86c11direct
Gogonum.org/v1/gonumv0.11.0direct
Gogoogle.golang.org/grpcv1.64.1direct
Gogoogle.golang.org/protobufv1.34.2direct
Gogopkg.in/gomail.v2v2.0.0-20160411212932-81ebce5c23dfdirect
Gocloud.google.com/go/compute/metadatav0.3.0indirect
Godario.cat/mergov1.0.2indirect
Gogithub.com/azure/go-ansitermv0.0.0-20170929234023-d6e3b3328b78indirect
Gogithub.com/beorn7/perksv1.0.1indirect
Gogithub.com/cespare/xxhash/v2v2.2.0indirect
Gogithub.com/containerd/continuityv0.3.0indirect
Gogithub.com/davecgh/go-spewv1.1.1indirect
Gogithub.com/dgryski/go-rendezvousv0.0.0-20200823014737-9f7001d12a5findirect
Gogithub.com/docker/cliv28.3.3+incompatibleindirect
Gogithub.com/docker/go-connectionsv0.4.0indirect
Gogithub.com/docker/go-unitsv0.4.0indirect
Gogithub.com/dsnet/golib/memfilev1.0.0indirect
Gogithub.com/fsnotify/fsnotifyv1.5.4indirect
Gogithub.com/fxamacker/cbor/v2v2.4.0indirect
Gogithub.com/go-gorp/gorp/v3v3.0.2indirect
Gogithub.com/go-logfmt/logfmtv0.6.1indirect
Gogithub.com/go-viper/mapstructure/v2v2.5.0indirect
Gogithub.com/goburrow/serialv0.1.0indirect
Gogithub.com/google/shlexv0.0.0-20191202100458-e7afc7fbc510indirect
Gogithub.com/hashicorp/hclv1.0.0indirect
Gogithub.com/inconshreveable/mousetrapv1.0.0indirect
Gogithub.com/jackc/pgpassfilev1.0.0indirect
Gogithub.com/jackc/pgservicefilev0.0.0-20221227161230-091c0ba34f0aindirect
Gogithub.com/jackc/puddle/v2v2.2.1indirect
Gogithub.com/lib/pqv1.10.6indirect
Gogithub.com/magiconair/propertiesv1.8.6indirect
Gogithub.com/mattn/go-colorablev0.1.13indirect
Gogithub.com/mattn/go-isattyv0.0.16indirect
Gogithub.com/matttproud/golang_protobuf_extensionsv1.0.1indirect
Gogithub.com/microsoft/go-winiov0.5.2indirect
Gogithub.com/mitchellh/mapstructurev1.5.0indirect
Gogithub.com/moby/docker-image-specv1.3.1indirect
Gogithub.com/moby/termv0.0.0-20201216013528-df9cb8a40635indirect
Gogithub.com/nats-io/nkeysv0.3.0indirect
Gogithub.com/nats-io/nuidv1.0.1indirect
Gogithub.com/nvveen/gottyv0.0.0-20120604004816-cd527374f1e5indirect
Gogithub.com/opencontainers/go-digestv1.0.0indirect
Gogithub.com/opencontainers/image-specv1.0.2indirect
Gogithub.com/opencontainers/runcv1.1.2indirect
Gogithub.com/pelletier/go-toml/v2v2.0.1indirect
Gogithub.com/pion/dtls/v2v2.1.5indirect
Gogithub.com/pion/loggingv0.2.2indirect
Gogithub.com/pion/transportv0.13.0indirect
Gogithub.com/pion/udpv0.1.1indirect
Gogithub.com/pkg/errorsv0.9.1indirect
Gogithub.com/plgd-dev/kit/v2v2.0.0-20211006190727-057b33161b90indirect
Gogithub.com/pmezard/go-difflibv1.0.0indirect
Gogithub.com/prometheus/client_modelv0.2.0indirect
Gogithub.com/prometheus/commonv0.30.0indirect
Gogithub.com/prometheus/procfsv0.7.3indirect
Gogithub.com/sirupsen/logrusv1.8.1indirect
Gogithub.com/spf13/aferov1.8.2indirect
Gogithub.com/spf13/castv1.5.0indirect
Gogithub.com/spf13/jwalterweathermanv1.1.0indirect
Gogithub.com/spf13/pflagv1.0.5indirect
Gogithub.com/uber/jaeger-libv2.4.1+incompatibleindirect
Gogithub.com/x448/float16v0.8.4indirect
Gogithub.com/xeipuuv/gojsonpointerv0.0.0-20180127040702-4e3ac2762d5findirect
Gogithub.com/xeipuuv/gojsonreferencev0.0.0-20180127040603-bd5ef7bd5415indirect
Gogithub.com/xeipuuv/gojsonschemav1.2.0indirect
Gogo.uber.org/atomicv1.10.0indirect
Gogolang.org/x/sysv0.42.0indirect
Gogolang.org/x/textv0.35.0indirect
Gogoogle.golang.org/genproto/googleapis/rpcv0.0.0-20240730163845-b1a4ccb954bfindirect
Gogopkg.in/alexcesaro/quotedprintable.v3v3.0.0-20150716171945-2caba252f4dcindirect
Gogopkg.in/ini.v1v1.66.4indirect
Gogopkg.in/yaml.v2v2.4.0indirect
Gogopkg.in/yaml.v3v3.0.1indirect
Dependency advisories 11

This repository publishes no package the index resolves, so its own dependency graph was assessed — 114 packages, which also include development and test pins that never ship: 11 carry known advisories, of which 5 are direct.

PackageVersionRelationSeverityAdvisoriesFixed in
github.com/jackc/pgx/v5v5.5.4directcritical65.9.2
golang.org/x/cryptov0.49.0directcritical270.52.0
google.golang.org/grpcv1.64.1directcritical41.82.1
github.com/docker/dockerv28.3.3+incompatibledirecthigh1029.3.1
github.com/docker/cliv28.3.3+incompatibleindirecthigh229.2.0+incompatible
github.com/opencontainers/runcv1.1.2indirecthigh181.13.0
github.com/sirupsen/logrusv1.8.1indirecthigh21.9.3
golang.org/x/netv0.52.0directmoderate91.26.3
github.com/pion/dtls/v2v2.1.5indirectmoderate63.1.1
golang.org/x/sysv0.42.0indirectunknown10.44.0
golang.org/x/textv0.35.0indirectunknown10.39.0

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 114749,
      "has_wiki": true,
      "homepage": "https://mainflux.com",
      "languages": {
        "Go": 3752457,
        "Shell": 11658,
        "Makefile": 5984,
        "Dockerfile": 578,
        "JavaScript": 6000,
        "Go Template": 5606
      },
      "pushed_at": "2026-07-29T13:31:17Z",
      "created_at": "2022-08-05T14:42:52Z",
      "owner_type": "Organization",
      "updated_at": "2026-08-02T12:17:55Z",
      "description": null,
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "master",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": "https://www.mainflux.com",
      "name": "MainfluxLabs",
      "type": "Organization",
      "login": "MainfluxLabs",
      "company": null,
      "location": null,
      "followers": 24,
      "avatar_url": "https://avatars.githubusercontent.com/u/28816662?v=4",
      "created_at": "2017-05-19T23:04:09Z",
      "is_verified": null,
      "public_repos": 9,
      "account_age_days": 3361
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.41.1",
          "kind": "patch",
          "published_at": "2026-07-24T12:31:57Z"
        },
        {
          "tag": "v0.41.0",
          "kind": "minor",
          "published_at": "2026-06-29T10:19:07Z"
        },
        {
          "tag": "v0.40.0",
          "kind": "minor",
          "published_at": "2026-05-29T09:13:35Z"
        },
        {
          "tag": "v0.39.0",
          "kind": "minor",
          "published_at": "2026-04-02T10:09:08Z"
        },
        {
          "tag": "v0.38.1",
          "kind": "patch",
          "published_at": "2026-03-16T10:29:40Z"
        },
        {
          "tag": "v0.38.0",
          "kind": "minor",
          "published_at": "2026-03-10T17:03:26Z"
        },
        {
          "tag": "v0.37.0",
          "kind": "minor",
          "published_at": "2026-03-04T10:13:05Z"
        },
        {
          "tag": "v0.36.1",
          "kind": "patch",
          "published_at": "2026-02-21T14:13:31Z"
        },
        {
          "tag": "v0.36.0",
          "kind": "minor",
          "published_at": "2026-02-20T18:19:20Z"
        },
        {
          "tag": "v0.35.1",
          "kind": "patch",
          "published_at": "2026-02-17T10:47:14Z"
        },
        {
          "tag": "v0.35.0",
          "kind": "minor",
          "published_at": "2026-02-09T11:56:59Z"
        },
        {
          "tag": "v0.34.0",
          "kind": "minor",
          "published_at": "2026-01-07T10:59:31Z"
        },
        {
          "tag": "v0.33.0",
          "kind": "minor",
          "published_at": "2025-11-28T09:11:57Z"
        },
        {
          "tag": "v0.32.0",
          "kind": "minor",
          "published_at": "2025-11-20T11:00:12Z"
        },
        {
          "tag": "v0.31.0",
          "kind": "minor",
          "published_at": "2025-10-29T19:02:26Z"
        },
        {
          "tag": "v0.30.1",
          "kind": "patch",
          "published_at": "2025-10-16T08:19:02Z"
        },
        {
          "tag": "v0.30.0",
          "kind": "minor",
          "published_at": "2025-09-22T08:46:27Z"
        },
        {
          "tag": "v0.29.1",
          "kind": "patch",
          "published_at": "2025-08-26T11:59:37Z"
        },
        {
          "tag": "v0.29.0",
          "kind": "minor",
          "published_at": "2025-08-06T11:33:46Z"
        },
        {
          "tag": "v0.28.3",
          "kind": "patch",
          "published_at": "2025-07-07T22:01:39Z"
        },
        {
          "tag": "v0.28.2",
          "kind": "patch",
          "published_at": "2025-06-13T09:40:58Z"
        },
        {
          "tag": "v0.28.0",
          "kind": "minor",
          "published_at": "2025-05-13T13:07:27Z"
        },
        {
          "tag": "v0.27.0",
          "kind": "minor",
          "published_at": "2025-04-11T17:03:06Z"
        },
        {
          "tag": "v0.26.0",
          "kind": "minor",
          "published_at": "2025-04-10T20:34:21Z"
        },
        {
          "tag": "v0.25.0",
          "kind": "minor",
          "published_at": "2025-02-26T13:33:22Z"
        },
        {
          "tag": "v0.24.1",
          "kind": "patch",
          "published_at": "2024-12-11T11:05:23Z"
        },
        {
          "tag": "v0.24.0",
          "kind": "minor",
          "published_at": "2024-12-11T11:04:20Z"
        },
        {
          "tag": "v0.23.2",
          "kind": "patch",
          "published_at": "2024-09-13T08:36:54Z"
        },
        {
          "tag": "v0.23.1",
          "kind": "patch",
          "published_at": "2024-09-09T16:26:29Z"
        },
        {
          "tag": "v0.23.0",
          "kind": "minor",
          "published_at": "2024-09-09T16:25:58Z"
        },
        {
          "tag": "v0.21.0",
          "kind": "minor",
          "published_at": "2024-08-13T12:34:50Z"
        },
        {
          "tag": "v0.20.0",
          "kind": "minor",
          "published_at": "2024-08-13T12:34:28Z"
        },
        {
          "tag": "0.19.0",
          "kind": "minor",
          "published_at": "2024-06-11T20:04:38Z"
        },
        {
          "tag": "0.18.0",
          "kind": "minor",
          "published_at": "2024-04-19T12:36:02Z"
        },
        {
          "tag": "0.17.0",
          "kind": "minor",
          "published_at": "2024-03-04T19:11:52Z"
        },
        {
          "tag": "0.16.5",
          "kind": "patch",
          "published_at": "2023-11-24T14:22:42Z"
        },
        {
          "tag": "0.15.3",
          "kind": "patch",
          "published_at": "2023-07-07T01:31:33Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "dc1543c05210f98e6e3023e9a73ebfb6ba73d6c8",
          "body": "* Dedupe JSON messages by payload hash\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Remove blank line\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Move PayloadHash helper to pkg\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Remove unnecessary comment\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1293 - Dedupe JSON messages by payload hash (#1294)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-29T13:31:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0552523c9b3b4b17a222d465a74918351b3e0508",
          "body": "* Remove BackupByOrg/Group methods\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Replace if block with early return\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1261 - Refactor ListMembershipsByOrg/Group methods (#1292)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-29T13:16:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "49a10b052581d95fc5be0a8bf7a7bc24d904ac48",
          "body": "…ory.Save (#1291)",
          "is_bot": false,
          "headline": "MF-1290 - use transaction tx instead of db in groupMembershipsReposit…",
          "author_name": "Knight",
          "author_login": "pranav718",
          "committed_at": "2026-07-29T09:17:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "721c182c616fad75d88e4a42929dad74ff1633c9",
          "body": "…or when search messages fail (#1295)\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Return StatusMultiStatus instead of StatusInternalServerErr…",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-07-29T07:42:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f20890138fc21018cca4d47b96cf31392e4f0222",
          "body": "…es (#1289)",
          "is_bot": false,
          "headline": "MF-1287 - rename email named parameter to actor_email in audit postgr…",
          "author_name": "Knight",
          "author_login": "pranav718",
          "committed_at": "2026-07-28T09:11:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "059627bc20fe99cfb5e7897717aa5d29602e923b",
          "body": "* Use protomfx.Command in http adapter\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Use protomfx.Command in coap adapter\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Use protomfx.Command in mqtt adapter\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Use protomfx.\n[…]\nted\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix helper naming\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1241 - Use protomfx.Command in adapers (#1285)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-28T08:28:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cf74e4436382662f2a6527d6d24c18429e4d6b73",
          "body": "Signed-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1141 - Replace consumers.Start with Messages (#1286)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-23T08:51:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc09655c6ce1a94d6b8cb14f49bef432fae6793b",
          "body": "* Add Shadow struct\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Add shadow repository\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Add transport layer\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Add middleware and tracing\n\nSigned-off-by: majabirmancevic <maja\n[…]\nby: majabirmancevic <majabi2001@gmail.com>\n\n* Set empty state for sql.ErrNoRows\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1141 - Add Device Shadow service (#1256)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-23T08:03:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0f4913e05b72680fe702c953844c2f1390b9fc6c",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "RELEASE - v0.41.1 (#1284)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-07-22T10:57:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b00d33ea9894b646993113e2c1f5bc2955863634",
          "body": "…279)\n\n* add: Will fields and Clean disconnect field on mproxy client\n\n* update: mproxy session with fill, clean disconnect and handling dup packages\n\n* refactor: mirror authorized Last Will messages onto the internal bus\n\n* add: tests for publishing will on disconnect\n\n* fix: use consts for types a\n[…]\nill publish, remove err type\n\n* fix: change test description\n\n* add: better log message\n\n* update: test for new log\n\n* fix: log\n\n* fix: handler test log msg\n\n* fix: remarks\n\n* add: var to logMsg tests",
          "is_bot": false,
          "headline": "MF-1143 - Publishing Will message and handling duplicate messages (#1…",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-07-21T17:23:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "587412087919d1464df59455e502a83122c3868c",
          "body": "* Replace Start with Messages and Alarms functions\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix comments\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1204 - Replace Start with Messages and Alarms functions (#1278)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-16T14:55:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9baafe2bd745d80b6b2ae6ce08734693402f9b2f",
          "body": "* add: mainflux broker volume for jetstreams\n\n* udpate: nats version (might not be important) and add data to volumes for jetstreams\n\n* add: jetstream config and max_pending which is required for a higher versions than 2.x\n\n* upgrade: pubisher is now using jetstream\n\n* add: new consts to pubsub and \n[…]\nelper to connection.go\n\n* refactor: clean up switch case and remove unnecessary helper\n\n* refactor: use nats built-in error for when stream is already in use\n\n* update: add svcName to all PubSub inits",
          "is_bot": false,
          "headline": "MF-1142 - Upgrade the internal message bus to NATS JetStream  (#1272)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-07-10T14:20:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "db71804fd32383f931a3506d8c57225e50a47b7b",
          "body": "Signed-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "move: mproxy from repo to mf (#1276)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-07-10T14:20:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "60cdf5884c8743dd4dbc0cbbb00c21dc856622af",
          "body": "Signed-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "Add apiutil.EmptyRes with configurable status code (#1275)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-09T14:08:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8313f618e973370754da4dbf6303d37397e1354",
          "body": "Signed-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "Remove unused command input type (#1274)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-08T14:34:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84868635e00abc7c28487d03ab34b110483931e7",
          "body": "… actions (#1273)\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "update: bump versions on setup-go and checkout github hooks in github…",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-07-08T09:50:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e43a1c4046dd39a64f67f667e920e93261568260",
          "body": "* Move webhook validation\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Move modbus validation\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Move downlinks validation\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Move audit validation\n\nSigned-off-by: majabirmancev\n[…]\nned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Move uiconfigs validation\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1193 - Move Page Metadata validation methods (#1270)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-07-06T14:53:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c2ea99dc6f999c8b260c4a795534c3e2d417c417",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1268 - Fix converting CSV files with BOM (#1269)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-07-03T11:12:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "383835c2407445136dcada72195c97751d479ca7",
          "body": "* Add filtering by role for org membership\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Add filtering by role for group membership\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Add filtering by type for things and content type for profile\n\nSigned-off-by: Ana Domonji <domonjianna@g\n[…]\nit fb39b7ec2ccf71595f4f808483e723b30cda63ef.\n\n* Revert \"Make to exclusive\"\n\nThis reverts commit ce4fdc8edae63312eadef859dee4322fa7a3f327.\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "MF-1257 - Implement additional filters across entities (#1260)",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-07-02T12:27:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "00b7d005857217aa1e99f0ca6dbf4bffa1f68253",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1266 - Fix transformer in converters (#1267)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-07-01T13:11:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b83318e599d7774fafd01721135e68920076e141",
          "body": "…s (#1265)\n\n* fix: url parsing\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* fix: aggregation fields\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1264 - Use correct character escape for building Aggregation field…",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-07-01T12:53:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "91b72dd68ed3472ff4418633175133279491943b",
          "body": "* Make the to timestamp filter exclusive for messages\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Fix aggregation test\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Fix PR remark\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "MF-1262 - Make the to timestamp filter exclusive for messages (#1263)",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-07-01T09:52:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa7116906361851667da859a9a79800fa0dc877d",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE -  Increase nginx converters max body size to 1024M (#1259)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-06-29T10:15:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ebd3e42437570e758fb14bfe69df5002b6601f8",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "RELEASE - v0.41.0 (#1258)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-06-26T13:02:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be46394123448a7230e197f5fbe3d4ff40849397",
          "body": "…ery param, and extend SenML to support reader exports (#1255)\n\n* Add JSON file import for message bulk upload\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Reorder methods and fix comments\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Only apply reservedFields stripping when the r\n[…]\nned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Change route in openapi and readme\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "MF-1250 - Add JSON converter endpoints, consolidate routes to ?to= qu…",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-06-26T11:36:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a4516962e21cebfcfe4cbb64e7b41faa9575b22b",
          "body": "* enchance event types\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* use 'jwt user' terminology'\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* rewrite redisEvent.jwtUserIdentity\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* add audit log se\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1144 - add audit log service (#1249)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-06-25T16:06:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "da7698fcab1b7ec70c907a44f4509aeef49634cc",
          "body": "Signed-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Change Timescale chunk size to 1 week",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-06-18T13:37:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1c38b6cc889a10a300a0848cee8872dcfbbdc644",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - converters: validate CSV before async publish (#1251)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-06-17T13:44:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f9b5b98fb380bcea20786d50c9a086d23689cf5",
          "body": "* MF-1164 - Consume alarms in rules\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Use rule.Conditions for alarm level check\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1164 - Consume alarms in rules (#1248)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-06-12T12:13:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a94507d2106759bca67a671ad2cb105cab51b5f",
          "body": "Signed-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "Fix rules listing by thing crashing on sort by name (#1246)",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-06-11T14:25:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72f78e9c3d4cc31c94a85fd1734fab42d308e5b0",
          "body": "Signed-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "pass auth grpc client env. vars. to docker compose services (#1245)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-06-10T13:15:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bb30f971bad9db3293b6d4badbb5bf1913f2d932",
          "body": "* update: porto\n\n* update: mocks publish command\n\n* add: rabbitmq command test\n\n* add: nats command test\n\n* add: define command publisher for nats\n\n* add: define commandpublisher efor rabbitmq\n\n* add: command publisher interface\n\n* udpate: brokers\n\n* refactor: cert scheduler using Commands instead o\n[…]\nrefactor: rename recipientID to recipient_id\n\n* revert: camel case\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* fix: consistent comment\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1209 - Replace protomfx.Message with mfxproto.Command (#1226)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-06-09T11:19:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "43bf1c913565d3e97de1c9d22bdbbcd4552e56a8",
          "body": "…1240)\n\n* Add input config field\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Update docs\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Remove nil check\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1161 - Introduce Input Config with subtopic filtering for rules (#…",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-06-08T13:28:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "46198ccdebbe1e7febe5eabf2f8f150959579c9b",
          "body": "* enchance event types\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* use 'jwt user' terminology'\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* rewrite redisEvent.jwtUserIdentity\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1232 - attach acting user identity to redis events (#1237)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-06-08T10:51:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e84b51f022139573a9d12f20c91efa84529e5b0b",
          "body": "…om HTTP requests (#1236)\n\n* add IdentityMiddleware\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* attach IdentityMiddleware to http handlers\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1232 - attach user identity information to contexts originating fr…",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-06-05T09:19:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cacf43f09ff418d4af7791857639a1fd482ac750",
          "body": "* Add comparator validation for rule conditions\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix error comment\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1238 - Add comparator validation for rule conditions (#1239)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-06-04T16:25:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1298173ad8ad9ab0441377cd4494ba910970295d",
          "body": "* Add flags in Profile Config\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Remove unused helper\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix write_enabled mapping\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix flags mapping\n\nSigned-off-by: majabirmancevic\n[…]\nc\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Simplify parseTopic\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1230 - Add flags in Profile Config (#1233)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-06-04T14:44:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a27b0f888c628acec1d579fd8d9bf6baf9b380d6",
          "body": "* fix: resolve docker-compose timescale overlap\n\nThe inlined timescale services in docker/docker-compose.yml had a\nduplicated timescale/timescale-writer/timescale-reader block (duplicate\nYAML map key, which made the file unparseable), and the timescale-reader\nservice was missing MF_TIMESCALE_READER_ES_URL, causing it to dial\nlocalhost:6379 for the event store and exit on startup.\n\nRemove the duplicate block and wire up the reader's ES_URL.\n\n* fix: remove postgres and move to addons",
          "is_bot": false,
          "headline": "NOISSUE - Fix Timescale docker compose (#1234)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-06-03T14:05:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "faceaa0dad579330561393c12791d7abcd9eb387",
          "body": "Signed-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "rename pkg/auth to pkg/authn (#1235)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-06-03T14:04:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bd4eddb65b2aced781707f7f1ab685e983e4d5ac",
          "body": "* add: timescale-writer and timescale-reader to makefile\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* add: timescale aggregation\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* add: aggregation test\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* add: json timescale\n\nSigned-off-by: duolo\n[…]\n\n* fix: merge build\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* fix: use package-level handlePgError in timescale reader RemoveByThing\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1103 - TimescaleDB migration for readers (#1126)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-06-02T09:13:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "86980ddfd921b6c048e9a1b8e41325063e1effef",
          "body": "* Add webhook as rule action\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix subject naming\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1165 - Add webhook as rule action (#1231)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-05-28T10:00:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d30a0540d5ef046a5eb55c514a0aa6b58d18ce3",
          "body": "* add: event for readers\n\n* add: event streams for readers\n\n* refactor: add remove messages by thing func\n\n* refactor: add remove by thing db layer methods to interfaces\n\n* update: readers tracing rmeove messages by thing\n\n* add: postgres function for removing messages by thing\n\n* add: timescale fun\n[…]\no fix the certs/postgres test harness (it imported readers/postgres,\napplying the wrong migrations) and add a RemoveByThing integration test.\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1192 - Consume thing.remove and group.remove events in certs (#1227)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-05-26T09:23:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e6373f10eb8dd9eef931aa78900747c24d18c4e6",
          "body": "…led JSON (#1228)\n\n* Fix webhook forwarder to send raw payload instead of marshaled JSON\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Inline error check\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Fix webhook forwarder to send raw payload instead of marsha…",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-05-26T09:18:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6cddb5d118f6a6b859f1508e8a2907c08cb89e5d",
          "body": "…s (#1212)\n\n* MF-1197 - Add Input field\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1197 - Remove Assing and Unassign methods\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1197 - Revert rules_things table\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-11\n[…]\nix openapi\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix README\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1197 - Introduce Input field and refactor assign/unassign endpoint…",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-05-22T14:10:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cf2fd54d065c246ce4716e7a5966ceea00f09a41",
          "body": "* refactor redis event type infrastucture\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* events: migrate away from consumer groups to pure single-consumer XREAD\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* add pkg/events.Publisher interface and implementation\n\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1218 - refactor Redis event stream code (#1211)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-05-21T10:07:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1d8e5f7dd577e2101e0c593ef5b0a763b434cedf",
          "body": "…225)\n\n* add: event for readers\n\n* add: event streams for readers\n\n* refactor: add remove messages by thing func\n\n* refactor: add remove by thing db layer methods to interfaces\n\n* update: readers tracing rmeove messages by thing\n\n* add: postgres function for removing messages by thing\n\n* add: timesc\n[…]\n metrics for things api\n\n* add: reader events envars to docker compose\n\n* add: redis envars to .env\n\n* fix: remark error handling\n\n* refactor: fix missing semicolon remark\n\n* fix: remark using sprintf",
          "is_bot": false,
          "headline": "MF-1191 - Consume thing.remove and group.remove events in readers (#1…",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-05-14T10:30:25Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "02d10ba45c8666bd2ae1bc240a4f7021f4277ca0",
          "body": "* Refactor TestAuthorize\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Replace assert.Nil with require.Nil\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1219 - Refactor TestAuthorize in auth service (#1220)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-05-06T15:09:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e68d893c0f1322851ada8b1c730400abde2d0308",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "RELEASE - v0.40.0 (#1223)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-05-05T17:30:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dea98a2975b725d686f67dbe2e9e85122faaa41b",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1215 - Return null for missing aggregation fields (#1216)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-04-30T08:46:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d49c11f422df77cb90555e3cc61f8f72e02cb63e",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1213 - Add SUM aggregation support for time-series queries (#1214)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-04-28T09:13:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74d86a567a961b438f7b883a0dc4d99812781399",
          "body": "* update: transport for rotating certs\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* update: metrics and logging\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* add: update endpoint for rotating certs\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* add: rotate cert request\n\nSigned-off-by:\n[…]\nIdentify checks in service methods in favor of CanUserAccessThing\n\n* refactor: update service test\n\n* refactor: exclude already expired certs\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1140 - Automatic Key Rotation (#1170)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-04-24T08:33:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5c82c054e7b5c436440b9214c7d1c161634d482b",
          "body": "* MF-1205 - Add alarm filtering by level and status\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix level and status mapping in repo\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1205 - Add alarm filtering by level and status (#1206)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-04-23T09:19:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2608af3ac902906292696f146a7446f0a44dd0af",
          "body": "* update: gitignore\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* chore: untrack generated nginx ssl-client-active.conf\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1207 - Add nginx runtime file to gitignore  (#1208)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-04-23T08:34:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b026a5f91a8409bc81e8de8ba4ef71e560e4b531",
          "body": "* MF-1150 - Add new fields in Alarm struct\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1150 - Store conditions and operator together\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1150 - Add level\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1150 - Add \n[…]\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Fix alarms_3 migration\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1150 - Add level, status, and rule conditions to alarms (#1195)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-04-22T11:12:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "38fa2c4d0f6459c2e8a7f1b073cc389a30a89905",
          "body": "* MF-1202 - Add first and last aggregation types\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Add first and last senml aggregation\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix openapi\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n---------\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1202 - Add first and last aggregation types (#1203)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-04-21T09:55:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3149b0326447195ca84fb39460647e5a845be0fe",
          "body": "…eaders (#1201)\n\n* NOISSUE - Add second, millisecond and microsecond aggregation intervals for readers\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix comment\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix openapi\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n---------\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Add second, millisecond and microsecond agg intervals for r…",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-04-21T07:35:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d3e06ef2dc43e21c33a151cb87d9c03ebdbe754",
          "body": "* refactor: extract shared domain types to appropriate pkg/domain subpackage\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* fix formatting\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* move and rename ExtractThingKey\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitr\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1175 - rules: scripts: add readers Lua API (#1189)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-04-20T12:29:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "999435f33c9ba7bfdc1eadd1ee1d1f2d22fc36d5",
          "body": "…s  (#1199)\n\n* Add nats proto.Alarm publishing\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Refactor consumers\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Refactor pubsub\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Add empty id check in UnsubscribeAlarms\n\nSig\n[…]\n\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* Refactor processRule\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1198 - Add alarm publish/subscribe and refactor consumer interface…",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-04-20T11:04:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0df5bd34e8046b5b8790bd679dff21b104c3a5bc",
          "body": "* refactor: extract shared domain types to appropriate pkg/domain subpackage\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* fix formatting\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* move and rename ExtractThingKey\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitr\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1145 - add user identity information to service method logs (#1196)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-04-15T10:54:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c07aaf573c5e323e0aff69dc90212073d8800fa1",
          "body": "* add: crl service\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* temp: checkpoint\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* rebase\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* add: hardcoded CA path\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* fix: copy, don't modify mounte\n[…]\nriable scope authorization\n\n* fix: crl path mismatch\n\n* fix: crl mount\n\n* fix: add type assertion\n\n* fix: x509 auth for mtls\n\n* revert: CN_CA\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1139 - Add CRL to Certs (#1176)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-04-14T11:14:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c5c36473241a44a7c41adea0a4d3fbb1d1974ac8",
          "body": "* refactor: extract shared domain types to appropriate pkg/domain subpackage\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* fix formatting\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* move and rename ExtractThingKey\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitr\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1096 - Refactor gRPC client interfaces to use domain types (#1171)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-04-14T11:08:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d0701bf198366a7650226e29607da45d0f7aaf93",
          "body": "* MF-991 - Send commands via ws adapter\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-991 - Use Identify method for sub/unsub\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-991 - Add tests and polish existing ones\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n*\n[…]\n\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-991 - Fix ws docs\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-991 - Send commands via ws adapter (#1186)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-04-09T13:10:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "89721724684f7a0d1fc9e97c2be4171a35f6d4f3",
          "body": "* MF-991 - Send commands via coap adapter\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-991 - Extract subtopic from ws path\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-991 - Polish handlePost\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-991 - Update ws README\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-991 - Send commands via coap adapter (#1187)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-04-07T08:36:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc5847fe7ba64e865ba02c3312627d12e2a0d53e",
          "body": "Signed-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "auth: use proper protobuf type in gRPC client Issue method (#1194)",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-04-07T08:29:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a38ef934269c4d28354f850e825ec59a0811f70",
          "body": "* MF-1085 - Remove MongoDB reader and writer\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Remove ENVARS\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n---------\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1085 - Remove MongoDB reader and writer (#1190)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-04-02T11:14:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6933a9489dc4daea78f9af78a0768863da3139c7",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "RELEASE - v0.39.0 (#1185)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-30T15:18:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e7e14f3d15a9bafe81e5e33a17374ff047775379",
          "body": "… (#1114)\n\n* refactor: extract shared domain types to appropriate pkg/domain subpackage\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* fix formatting\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* move and rename ExtractThingKey\n\nSigned-off-by: Bogdan Mitrović <\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1156 - refactor: extract shared domain types to domain subpackages…",
          "author_name": "Bogdan M",
          "author_login": "bool3max",
          "committed_at": "2026-03-30T14:47:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6a2fde9cbef7fe211054a9621a41feb9b138c112",
          "body": "…istration when self-registration is disabled (#1154)\n\n* Allow OAuth login for existing users and invite-based registration when self-registration is disabled\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Pass redirectUrl\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Fix indention\n\n[…]\nDomonji <domonjianna@gmail.com>\n\n* Make handleIndentity more readable and add comment\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "MF - 1153 - Allow OAuth login for existing users and invite-based reg…",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-03-30T12:49:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5cc985f9ac088ff2d94a9b33153e5dc8618ae7a0",
          "body": "* MF-1179 - Polish logs and errors in MQTT handler\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1179 - Fix Publish method\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1179 - Export error vars\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1179 - Remove t\n[…]\nby: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1179 - Remove unnecessary test\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1179 - Polish logs and errors in MQTT handler  (#1184)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-27T16:10:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e0be348c2840162fc394eed06043b65ee954fe58",
          "body": "* NOISSUE - Update READMEs, openapi, ENVARS\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix lua scripts\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix remarks\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix ENVARS\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n---------\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Update READMEs, openapi, ENVARS (#1151)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-27T15:26:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "415292721da8d9af227a4c9344d35ecda8621bcc",
          "body": "* MF-1118 - Support thing key auth for commands\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1118 - Add thing key validation\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1118 - Remove Basic auth support\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1118\n[…]\n<majabi2001@gmail.com>\n\n* MF-1118 - Replace ErrBearerToken with  ErrMissingAuth\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1118 - Support thing key auth for commands (#1181)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-27T10:52:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "80cc397e2ce9f22098a00a260c18d8dcf8d44145",
          "body": "* MF-1182 - Introduce ErrMissingAuthHeader error\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1182 - Rename ErrMissingAuthHeader to ErrMissingAuth\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1182 - Introduce ErrMissingAuth error (#1183)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-27T09:08:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a0a5338a336f179b1e5d5be0caa19563a54137e4",
          "body": "* MF-1168 - Publish MQTT commands to corresponding NATS subject\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1168 - Add comment\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n* MF-1168 -  Reverse prefix/suffix check order\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1168 - Publish MQTT commands to corresponding NATS subject (#1178)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-25T14:03:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca6492066c5e6faec1f046fe722075deb58ed42d",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1177 - Fix changing scheduler frequency has no effect (#1180)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-25T10:24:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "46a3e587b5efbf3057957d02c852b717ac9866f8",
          "body": "* MF-1118 - Add CanThingPerform gRPC method\n\n* MF-1118 - Use CanThingPerform in mqtt adapter\n\n* MF-1118 - Pass PolicyProvider as constructor arg\n\n* MF-1118 - Remove PolicyProvider interface\n\n* MF-1118 - Remove checkActionRights helper\n\n* MF-1118 - Revert blank lines\n\n* MF-1118 - Refactor mqtt errors\n[…]\nncevic <majabi2001@gmail.com>\n\n* MF-1118 -  Improve comment for CanGroupCommand\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: majabirmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1118 - Implement machine‑to‑machine (M2M) authorization (#1132)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-24T11:16:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4ae1ebb9620dc5f5c7a4daf2b30ac0b8d541937c",
          "body": "…meter validation (#1086)\n\n* refactor http order query param validation\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* add column to rules AllowedOrders\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* alarms: validate pagemetadata fields in request structs\n\nSigne\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1092 - add per-service PageMetadata types and fix order query para…",
          "author_name": "Bogdan Mitrović",
          "author_login": "bool3max",
          "committed_at": "2026-03-24T10:02:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "99ac98c2608560fc7a484aee27c013dd0553bdba",
          "body": "* MF-1159 - Fix converters: message timestamp\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* MF-1166 - Fix missing Content-Type header on error responses\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix converters: use transformer timeField for JSON timestamp\n\nS\n[…]\n-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix remarks\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n---------\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1159 - Fix converters: message timestamp (#1167)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-23T10:48:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d19c09cdfc6986b298e3eda9e83638096bc71c38",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Add command to push individual docker images (#1157)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-20T14:08:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76c9f8c16f5d717adc2de6b8afb2f28d246e29f6",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Update mproxy (#1158)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-19T17:39:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aff96d3fea3f5822e435d369a08c1e140216c2b6",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Fix two silent bugs in things Redis layer (#1155)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-18T11:54:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "988c9d6bc04efddddebc6bf3e3e0b5374935aafa",
          "body": "…(#1152)\n\n* Clean up unused UI env vars and pass self-registraion flag\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Restore self register value\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Clean up unused UI env vars and pass self-registraion flag …",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-03-18T11:43:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "025a61b277b8c7b20a59008311dc81446db98bd3",
          "body": "* Add Group link in the group invites email\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Rename to redirectPath\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Update openapi\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "MF - 1129 - Add Group link in the group invites email (#1136)",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-03-16T13:50:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "576de644ffd59fbb5e2fa6b1e538ec0104cbc0ef",
          "body": "* MF-1135 -  Add a type of thing to the Redis cache\n\n* MF-1135 - Replace thing type on update",
          "is_bot": false,
          "headline": "MF-1135 - Add thing type to Redis cache (#1137)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-16T12:11:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7dc961f14cac9cd4c4e41189a27119a8b4fd4f3d",
          "body": "Signed-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "Don’t allow OAuth when self‑registration is off (#1134)",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-03-13T13:07:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "28dc63a6d9c056ba09d5e43710199278a109930c",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "RELEASE - v0.38.1 (#1133)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-13T07:15:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc3c7598389e41080383877ba238b4f91e88c1ce",
          "body": "…pectedly via bone.GetQuery (#1131)\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1130 - Fix ReadStringArrayQuery splits comma-separated values unex…",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-13T07:10:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e992d9cc0ce7eb8d6105ef1f9b480646b3aa3384",
          "body": "* MF-1121 -  Add Thing type field\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n* MF-1121 -  Add ErrInvalidThingType in pkg\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n* MF-1121 -  Add ErrInvalidThingType in LoggingErrorEncoder\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n* MF-1121 - Make Type as required field on update\n\n* MF-1121 - Fix test vars naming\n\n* MF-1121 - Fix test\n\n---------\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1121 - Add Thing type field (#1122)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-11T17:25:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d6ad273f361d5a3b4014b80426e14a2ba40b95bd",
          "body": "* Add ErrMissingThingKey\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n* MF-1124 - Fix tests\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1124 - Use dedicated error for missing thing key on update (#1125)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-11T11:32:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e76c42d01c274a5eb6e4b5ebc8f9a5fbbc95834",
          "body": "* NOISSUE - Upgrade go version to 1.25.8\n\n* Upgrade go version in docs, CI and Dockerfile",
          "is_bot": false,
          "headline": "MF-1128 - Upgrade go version to 1.25.8 (#1127)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-11T11:30:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97925da5483cee5f8dbc139e3897eb72390166fa",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "RELEASE - v0.38.0 (#1123)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-10T16:59:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98fbf3278cb9432dae56ccbcbd9a373781e652f8",
          "body": "* intial implementation\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* set maxInvocations=1 for mfx.create_alarm()\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n* remove unnecessary checks from rules.UnassignScripts\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovi\n[…]\n\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\n\n---------\n\nSigned-off-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>\nCo-authored-by: Bogdan Mitrović <bogdan.mitrovic@mainflux.com>",
          "is_bot": false,
          "headline": "MF-1020 - rules: Implement basic Lua scripting support (#1022)",
          "author_name": "Bogdan Mitrović",
          "author_login": "bool3max",
          "committed_at": "2026-03-10T16:51:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1d81e85f5340e1a7d31037fea794e2ee18051ed3",
          "body": "Signed-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "Rename pagination fields to Order and Dir for consistency (#1120)",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-03-10T14:03:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c3823b3ac7fe3964720a1d09356b27d8fed096b9",
          "body": "* MF-1116 - Restrict delete operations to Admin role\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix delete messages roles\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Add delete messages tests\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n* Fix remarks\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>\n\n---------\n\nSigned-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "MF-1116 - Restrict delete operations to Admin role (#1117)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-09T15:26:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b9a28aa597152d553a08c420be0e54935de22ada",
          "body": "* Add endpoint for listing API Keys\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Remove comments and restore timeout\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Include expired_at\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Add issued_at to getOrderQuery\n\nSigned-off-b\n[…]\n zero\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n* Use Order and Dir naming\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>\n\n---------\n\nSigned-off-by: Ana Domonji <domonjianna@gmail.com>",
          "is_bot": false,
          "headline": "MF-1112 - Add endpoint for listing API Keys (#1111)",
          "author_name": "Ana Domonji",
          "author_login": "anna02272",
          "committed_at": "2026-03-09T15:18:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3b939f2391a56d7baf48a7af5477df17c4a9405e",
          "body": "Signed-off-by: Maja Birmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "NOISSUE - Include \"subscriptions\" in list response when empty (#1115)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-09T12:42:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b8619fb4c76d046050a032c3bb833ae5a359bc6",
          "body": "* add: support for ecdsa certs\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* refactor: clean up comment\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* refactor: remove map constructs\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* update: mocks\n\nSigned-off-by: duolok <dusan.lecic5@gmail.\n[…]\noff-by: duolok <dusan.lecic5@gmail.com>\n\n* refactor: use sendRequest in all certs cli methods\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-1091 - Add complete support for Certs CLI (#1094)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-03-09T12:41:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d4d856e837ced01098f540d06368c5ef1f076606",
          "body": "Signed-off-by: Manuel Imperiale <manuel.imperiale@gmail.com>",
          "is_bot": false,
          "headline": "Mf-1109 - Email sub-templates not found at runtime (#1110)",
          "author_name": "Manuel Imperiale",
          "author_login": "manuio",
          "committed_at": "2026-03-06T14:03:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "110816b7ecb8d25505ef9ddb5e97fe8df245ae55",
          "body": "* add: support for ecdsa certs\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* refactor: clean up comment\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* refactor: remove map constructs\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* update: mocks\n\nSigned-off-by: duolok <dusan.lecic5@gmail.\n[…]\n: adjust query parsing\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n* add: missing import\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>\n\n---------\n\nSigned-off-by: duolok <dusan.lecic5@gmail.com>",
          "is_bot": false,
          "headline": "MF-786 - Add complete support for Readers CLI (#1090)",
          "author_name": "Dusan Lecic",
          "author_login": "duolok",
          "committed_at": "2026-03-06T14:01:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b3ecc8dabee5d3c0339d173a6cd1e57c23b50f2b",
          "body": "Signed-off-by: Maja Birmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1099 - Rename mqtt subscription.Subtopic to Topic (#1113)",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-06T13:51:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9840b64eb2dbb851476f66060c2b23cd10a701de",
          "body": "…098)\n\n* MF-1097 - Authorize subscription topics for commands and messages\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n* MF-1097 - Move check to AuthSubscribe\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n* MF-1097 - Fix comment\n\nSigned-off-by: Maja Birmancevic <majabi2001@gm\n[…]\nigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n* MF-1097 - Fix naming\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>\n\n---------\n\nSigned-off-by: Maja Birmancevic <majabi2001@gmail.com>",
          "is_bot": false,
          "headline": "MF-1097 - Authorize subscription topics for commands and messages (#1…",
          "author_name": "Maja Birmančević",
          "author_login": "majabirmancevic",
          "committed_at": "2026-03-05T13:58:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        }
      ],
      "releases_count": 37,
      "commits_last_year": 311,
      "latest_release_at": "2026-07-24T12:31:57Z",
      "latest_release_tag": "v0.41.1",
      "releases_from_tags": false,
      "days_since_last_push": 4,
      "active_weeks_last_year": 51,
      "days_since_latest_release": 9,
      "mean_days_between_releases": 17.5
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": false,
      "has_contributing": true,
      "health_percentage": 50,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/MainfluxLabs/mainflux",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/MainfluxLabs/mainflux",
          "is_deprecated": false,
          "latest_version": "v0.41.1",
          "repository_url": "https://github.com/MainfluxLabs/mainflux",
          "versions_count": 39,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-22T10:57:50Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 11
        }
      ]
    },
    "popularity": {
      "forks": 43,
      "stars": 153,
      "watchers": 6,
      "fork_history": {
        "days": [
          {
            "date": "2022-11-10",
            "count": 1
          },
          {
            "date": "2023-06-09",
            "count": 1
          },
          {
            "date": "2023-06-23",
            "count": 1
          },
          {
            "date": "2023-08-13",
            "count": 1
          },
          {
            "date": "2023-12-22",
            "count": 1
          },
          {
            "date": "2024-01-11",
            "count": 1
          },
          {
            "date": "2024-02-26",
            "count": 1
          },
          {
            "date": "2024-03-15",
            "count": 1
          },
          {
            "date": "2024-04-26",
            "count": 1
          },
          {
            "date": "2024-05-21",
            "count": 1
          },
          {
            "date": "2024-05-30",
            "count": 1
          },
          {
            "date": "2024-06-18",
            "count": 1
          },
          {
            "date": "2024-09-17",
            "count": 1
          },
          {
            "date": "2024-09-24",
            "count": 1
          },
          {
            "date": "2024-10-15",
            "count": 1
          },
          {
            "date": "2024-11-15",
            "count": 1
          },
          {
            "date": "2025-01-05",
            "count": 1
          },
          {
            "date": "2025-02-04",
            "count": 1
          },
          {
            "date": "2025-02-13",
            "count": 1
          },
          {
            "date": "2025-02-14",
            "count": 1
          },
          {
            "date": "2025-03-11",
            "count": 1
          },
          {
            "date": "2025-04-11",
            "count": 1
          },
          {
            "date": "2025-04-27",
            "count": 1
          },
          {
            "date": "2025-04-29",
            "count": 1
          },
          {
            "date": "2025-05-14",
            "count": 1
          },
          {
            "date": "2025-05-18",
            "count": 1
          },
          {
            "date": "2025-05-29",
            "count": 1
          },
          {
            "date": "2025-06-03",
            "count": 1
          },
          {
            "date": "2025-06-28",
            "count": 1
          },
          {
            "date": "2025-07-03",
            "count": 1
          },
          {
            "date": "2025-08-05",
            "count": 1
          },
          {
            "date": "2025-08-30",
            "count": 1
          },
          {
            "date": "2025-09-04",
            "count": 1
          },
          {
            "date": "2025-09-28",
            "count": 1
          },
          {
            "date": "2025-12-22",
            "count": 1
          },
          {
            "date": "2026-02-05",
            "count": 1
          },
          {
            "date": "2026-03-04",
            "count": 1
          },
          {
            "date": "2026-03-06",
            "count": 1
          },
          {
            "date": "2026-03-07",
            "count": 1
          },
          {
            "date": "2026-04-24",
            "count": 1
          },
          {
            "date": "2026-04-25",
            "count": 1
          },
          {
            "date": "2026-06-01",
            "count": 1
          },
          {
            "date": "2026-07-21",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 43,
        "total_forks": 43
      },
      "star_history": null,
      "open_issues_and_prs": 31
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "docker/ssl/Makefile",
        "tools/mqtt-bench/Makefile",
        "tools/provision/Makefile",
        "vendor/github.com/go-redis/redis/v8/Makefile",
        "vendor/github.com/gogo/protobuf/proto/Makefile",
        "vendor/github.com/hashicorp/hcl/Makefile",
        "vendor/github.com/matttproud/golang_protobuf_extensions/pbutil/Makefile",
        "vendor/github.com/opentracing/opentracing-go/Makefile",
        "vendor/github.com/pelletier/go-toml/Makefile",
        "vendor/github.com/pion/dtls/v2/Makefile",
        "vendor/github.com/pkg/errors/Makefile",
        "vendor/github.com/prometheus/procfs/Makefile",
        "vendor/github.com/rabbitmq/amqp091-go/Makefile",
        "vendor/github.com/spf13/cast/Makefile",
        "vendor/github.com/spf13/cobra/Makefile",
        "vendor/github.com/spf13/viper/Makefile",
        "vendor/github.com/uber/jaeger-client-go/Makefile",
        "vendor/go.uber.org/atomic/Makefile",
        "vendor/google.golang.org/grpc/Makefile",
        "vendor/gopkg.in/ini.v1/Makefile"
      ],
      "api_schema_files": [
        "pkg/proto/mfx.proto",
        "vendor/github.com/docker/docker/api/types/swarm/runtime/plugin.proto"
      ],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 371076,
      "source_files_sampled": 734,
      "oversized_source_files": 3,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "github.com/jackc/pgx/v5",
            "direct": true,
            "version": "v5.5.4",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 9.8,
            "advisory_ids": [
              "GHSA-9jj7-4m8r-rfcm",
              "GHSA-j88v-2chj-qfwx",
              "GHSA-xgrm-4fwx-7qm8",
              "GO-2026-4771",
              "GO-2026-4772",
              "GO-2026-5004"
            ],
            "fixed_version": "5.9.2",
            "advisory_count": 6,
            "oldest_advisory_days": 117
          },
          {
            "name": "golang.org/x/crypto",
            "direct": true,
            "version": "v0.49.0",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 10,
            "advisory_ids": [
              "GHSA-45gg-vh54-h5m9",
              "GHSA-5cgq-3rg8-m6cv",
              "GHSA-78mq-xcr3-xm33",
              "GHSA-89gr-r52h-f8rx",
              "GHSA-9m57-25v3-79x9",
              "GHSA-f5wc-c3c7-36mc",
              "GHSA-jppx-rxg9-jmrx",
              "GHSA-q4h4-gmj2-qvw2",
              "GHSA-qpw4-5x99-6vjp",
              "GHSA-rm3j-f69w-wqmq"
            ],
            "fixed_version": "0.52.0",
            "advisory_count": 27,
            "oldest_advisory_days": 72
          },
          {
            "name": "google.golang.org/grpc",
            "direct": true,
            "version": "v1.64.1",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 9.1,
            "advisory_ids": [
              "GHSA-hrxh-6v49-42gf",
              "GHSA-p77j-4mvh-x3m3",
              "GO-2026-4762",
              "GO-2026-6061"
            ],
            "fixed_version": "1.82.1",
            "advisory_count": 4,
            "oldest_advisory_days": 136
          },
          {
            "name": "github.com/docker/docker",
            "direct": true,
            "version": "v28.3.3+incompatible",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 8.8,
            "advisory_ids": [
              "GHSA-pxq6-2prw-chj9",
              "GHSA-rg2x-37c3-w2rh",
              "GHSA-vp62-88p7-qqf5",
              "GHSA-x744-4wpc-v9h2",
              "GHSA-x86f-5xw2-fm2r",
              "GO-2026-4883",
              "GO-2026-4887",
              "GO-2026-5617",
              "GO-2026-5668",
              "GO-2026-5746"
            ],
            "fixed_version": "29.3.1",
            "advisory_count": 10,
            "oldest_advisory_days": 127
          },
          {
            "name": "github.com/docker/cli",
            "direct": false,
            "version": "v28.3.3+incompatible",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GHSA-p436-gjf2-799p",
              "GO-2026-4610"
            ],
            "fixed_version": "29.2.0+incompatible",
            "advisory_count": 2,
            "oldest_advisory_days": 150
          },
          {
            "name": "github.com/opencontainers/runc",
            "direct": false,
            "version": "v1.1.2",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 8.6,
            "advisory_ids": [
              "GHSA-9493-h29p-rfm2",
              "GHSA-cgrx-mc8f-2prm",
              "GHSA-g2j6-57v7-gm8c",
              "GHSA-jfvp-7x6p-h2pv",
              "GHSA-m8cg-xc2p-r3fc",
              "GHSA-qw9x-cqr3-wc7r",
              "GHSA-vpvm-3wq2-2wvm",
              "GHSA-xjvp-4fhw-gc47",
              "GHSA-xr7r-f8xq-vfvv",
              "GO-2023-1627"
            ],
            "fixed_version": "1.13.0",
            "advisory_count": 18,
            "oldest_advisory_days": 1247
          },
          {
            "name": "github.com/sirupsen/logrus",
            "direct": false,
            "version": "v1.8.1",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-4f99-4q7p-p3gh",
              "GO-2025-4188"
            ],
            "fixed_version": "1.9.3",
            "advisory_count": 2,
            "oldest_advisory_days": 240
          },
          {
            "name": "golang.org/x/net",
            "direct": true,
            "version": "v0.52.0",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 6.5,
            "advisory_ids": [
              "GHSA-5cv4-jp36-h3mw",
              "GO-2026-4918",
              "GO-2026-5025",
              "GO-2026-5026",
              "GO-2026-5027",
              "GO-2026-5028",
              "GO-2026-5029",
              "GO-2026-5030",
              "GO-2026-5942"
            ],
            "fixed_version": "1.26.3",
            "advisory_count": 9,
            "oldest_advisory_days": 86
          },
          {
            "name": "github.com/pion/dtls/v2",
            "direct": false,
            "version": "v2.1.5",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 5.9,
            "advisory_ids": [
              "GHSA-4xgv-j62q-h3rj",
              "GHSA-9f3f-wv7r-qc8r",
              "GHSA-hxp2-xqf3-v83h",
              "GO-2023-1534",
              "GO-2023-1535",
              "GO-2026-4479"
            ],
            "fixed_version": "3.1.1",
            "advisory_count": 6,
            "oldest_advisory_days": 1271
          },
          {
            "name": "golang.org/x/sys",
            "direct": false,
            "version": "v0.42.0",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2026-5024"
            ],
            "fixed_version": "0.44.0",
            "advisory_count": 1,
            "oldest_advisory_days": 71
          },
          {
            "name": "golang.org/x/text",
            "direct": false,
            "version": "v0.35.0",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2026-5970"
            ],
            "fixed_version": "0.39.0",
            "advisory_count": 1,
            "oldest_advisory_days": 18
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "high": 4,
          "unknown": 2,
          "critical": 3,
          "moderate": 2
        },
        "advisory_count": 86,
        "affected_count": 11,
        "assessed_count": 114,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 5
      },
      "ecosystems": [
        "go"
      ],
      "dependencies": [
        {
          "name": "github.com/MainfluxLabs/senml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.5"
        },
        {
          "name": "github.com/Shopify/go-lua",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20250718183320-1e37f32ad7d0"
        },
        {
          "name": "github.com/Shopify/goluago",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240527182001-ec4ec6c26eab"
        },
        {
          "name": "github.com/cenkalti/backoff/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.1.3"
        },
        {
          "name": "github.com/docker/docker",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v28.3.3+incompatible"
        },
        {
          "name": "github.com/eclipse/paho.mqtt.golang",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.1"
        },
        {
          "name": "github.com/fatih/color",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.13.0"
        },
        {
          "name": "github.com/fiorix/go-smpp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20210403173735-2894b96e70ba"
        },
        {
          "name": "github.com/go-kit/kit",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.13.0"
        },
        {
          "name": "github.com/go-kit/log",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.1"
        },
        {
          "name": "github.com/go-redis/redis/v8",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v8.11.5"
        },
        {
          "name": "github.com/go-zoo/bone",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.0"
        },
        {
          "name": "github.com/goburrow/modbus",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.0"
        },
        {
          "name": "github.com/gofrs/uuid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.2.0+incompatible"
        },
        {
          "name": "github.com/gogo/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.2"
        },
        {
          "name": "github.com/golang-jwt/jwt/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.5.2"
        },
        {
          "name": "github.com/golang/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.4"
        },
        {
          "name": "github.com/gorilla/websocket",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.3"
        },
        {
          "name": "github.com/hokaccha/go-prettyjson",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20211117102719-0474bc63780f"
        },
        {
          "name": "github.com/jackc/pgerrcode",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20220416144525-469b46aa5efa"
        },
        {
          "name": "github.com/jackc/pgx/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.5.4"
        },
        {
          "name": "github.com/jmoiron/sqlx",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.5"
        },
        {
          "name": "github.com/nats-io/nats.go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.15.0"
        },
        {
          "name": "github.com/oklog/ulid/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.1.0"
        },
        {
          "name": "github.com/opentracing/opentracing-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.0"
        },
        {
          "name": "github.com/ory/dockertest/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.9.1"
        },
        {
          "name": "github.com/pelletier/go-toml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.9.5"
        },
        {
          "name": "github.com/plgd-dev/go-coap/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.6.0"
        },
        {
          "name": "github.com/prometheus/client_golang",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/rabbitmq/amqp091-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.0"
        },
        {
          "name": "github.com/robfig/cron/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "github.com/rubenv/sql-migrate",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.2"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.0"
        },
        {
          "name": "github.com/spf13/viper",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.12.0"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.8.1"
        },
        {
          "name": "github.com/subosito/gotenv",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.0"
        },
        {
          "name": "github.com/uber/jaeger-client-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.30.0+incompatible"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.49.0"
        },
        {
          "name": "golang.org/x/net",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.52.0"
        },
        {
          "name": "golang.org/x/oauth2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.35.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.0"
        },
        {
          "name": "golang.org/x/time",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20211116232009-f0f3c7e86c11"
        },
        {
          "name": "gonum.org/v1/gonum",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.11.0"
        },
        {
          "name": "google.golang.org/grpc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.64.1"
        },
        {
          "name": "google.golang.org/protobuf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.34.2"
        },
        {
          "name": "gopkg.in/gomail.v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.0-20160411212932-81ebce5c23df"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "github.com/cenkalti/backoff/v4",
            "direct": true,
            "version": "v4.1.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/docker",
            "direct": true,
            "version": "v28.3.3+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/eclipse/paho.mqtt.golang",
            "direct": true,
            "version": "v1.5.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fatih/color",
            "direct": true,
            "version": "v1.13.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fiorix/go-smpp",
            "direct": true,
            "version": "v0.0.0-20210403173735-2894b96e70ba",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-kit/kit",
            "direct": true,
            "version": "v0.13.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-kit/log",
            "direct": true,
            "version": "v0.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-redis/redis/v8",
            "direct": true,
            "version": "v8.11.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-zoo/bone",
            "direct": true,
            "version": "v1.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/goburrow/modbus",
            "direct": true,
            "version": "v0.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gofrs/uuid",
            "direct": true,
            "version": "v4.2.0+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gogo/protobuf",
            "direct": true,
            "version": "v1.3.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang-jwt/jwt/v4",
            "direct": true,
            "version": "v4.5.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang/protobuf",
            "direct": true,
            "version": "v1.5.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gorilla/websocket",
            "direct": true,
            "version": "v1.5.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hokaccha/go-prettyjson",
            "direct": true,
            "version": "v0.0.0-20211117102719-0474bc63780f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgerrcode",
            "direct": true,
            "version": "v0.0.0-20220416144525-469b46aa5efa",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgx/v5",
            "direct": true,
            "version": "v5.5.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jmoiron/sqlx",
            "direct": true,
            "version": "v1.3.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mainfluxlabs/senml",
            "direct": true,
            "version": "v1.0.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/nats-io/nats.go",
            "direct": true,
            "version": "v1.15.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/oklog/ulid/v2",
            "direct": true,
            "version": "v2.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opentracing/opentracing-go",
            "direct": true,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/ory/dockertest/v3",
            "direct": true,
            "version": "v3.9.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pelletier/go-toml",
            "direct": true,
            "version": "v1.9.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/plgd-dev/go-coap/v2",
            "direct": true,
            "version": "v2.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/client_golang",
            "direct": true,
            "version": "v1.11.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rabbitmq/amqp091-go",
            "direct": true,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/robfig/cron/v3",
            "direct": true,
            "version": "v3.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rubenv/sql-migrate",
            "direct": true,
            "version": "v1.1.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/shopify/go-lua",
            "direct": true,
            "version": "v0.0.0-20250718183320-1e37f32ad7d0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/shopify/goluago",
            "direct": true,
            "version": "v0.0.0-20240527182001-ec4ec6c26eab",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/cobra",
            "direct": true,
            "version": "v1.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/viper",
            "direct": true,
            "version": "v1.12.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/stretchr/testify",
            "direct": true,
            "version": "v1.8.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/subosito/gotenv",
            "direct": true,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/uber/jaeger-client-go",
            "direct": true,
            "version": "v2.30.0+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/crypto",
            "direct": true,
            "version": "v0.49.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/net",
            "direct": true,
            "version": "v0.52.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/oauth2",
            "direct": true,
            "version": "v0.35.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/sync",
            "direct": true,
            "version": "v0.20.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/time",
            "direct": true,
            "version": "v0.0.0-20211116232009-f0f3c7e86c11",
            "ecosystem": "go"
          },
          {
            "name": "gonum.org/v1/gonum",
            "direct": true,
            "version": "v0.11.0",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/grpc",
            "direct": true,
            "version": "v1.64.1",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/protobuf",
            "direct": true,
            "version": "v1.34.2",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/gomail.v2",
            "direct": true,
            "version": "v2.0.0-20160411212932-81ebce5c23df",
            "ecosystem": "go"
          },
          {
            "name": "cloud.google.com/go/compute/metadata",
            "direct": false,
            "version": "v0.3.0",
            "ecosystem": "go"
          },
          {
            "name": "dario.cat/mergo",
            "direct": false,
            "version": "v1.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/go-ansiterm",
            "direct": false,
            "version": "v0.0.0-20170929234023-d6e3b3328b78",
            "ecosystem": "go"
          },
          {
            "name": "github.com/beorn7/perks",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cespare/xxhash/v2",
            "direct": false,
            "version": "v2.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/containerd/continuity",
            "direct": false,
            "version": "v0.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/davecgh/go-spew",
            "direct": false,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/dgryski/go-rendezvous",
            "direct": false,
            "version": "v0.0.0-20200823014737-9f7001d12a5f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/cli",
            "direct": false,
            "version": "v28.3.3+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/go-connections",
            "direct": false,
            "version": "v0.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/go-units",
            "direct": false,
            "version": "v0.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/dsnet/golib/memfile",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fsnotify/fsnotify",
            "direct": false,
            "version": "v1.5.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fxamacker/cbor/v2",
            "direct": false,
            "version": "v2.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-gorp/gorp/v3",
            "direct": false,
            "version": "v3.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-logfmt/logfmt",
            "direct": false,
            "version": "v0.6.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-viper/mapstructure/v2",
            "direct": false,
            "version": "v2.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/goburrow/serial",
            "direct": false,
            "version": "v0.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/shlex",
            "direct": false,
            "version": "v0.0.0-20191202100458-e7afc7fbc510",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/hcl",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/inconshreveable/mousetrap",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgpassfile",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgservicefile",
            "direct": false,
            "version": "v0.0.0-20221227161230-091c0ba34f0a",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/puddle/v2",
            "direct": false,
            "version": "v2.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lib/pq",
            "direct": false,
            "version": "v1.10.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/magiconair/properties",
            "direct": false,
            "version": "v1.8.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-colorable",
            "direct": false,
            "version": "v0.1.13",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-isatty",
            "direct": false,
            "version": "v0.0.16",
            "ecosystem": "go"
          },
          {
            "name": "github.com/matttproud/golang_protobuf_extensions",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/microsoft/go-winio",
            "direct": false,
            "version": "v0.5.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/mapstructure",
            "direct": false,
            "version": "v1.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/docker-image-spec",
            "direct": false,
            "version": "v1.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/term",
            "direct": false,
            "version": "v0.0.0-20201216013528-df9cb8a40635",
            "ecosystem": "go"
          },
          {
            "name": "github.com/nats-io/nkeys",
            "direct": false,
            "version": "v0.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/nats-io/nuid",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/nvveen/gotty",
            "direct": false,
            "version": "v0.0.0-20120604004816-cd527374f1e5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opencontainers/go-digest",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opencontainers/image-spec",
            "direct": false,
            "version": "v1.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opencontainers/runc",
            "direct": false,
            "version": "v1.1.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pelletier/go-toml/v2",
            "direct": false,
            "version": "v2.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pion/dtls/v2",
            "direct": false,
            "version": "v2.1.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pion/logging",
            "direct": false,
            "version": "v0.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pion/transport",
            "direct": false,
            "version": "v0.13.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pion/udp",
            "direct": false,
            "version": "v0.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pkg/errors",
            "direct": false,
            "version": "v0.9.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/plgd-dev/kit/v2",
            "direct": false,
            "version": "v2.0.0-20211006190727-057b33161b90",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pmezard/go-difflib",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/client_model",
            "direct": false,
            "version": "v0.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/common",
            "direct": false,
            "version": "v0.30.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/procfs",
            "direct": false,
            "version": "v0.7.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/sirupsen/logrus",
            "direct": false,
            "version": "v1.8.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/afero",
            "direct": false,
            "version": "v1.8.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/cast",
            "direct": false,
            "version": "v1.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/jwalterweatherman",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/pflag",
            "direct": false,
            "version": "v1.0.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/uber/jaeger-lib",
            "direct": false,
            "version": "v2.4.1+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/x448/float16",
            "direct": false,
            "version": "v0.8.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xeipuuv/gojsonpointer",
            "direct": false,
            "version": "v0.0.0-20180127040702-4e3ac2762d5f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xeipuuv/gojsonreference",
            "direct": false,
            "version": "v0.0.0-20180127040603-bd5ef7bd5415",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xeipuuv/gojsonschema",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/atomic",
            "direct": false,
            "version": "v1.10.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/sys",
            "direct": false,
            "version": "v0.42.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/text",
            "direct": false,
            "version": "v0.35.0",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto/googleapis/rpc",
            "direct": false,
            "version": "v0.0.0-20240730163845-b1a4ccb954bf",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/alexcesaro/quotedprintable.v3",
            "direct": false,
            "version": "v3.0.0-20150716171945-2caba252f4dc",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/ini.v1",
            "direct": false,
            "version": "v1.66.4",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/yaml.v2",
            "direct": false,
            "version": "v2.4.0",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/yaml.v3",
            "direct": false,
            "version": "v3.0.1",
            "ecosystem": "go"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 114,
        "direct_count": 46,
        "indirect_count": 68
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 3,
        "merged_prs": 774,
        "open_issues": 28,
        "closed_ratio": 0.945,
        "closed_issues": 479,
        "closed_unmerged_prs": 12
      },
      "bus_factor": 4,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "manuio",
          "commits": 459,
          "avatar_url": "https://avatars.githubusercontent.com/u/9677805?v=4"
        },
        {
          "type": "User",
          "login": "drasko",
          "commits": 361,
          "avatar_url": "https://avatars.githubusercontent.com/u/149944?v=4"
        },
        {
          "type": "User",
          "login": "majabirmancevic",
          "commits": 235,
          "avatar_url": "https://avatars.githubusercontent.com/u/79976249?v=4"
        },
        {
          "type": "User",
          "login": "zzokki81",
          "commits": 167,
          "avatar_url": "https://avatars.githubusercontent.com/u/56149596?v=4"
        },
        {
          "type": "User",
          "login": "dborovcanin",
          "commits": 143,
          "avatar_url": "https://avatars.githubusercontent.com/u/17817225?v=4"
        },
        {
          "type": "User",
          "login": "anovakovic01",
          "commits": 93,
          "avatar_url": "https://avatars.githubusercontent.com/u/16108178?v=4"
        },
        {
          "type": "User",
          "login": "mteodor",
          "commits": 77,
          "avatar_url": "https://avatars.githubusercontent.com/u/7990113?v=4"
        },
        {
          "type": "User",
          "login": "anna02272",
          "commits": 68,
          "avatar_url": "https://avatars.githubusercontent.com/u/96575598?v=4"
        },
        {
          "type": "User",
          "login": "bool3max",
          "commits": 66,
          "avatar_url": "https://avatars.githubusercontent.com/u/12991998?v=4"
        },
        {
          "type": "User",
          "login": "blokovi",
          "commits": 61,
          "avatar_url": "https://avatars.githubusercontent.com/u/10115923?v=4"
        }
      ],
      "contributors_sampled": 63,
      "top_contributor_share": 0.217
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "release.yml",
        "test.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [
        ".golangci.yaml",
        ".golangci.yml"
      ],
      "has_editorconfig": true,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "29 out of 29 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 9,
            "reason": "Found 28/30 approved changesets -- score normalized to 9",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 20 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "48 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "dc1543c05210f98e6e3023e9a73ebfb6ba73d6c8",
        "ran_at": "2026-08-02T15:21:10Z",
        "aggregate_score": 4.6,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-29T13:32:49Z",
      "oldest_open_prs": [
        {
          "number": 1210,
          "created_at": "2026-04-24T09:40:48Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1283,
          "created_at": "2026-07-21T17:55:51Z",
          "last_comment_at": "2026-07-30T15:49:50Z",
          "last_comment_author": "pranav718"
        },
        {
          "number": 1296,
          "created_at": "2026-07-30T12:39:00Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-07-29T13:31:18Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 230,
          "created_at": "2023-06-30T18:27:01Z",
          "last_comment_at": "2023-07-06T16:53:20Z",
          "last_comment_author": "willtoth"
        },
        {
          "number": 942,
          "created_at": "2025-11-20T17:13:06Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 958,
          "created_at": "2025-12-01T09:51:35Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1087,
          "created_at": "2026-02-25T17:25:02Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1146,
          "created_at": "2026-03-16T19:41:02Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1147,
          "created_at": "2026-03-16T19:58:35Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1148,
          "created_at": "2026-03-16T20:06:49Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1149,
          "created_at": "2026-03-16T20:39:40Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1160,
          "created_at": "2026-03-19T21:33:01Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1163,
          "created_at": "2026-03-19T22:09:33Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1169,
          "created_at": "2026-03-20T13:13:52Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1172,
          "created_at": "2026-03-20T14:55:07Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1173,
          "created_at": "2026-03-20T15:03:38Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1188,
          "created_at": "2026-04-01T11:58:02Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1204,
          "created_at": "2026-04-21T12:24:45Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1217,
          "created_at": "2026-04-30T07:55:55Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1222,
          "created_at": "2026-05-05T16:12:56Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1224,
          "created_at": "2026-05-06T08:47:16Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1242,
          "created_at": "2026-06-09T08:32:38Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1243,
          "created_at": "2026-06-09T08:45:12Z",
          "last_comment_at": "2026-06-29T12:00:15Z",
          "last_comment_author": "manuio"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/MainfluxLabs/mainflux",
    "host": "github.com",
    "name": "mainflux",
    "owner": "MainfluxLabs"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "excellent",
      "name": "Overall health",
      "note": "The weighted overall 75 is calibrated to 89 on the published index scale (record calibration 2026-08-02).",
      "notes": [
        {
          "code": "overall_calibration",
          "params": {
            "raw": 75,
            "calibrated": 89,
            "calibration": "2026-08-02"
          }
        }
      ],
      "value": 89,
      "inputs": {
        "security": 44,
        "vitality": 99,
        "community": 64,
        "governance": 84,
        "calibration": "2026-08-02",
        "engineering": 76,
        "ai_readiness": 62,
        "weighted_overall_raw": 75
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "exceptional",
        "name": "Vitality",
        "value": 99,
        "weight": 0.21,
        "metrics": [
          {
            "key": "development_activity",
            "band": "exceptional",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 99,
            "inputs": {
              "commits_last_year": 311,
              "human_commit_share": 1,
              "days_since_last_push": 4,
              "active_weeks_last_year": 51
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "51/52 weeks with commits",
                "points": 35.3,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 51
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "311 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 311
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "exceptional",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 37,
              "latest_release_tag": "v0.41.1",
              "releases_from_tags": false,
              "days_since_latest_release": 9,
              "mean_days_between_releases": 17.5
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "37 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 37
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 9 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 9
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~17.5 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 17.5
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "exceptional",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 6,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 6 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 6
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 64,
        "weight": 0.17,
        "metrics": [
          {
            "key": "popularity",
            "band": "moderate",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 53,
            "inputs": {
              "forks": 43,
              "stars": 153,
              "watchers": 6,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "153 stars",
                "points": 35.4,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 153
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "43 forks",
                "points": 13.5,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 43
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "6 watchers",
                "points": 3.9,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "good",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "readme_badges": null,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "readme_badge_services": [],
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "excellent",
        "name": "Sustainability & Governance",
        "value": 84,
        "weight": 0.23,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "excellent",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "bus_factor": 4,
              "contributors_sampled": 63,
              "top_contributor_share": 0.217
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "4 contributor(s) cover half of all commits",
                "points": 43.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 22% of commits",
                "points": 17.6,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 22
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "63 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 63
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 20 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "exceptional",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Newcomer PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "newcomer_pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 95,
            "inputs": {
              "merged_prs": 774,
              "open_issues": 28,
              "closed_issues": 479,
              "prs_merged_7d": null,
              "prs_decided_7d": null,
              "prs_merged_30d": null,
              "prs_decided_30d": null,
              "issue_closed_ratio": 0.945,
              "closed_unmerged_prs": 12,
              "first_time_authors_30d": null,
              "first_time_prs_merged_30d": null,
              "first_time_prs_decided_30d": null
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "94% of issues closed",
                "points": 39.7,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 94
                    }
                  }
                ],
                "max_points": 42
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "774/786 decided PRs merged",
                "points": 29.5,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 774,
                      "decided": 786
                    }
                  }
                ],
                "max_points": 30
              },
              {
                "key": "newcomer_pr_acceptance",
                "name": "Newcomer PR acceptance",
                "detail": "no first-time contributor's PR decided in 30d",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_newcomer_prs",
                    "params": {
                      "days": 30
                    }
                  }
                ],
                "max_points": 13
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 28/30 approved changesets -- score normalized to 9",
                "points": 13.5,
                "status": "partial",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 59,
            "inputs": {
              "followers": 24,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "MainfluxLabs",
              "public_repos": 9,
              "account_age_days": 3361
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "24 followers of MainfluxLabs",
                "points": 10.1,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 24,
                      "login": "MainfluxLabs"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "9 public repos, account ~9 yr old",
                "points": 19.3,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 9
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 9
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "exceptional",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/MainfluxLabs/mainflux"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 11
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 11 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 11
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "39 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 39
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 76,
        "weight": 0.19,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "2 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yaml, .golangci.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yaml, .golangci.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "29 out of 29 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": "https://mainflux.com",
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://mainflux.com",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "weak",
        "name": "Security",
        "value": 44,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "weak",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection",
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 46,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 15,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 3,
              "scorecard_aggregate": 4.6
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "29 out of 29 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 28/30 approved changesets -- score normalized to 9",
                "points": 6.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 20 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "48 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "weak",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 114 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 114
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 37,
            "inputs": {
              "source": "osv",
              "advisories": 86,
              "affected_packages": 11,
              "assessed_packages": 114,
              "unassessed_packages": 0,
              "affected_by_severity": "critical 3, high 4, moderate 2, unknown 2",
              "direct_affected_packages": 5
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "5 affected: github.com/jackc/pgx/v5 v5.5.4 (critical 9.8), golang.org/x/crypto v0.49.0 (critical 10.0), google.golang.org/grpc v1.64.1 (critical 9.1), +2 more",
                "points": 3.8,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_affected",
                    "params": {
                      "count": 5,
                      "packages": "github.com/jackc/pgx/v5 v5.5.4 (critical 9.8), golang.org/x/crypto v0.49.0 (critical 10.0), google.golang.org/grpc v1.64.1 (critical 9.1)"
                    }
                  },
                  {
                    "code": "advisories_affected_more",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "3 advisory-carrying package(s) unaddressed past 90 days; oldest published 136 days ago",
                "points": 23.6,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_stale",
                    "params": {
                      "days": 90,
                      "count": 3,
                      "oldest": 136
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "exceptional",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 114,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "exceptional",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "commit_weight_rule": {
                "min_commits": 50,
                "min_commit_share": 0.1
              },
              "review_only_matches": 0,
              "below_threshold_exposures": [],
              "assessed_self_published_locations": 12
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 62,
        "weight": 0.04,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "weak",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.97,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "97 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 97,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 72,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "docker/ssl/Makefile",
                "tools/mqtt-bench/Makefile",
                "tools/provision/Makefile",
                "vendor/github.com/go-redis/redis/v8/Makefile",
                "vendor/github.com/gogo/protobuf/proto/Makefile",
                "vendor/github.com/hashicorp/hcl/Makefile",
                "vendor/github.com/matttproud/golang_protobuf_extensions/pbutil/Makefile",
                "vendor/github.com/opentracing/opentracing-go/Makefile",
                "vendor/github.com/pelletier/go-toml/Makefile",
                "vendor/github.com/pion/dtls/v2/Makefile",
                "vendor/github.com/pkg/errors/Makefile",
                "vendor/github.com/prometheus/procfs/Makefile",
                "vendor/github.com/rabbitmq/amqp091-go/Makefile",
                "vendor/github.com/spf13/cast/Makefile",
                "vendor/github.com/spf13/cobra/Makefile",
                "vendor/github.com/spf13/viper/Makefile",
                "vendor/github.com/uber/jaeger-client-go/Makefile",
                "vendor/go.uber.org/atomic/Makefile",
                "vendor/google.golang.org/grpc/Makefile",
                "vendor/gopkg.in/ini.v1/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, docker/ssl/Makefile, tools/mqtt-bench/Makefile, tools/provision/Makefile, vendor/github.com/go-redis/redis/v8/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/hashicorp/hcl/Makefile, vendor/github.com/matttproud/golang_protobuf_extensions/pbutil/Makefile, vendor/github.com/opentracing/opentracing-go/Makefile, vendor/github.com/pelletier/go-toml/Makefile, vendor/github.com/pion/dtls/v2/Makefile, vendor/github.com/pkg/errors/Makefile, vendor/github.com/prometheus/procfs/Makefile, vendor/github.com/rabbitmq/amqp091-go/Makefile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/uber/jaeger-client-go/Makefile, vendor/go.uber.org/atomic/Makefile, vendor/google.golang.org/grpc/Makefile, vendor/gopkg.in/ini.v1/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, docker/ssl/Makefile, tools/mqtt-bench/Makefile, tools/provision/Makefile, vendor/github.com/go-redis/redis/v8/Makefile, vendor/github.com/gogo/protobuf/proto/Makefile, vendor/github.com/hashicorp/hcl/Makefile, vendor/github.com/matttproud/golang_protobuf_extensions/pbutil/Makefile, vendor/github.com/opentracing/opentracing-go/Makefile, vendor/github.com/pelletier/go-toml/Makefile, vendor/github.com/pion/dtls/v2/Makefile, vendor/github.com/pkg/errors/Makefile, vendor/github.com/prometheus/procfs/Makefile, vendor/github.com/rabbitmq/amqp091-go/Makefile, vendor/github.com/spf13/cast/Makefile, vendor/github.com/spf13/cobra/Makefile, vendor/github.com/spf13/viper/Makefile, vendor/github.com/uber/jaeger-client-go/Makefile, vendor/go.uber.org/atomic/Makefile, vendor/google.golang.org/grpc/Makefile, vendor/gopkg.in/ini.v1/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yaml, .golangci.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yaml, .golangci.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "exceptional",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 371076,
              "source_files_sampled": 734,
              "oversized_source_files": 3
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "3/734 source files over 60KB",
                "points": 54.8,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 734,
                      "oversized": 3
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "weak",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [],
              "has_mcp_signal": false,
              "api_schema_files": [
                "pkg/proto/mfx.proto",
                "vendor/github.com/docker/docker/api/types/swarm/runtime/plugin.proto"
              ]
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": "pkg/proto/mfx.proto, vendor/github.com/docker/docker/api/types/swarm/runtime/plugin.proto",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "pkg/proto/mfx.proto, vendor/github.com/docker/docker/api/types/swarm/runtime/plugin.proto"
                    }
                  }
                ],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
      }
    ],
    "classification": {
      "top": [
        "application"
      ],
      "labels": [
        "cli"
      ],
      "scores": {
        "cli": 4,
        "library": 3,
        "network-service": 3
      },
      "primary": "cli",
      "evidence": [
        {
          "tier": "dependencies",
          "label": "cli",
          "source": "dep:github.com/spf13/cobra",
          "weight": 4
        },
        {
          "tier": "distribution",
          "label": "library",
          "source": "registry:go",
          "weight": 3
        },
        {
          "tier": "structure",
          "label": "network-service",
          "source": "api_schema",
          "weight": 3
        }
      ],
      "artifacts": [],
      "confidence": "low",
      "host_extension": false,
      "runs_as_process": true,
      "consumed_by_code": false
    },
    "metrics_version": "2.5.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
  ],
  "report_type": "repository",
  "generated_at": "2026-08-02T15:21:38.599616Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/m/MainfluxLabs/mainflux.svg",
  "full_name": "MainfluxLabs/mainflux",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v2.5.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsGo.