Public record
Software health reportschema 0.23.0 · metrics 1.13.0 · 2026-07-21 21:33 UTC

animeshkundu / ai-or-die

Claude, Codex, Gemini, Copilot CLI on the web

JavaScriptMIT★ 0 stars⑂ 0 forkssince Feb 2026View on GitHub ↗

animeshkundu/ai-or-die holds a health index of 60 out of 100, placing it in the Moderate band. It scores highest on Vitality (82/100) and lowest on Security (41/100). It was last updated 4 days ago. A single contributor accounts for most of its recent work.

60
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

60
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

AnimeshPersonal account
40 followers35 public repossince Apr 2014@Microsoft

This repository is owned by a personal account. A single-owner project carries more continuity risk than an organization-backed one.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publishTags
npmai-or-die0.1.964,771874 days agoai-or-dieaiordieaiterminalclaudecopilotgeminiwebbrowserremote

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

82Good · 22% of overall
How it's scored
36/36Push recency — last push 4 days ago
11.8/36Commit cadence — 17/52 weeks with commits
18/18Commit volume — 196 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 12 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year196
human_commit_share0.58
days_since_last_push4
active_weeks_last_year17
How it's scored
27/27Ships releases — 97 releases published
36/36Release recency — latest release 4 days ago
27/27Release cadence — a release every ~1.8 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count97
latest_release_tagv0.1.96
releases_from_tagsno
days_since_latest_release4
mean_days_between_releases1.8

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

43At risk · 18% of overall
How it's scored
0/60Stars — 0 stars
0/25Forks — 0 forks
0/15Watchers — 0 watchers
Inputs used
forks0
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (MIT)
18/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductno
has_pull_request_templateyes
How it's scored
49/80Monthly downloads — 4,771 downloads/month across npm
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesai-or-die
dependents
ecosystemsnpm
total_downloads
monthly_downloads4,771
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

53Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0.6/22.5Commit distribution — top contributor authored 98% of commits
2.7/13.5Contributor breadth — 2 contributors
3/10OpenSSF Scorecard: Contributors — project has 1 contributing companies or organizations -- score normalized to 3
Inputs used
bus_factor1
contributors_sampled2
top_contributor_share0.975
How it's scored
28.3/46.8Issue resolution — 60% of issues closed
28.7/38.3PR acceptance — 78/104 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Inputs used
merged_prs78
open_issues15
closed_issues23
issue_closed_ratio0.605
closed_unmerged_prs26
How it's scored
10/30Ownership backing — personal (user) account
0/20Verified domain — not applicable to user accounts
11.6/25Owner reach — 40 followers of animeshkundu
23.3/25Track record — 35 public repos, account ~12 yr old
Inputs used
followers40
owner_typeUser
is_verified
owner_loginanimeshkundu
public_repos35
account_age_days4,485
Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.
How it's scored
25/25Published & resolvable — 1 package(s) on npm
35/35Publish recency — latest publish 4 days ago
20/20Version history — 87 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesai-or-die
ecosystemsnpm
any_deprecatedno
min_days_since_publish4

Engineering Quality

Are baseline engineering and documentation practices in place?

77Good · 20% of overall
How it's scored
24/24CI workflows — 10 workflow(s)
24/24Tests present
0/16Linter config
0/9.6Pre-commit hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 17 out of 17 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configno
has_precommit_configno

Documentation

90Excellent
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://animesh.kundus.in/ai-or-die/
10/10Repository description
0/10Topics
10/10Wiki
Inputs used
topics
has_wikiyes
homepagehttps://animesh.kundus.in/ai-or-die/
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

41At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
2.5/2.5CI-Tests — 17 out of 17 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
0.8/2.5Contributors — project has 1 contributing companies or organizations -- score normalized to 3
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 12 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
2.5/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 5
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 26 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated18
scorecard_versionv5.5.0
checks_inconclusive0
scorecard_aggregate3.6
How it's scored
10.2/35Direct dependencies free of known advisories — 3 affected: uuid 10.0.0 (high 7.5), ws 8.18.0 (high 7.5), ws 8.18.3 (high 7.5)
0/25Indirect dependencies free of known advisories — transitive set not separable from development and test dependencies in this scope
33.7/40No advisories left outstanding — 1 advisory-carrying package(s) unaddressed past 90 days; oldest published 90 days ago
Inputs used
sourceosv
advisories28
affected_packages15
assessed_packages389
unassessed_packages0
affected_by_severityhigh 11, moderate 3, low 1
direct_affected_packages3
Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 389 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

64Moderate · 0% of overall
How it's scored
45/45Agent instructions — .github/copilot-instructions.md, AGENTS.md, CLAUDE.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 58 of 58 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share1
agent_instruction_files.github/copilot-instructions.md, AGENTS.md, CLAUDE.md
agent_instruction_max_bytes11,890
How it's scored
12.6/18One-command bootstrap — mesh/go.mod (toolchain convention, no task runner)
22/22Automated tests
0/11Lint / format config
0/11Static type checking
10/10Reproducible environment — lockfile
2/10Demonstrated agent practice — 1 of the last 100 commits agent-authored or agent-credited
0/8Automated maintenance — no automated dependency updates observed
5/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 5
Inputs used
has_nixno
has_testsyes
lockfilespackage-lock.json
has_dockerfileno
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_configno
typecheck_configs
agent_commit_share0.01
toolchain_manifestsmesh/go.mod
dependency_bot_commit_share0
How it's scored
0/45Type-checkable code — JavaScript without a type-check config
54.4/55Manageable file sizes — 4/398 source files over 60KB
Inputs used
primary_languageJavaScript
largest_source_bytes338,958
source_files_sampled398
oversized_source_files4

Key facts

0GitHub stars
2contributors
196commits, last 12 months
4days since last push
97releases
1bus factor
15open issues
Go, npmpackage ecosystems

Data collection warnings

  • deps.dev does not index npm:ai-or-die@0.1.96; advisories assessed against the repository dependency graph instead

More detail

OpenSSF Scorecard 3.6 / 10
3.6aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-21 21:32 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
10CI-Tests17 out of 17 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
3Contributorsproject has 1 contributing companies or organizations -- score normalized to 3
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 12 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
5Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 5
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities26 existing vulnerabilities detected
Direct dependencies 15
RegistryPackageVersion constraintManifest
Gotailscale.comv1.80.0mesh/go.mod
npm@lydell/node-pty1.2.0-beta.10package.json
npm@vscode/ripgrep^1.18.0package.json
npm@xterm/headless^6.0.0package.json
npmchokidar^5.0.0package.json
npmcommander^12.1.0package.json
npmcors^2.8.5package.json
npmexpress^4.19.2package.json
npmfuzzysort^3.1.0package.json
npmkoffi^3.0.2package.json
npmopen^10.1.0package.json
npmselfsigned^2.4.1package.json
npmsherpa-onnx-node^1.12.24package.json
npmuuid^10.0.0package.json
npmws^8.18.0package.json
All dependencies 389

Full resolved dependency set from the GitHub dependency graph: 19 direct and 370 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
Gotailscale.comv1.80.0direct
npm@lydell/node-pty1.2.0-beta.10direct
npm@vscode/ripgrep1.18.0direct
npm@xterm/headless6.0.0direct
npmchokidar4.0.3direct
npmchokidar5.0.0direct
npmcommander10.0.1direct
npmcommander12.1.0direct
npmcommander9.5.0direct
npmcors2.8.5direct
npmexpress4.21.2direct
npmfuzzysort3.1.0direct
npmkoffi3.0.2direct
npmopen10.2.0direct
npmselfsigned2.4.1direct
npmsherpa-onnx-node1.12.24direct
npmuuid10.0.0direct
npmws8.18.0direct
npmws8.18.3direct
npm@asamuzakjp/css-color3.2.0indirect
npm@csstools/color-helpers5.1.0indirect
npm@csstools/css-calc2.1.4indirect
npm@csstools/css-color-parser3.1.0indirect
npm@csstools/css-parser-algorithms3.0.5indirect
npm@csstools/css-tokenizer3.0.4indirect
npm@esbuild/aix-ppc640.24.2indirect
npm@esbuild/android-arm0.24.2indirect
npm@esbuild/android-arm640.24.2indirect
npm@esbuild/android-x640.24.2indirect
npm@esbuild/darwin-arm640.24.2indirect
npm@esbuild/darwin-x640.24.2indirect
npm@esbuild/freebsd-arm640.24.2indirect
npm@esbuild/freebsd-x640.24.2indirect
npm@esbuild/linux-arm0.24.2indirect
npm@esbuild/linux-arm640.24.2indirect
npm@esbuild/linux-ia320.24.2indirect
npm@esbuild/linux-loong640.24.2indirect
npm@esbuild/linux-mips64el0.24.2indirect
npm@esbuild/linux-ppc640.24.2indirect
npm@esbuild/linux-riscv640.24.2indirect
npm@esbuild/linux-s390x0.24.2indirect
npm@esbuild/linux-x640.24.2indirect
npm@esbuild/netbsd-arm640.24.2indirect
npm@esbuild/netbsd-x640.24.2indirect
npm@esbuild/openbsd-arm640.24.2indirect
npm@esbuild/openbsd-x640.24.2indirect
npm@esbuild/sunos-x640.24.2indirect
npm@esbuild/win32-arm640.24.2indirect
npm@esbuild/win32-ia320.24.2indirect
npm@esbuild/win32-x640.24.2indirect
npm@huggingface/jinja0.5.9indirect
npm@isaacs/cliui8.0.2indirect
npm@isaacs/fs-minipass4.0.1indirect
npm@koromix/koffi-darwin-arm643.0.2indirect
npm@koromix/koffi-darwin-x643.0.2indirect
npm@koromix/koffi-freebsd-arm643.0.2indirect
npm@koromix/koffi-freebsd-ia323.0.2indirect
npm@koromix/koffi-freebsd-x643.0.2indirect
npm@koromix/koffi-linux-arm643.0.2indirect
npm@koromix/koffi-linux-ia323.0.2indirect
npm@koromix/koffi-linux-loong643.0.2indirect
npm@koromix/koffi-linux-riscv643.0.2indirect
npm@koromix/koffi-linux-x643.0.2indirect
npm@koromix/koffi-openbsd-ia323.0.2indirect
npm@koromix/koffi-openbsd-x643.0.2indirect
npm@koromix/koffi-win32-ia323.0.2indirect
npm@koromix/koffi-win32-x643.0.2indirect
npm@kwsites/file-exists1.1.1indirect
npm@kwsites/promise-deferred1.1.1indirect
npm@lydell/node-pty-darwin-arm641.2.0-beta.10indirect
npm@lydell/node-pty-darwin-x641.2.0-beta.10indirect
npm@lydell/node-pty-linux-arm641.2.0-beta.10indirect
npm@lydell/node-pty-linux-x641.2.0-beta.10indirect
npm@lydell/node-pty-win32-arm641.2.0-beta.10indirect
npm@lydell/node-pty-win32-x641.2.0-beta.10indirect
npm@node-llama-cpp/linux-arm643.18.1indirect
npm@node-llama-cpp/linux-armv7l3.18.1indirect
npm@node-llama-cpp/linux-x643.18.1indirect
npm@node-llama-cpp/linux-x64-cuda3.18.1indirect
npm@node-llama-cpp/linux-x64-cuda-ext3.18.1indirect
npm@node-llama-cpp/linux-x64-vulkan3.18.1indirect
npm@node-llama-cpp/mac-arm64-metal3.18.1indirect
npm@node-llama-cpp/mac-x643.18.1indirect
npm@node-llama-cpp/win-arm643.18.1indirect
npm@node-llama-cpp/win-x643.18.1indirect
npm@node-llama-cpp/win-x64-cuda3.18.1indirect
npm@node-llama-cpp/win-x64-cuda-ext3.18.1indirect
npm@node-llama-cpp/win-x64-vulkan3.18.1indirect
npm@pkgjs/parseargs0.11.0indirect
npm@playwright/test1.58.2indirect
npm@reflink/reflink0.1.19indirect
npm@reflink/reflink-darwin-arm640.1.19indirect
npm@reflink/reflink-darwin-x640.1.19indirect
npm@reflink/reflink-linux-arm64-gnu0.1.19indirect
npm@reflink/reflink-linux-arm64-musl0.1.19indirect
npm@reflink/reflink-linux-x64-gnu0.1.19indirect
npm@reflink/reflink-linux-x64-musl0.1.19indirect
npm@reflink/reflink-win32-arm64-msvc0.1.19indirect
npm@reflink/reflink-win32-x64-msvc0.1.19indirect
npm@simple-git/args-pathspec1.0.3indirect
npm@simple-git/argv-parser1.1.1indirect
npm@tinyhttp/content-disposition2.2.4indirect
npm@types/node25.6.0indirect
npm@types/node-forge1.3.14indirect
npm@vscode/ripgrep-darwin-arm641.18.0indirect
npm@vscode/ripgrep-darwin-x641.18.0indirect
npm@vscode/ripgrep-linux-arm1.18.0indirect
npm@vscode/ripgrep-linux-arm641.18.0indirect
npm@vscode/ripgrep-linux-ia321.18.0indirect
npm@vscode/ripgrep-linux-ppc641.18.0indirect
npm@vscode/ripgrep-linux-riscv641.18.0indirect
npm@vscode/ripgrep-linux-s390x1.18.0indirect
npm@vscode/ripgrep-linux-x641.18.0indirect
npm@vscode/ripgrep-win32-arm641.18.0indirect
npm@vscode/ripgrep-win32-ia321.18.0indirect
npm@vscode/ripgrep-win32-x641.18.0indirect
npmaccepts1.3.8indirect
npmagent-base7.1.4indirect
npmansi-escapes6.2.1indirect
npmansi-regex5.0.1indirect
npmansi-regex6.2.2indirect
npmansi-styles4.3.0indirect
npmansi-styles6.2.1indirect
npmansi-styles6.2.3indirect
npmargparse2.0.1indirect
npmarray-flatten1.1.1indirect
npmasync-retry1.3.3indirect
npmasynckit0.4.0indirect
npmbalanced-match1.0.2indirect
npmbody-parser1.20.3indirect
npmbrace-expansion2.0.2indirect
npmbrowser-stdout1.3.1indirect
npmbundle-name4.1.0indirect
npmbytes3.1.2indirect
npmcall-bind-apply-helpers1.0.2indirect
npmcall-bound1.0.4indirect
npmcamelcase6.3.0indirect
npmchalk4.1.2indirect
npmchalk5.6.2indirect
npmchmodrp1.0.2indirect
npmchownr3.0.0indirect
npmci-info4.4.0indirect
npmcli-cursor5.0.0indirect
npmcli-spinners2.9.2indirect
npmcli-spinners3.4.0indirect
npmcliui8.0.1indirect
npmcmake-js8.0.0indirect
npmcolor-convert2.0.1indirect
npmcolor-name1.1.4indirect
npmcombined-stream1.0.8indirect
npmcontent-disposition0.5.4indirect
npmcontent-type1.0.5indirect
npmcookie0.7.1indirect
npmcookie-signature1.0.6indirect
npmcross-spawn7.0.6indirect
npmcssstyle4.6.0indirect
npmdata-urls5.0.0indirect
npmdebug2.6.9indirect
npmdebug4.4.1indirect
npmdebug4.4.3indirect
npmdecamelize4.0.0indirect
npmdecimal.js10.6.0indirect
npmdeep-extend0.6.0indirect
npmdefault-browser5.2.1indirect
npmdefault-browser-id5.0.0indirect
npmdefine-lazy-prop3.0.0indirect
npmdelayed-stream1.0.0indirect
npmdepd2.0.0indirect
npmdestroy1.2.0indirect
npmdiff7.0.0indirect
npmdunder-proto1.0.1indirect
npmeastasianwidth0.2.0indirect
npmee-first1.1.1indirect
npmemoji-regex10.6.0indirect
npmemoji-regex8.0.0indirect
npmemoji-regex9.2.2indirect
npmencodeurl1.0.2indirect
npmencodeurl2.0.0indirect
npmentities6.0.1indirect
npmenv-var7.5.0indirect
npmes-define-property1.0.1indirect
npmes-errors1.3.0indirect
npmes-object-atoms1.1.1indirect
npmes-set-tostringtag2.1.0indirect
npmesbuild0.24.2indirect
npmescalade3.2.0indirect
npmescape-html1.0.3indirect
npmescape-string-regexp4.0.0indirect
npmetag1.8.1indirect
npmeventemitter35.0.4indirect
npmfilename-reserved-regex3.0.0indirect
npmfilenamify6.0.0indirect
npmfinalhandler1.3.1indirect
npmfind-up5.0.0indirect
npmflat5.0.2indirect
npmforeground-child3.3.1indirect
npmform-data4.0.5indirect
npmforwarded0.2.0indirect
npmfresh0.5.2indirect
npmfs-extra11.3.5indirect
npmfsevents2.3.2indirect
npmfunction-bind1.1.2indirect
npmget-caller-file2.0.5indirect
npmget-east-asian-width1.6.0indirect
npmget-intrinsic1.3.0indirect
npmget-proto1.0.1indirect
npmglob10.4.5indirect
npmgopd1.2.0indirect
npmgraceful-fs4.2.11indirect
npmhas-flag4.0.0indirect
npmhas-symbols1.1.0indirect
npmhas-tostringtag1.0.2indirect
npmhasown2.0.2indirect
npmhe1.2.0indirect
npmhtml-encoding-sniffer4.0.0indirect
npmhttp-errors2.0.0indirect
npmhttp-proxy-agent7.0.2indirect
npmhttps-proxy-agent7.0.6indirect
npmiconv-lite0.4.24indirect
npmiconv-lite0.6.3indirect
npmignore7.0.5indirect
npminherits2.0.4indirect
npmini1.3.8indirect
npmipaddr.js1.9.1indirect
npmipull3.9.5indirect
npmis-docker3.0.0indirect
npmis-fullwidth-code-point3.0.0indirect
npmis-fullwidth-code-point5.1.0indirect
npmis-inside-container1.0.0indirect
npmis-interactive2.0.0indirect
npmis-plain-obj2.1.0indirect
npmis-potential-custom-element-name1.0.1indirect
npmis-unicode-supported0.1.0indirect
npmis-unicode-supported2.1.0indirect
npmis-wsl3.1.0indirect
npmisexe2.0.0indirect
npmisexe4.0.0indirect
npmjackspeak3.4.3indirect
npmjs-yaml4.1.0indirect
npmjsdom24.1.3indirect
npmjsonfile6.2.1indirect
npmlifecycle-utils2.1.0indirect
npmlifecycle-utils3.1.1indirect
npmlocate-path6.0.0indirect
npmlodash.debounce4.0.8indirect
npmlog-symbols4.1.0indirect
npmlog-symbols7.0.1indirect
npmlowdb7.0.1indirect
npmlru-cache10.4.3indirect
npmmath-intrinsics1.1.0indirect
npmmedia-typer0.3.0indirect
npmmerge-descriptors1.0.3indirect
npmmethods1.1.2indirect
npmmime1.6.0indirect
npmmime-db1.52.0indirect
npmmime-types2.1.35indirect
npmmimic-function5.0.1indirect
npmminimatch9.0.5indirect
npmminimist1.2.8indirect
npmminipass7.1.2indirect
npmminizlib3.1.0indirect
npmmocha11.7.1indirect
npmms2.0.0indirect
npmms2.1.3indirect
npmnanoid5.1.11indirect
npmnegotiator0.6.3indirect
npmnode-addon-api8.8.0indirect
npmnode-api-headers1.9.0indirect
npmnode-forge1.4.0indirect
npmnode-llama-cpp3.18.1indirect
npmnwsapi2.2.23indirect
npmobject-assign4.1.1indirect
npmobject-inspect1.13.4indirect
npmon-finished2.4.1indirect
npmonetime7.0.0indirect
npmora9.4.0indirect
npmp-limit3.1.0indirect
npmp-locate5.0.0indirect
npmpackage-json-from-dist1.0.1indirect
npmparse-ms3.0.0indirect
npmparse-ms4.0.0indirect
npmparse57.3.0indirect
npmparseurl1.3.3indirect
npmpath-exists4.0.0indirect
npmpath-key3.1.1indirect
npmpath-scurry1.11.1indirect
npmpath-to-regexp0.1.12indirect
npmpicocolors1.1.1indirect
npmplaywright1.58.2indirect
npmplaywright-core1.58.2indirect
npmpostject1.0.0-alpha.6indirect
npmpretty-bytes6.1.1indirect
npmpretty-ms8.0.0indirect
npmpretty-ms9.3.0indirect
npmproper-lockfile4.1.2indirect
npmproxy-addr2.0.7indirect
npmpsl1.15.0indirect
npmpunycode2.3.1indirect
npmqs6.13.0indirect
npmquerystringify2.2.0indirect
npmrandombytes2.1.0indirect
npmrange-parser1.2.1indirect
npmraw-body2.5.2indirect
npmrc1.2.8indirect
npmreaddirp4.1.2indirect
npmreaddirp5.0.0indirect
npmrequire-directory2.1.1indirect
npmrequires-port1.0.0indirect
npmrestore-cursor5.1.0indirect
npmretry0.12.0indirect
npmretry0.13.1indirect
npmrrweb-cssom0.7.1indirect
npmrrweb-cssom0.8.0indirect
npmrun-applescript7.0.0indirect
npmsafe-buffer5.2.1indirect
npmsafer-buffer2.1.2indirect
npmsaxes6.0.0indirect
npmsemver7.8.4indirect
npmsend0.19.0indirect
npmserialize-javascript6.0.2indirect
npmserve-static1.16.2indirect
npmsetprototypeof1.2.0indirect
npmshebang-command2.0.0indirect
npmshebang-regex3.0.0indirect
npmsherpa-onnx-darwin-arm641.12.24indirect
npmsherpa-onnx-darwin-x641.12.24indirect
npmsherpa-onnx-linux-arm641.12.24indirect
npmsherpa-onnx-linux-x641.12.24indirect
npmsherpa-onnx-win-ia321.12.24indirect
npmsherpa-onnx-win-x641.12.24indirect
npmside-channel1.1.0indirect
npmside-channel-list1.0.0indirect
npmside-channel-map1.0.1indirect
npmside-channel-weakmap1.0.2indirect
npmsignal-exit3.0.7indirect
npmsignal-exit4.1.0indirect
npmsimple-git3.36.0indirect
npmsleep-promise9.1.0indirect
npmslice-ansi7.1.2indirect
npmslice-ansi8.0.0indirect
npmstatuses2.0.1indirect
npmstdin-discarder0.3.2indirect
npmstdout-update4.0.1indirect
npmsteno4.0.2indirect
npmstring-width4.2.3indirect
npmstring-width5.1.2indirect
npmstring-width7.2.0indirect
npmstring-width8.2.1indirect
npmstrip-ansi6.0.1indirect
npmstrip-ansi7.2.0indirect
npmstrip-json-comments2.0.1indirect
npmstrip-json-comments3.1.1indirect
npmsupports-color7.2.0indirect
npmsupports-color8.1.1indirect
npmsymbol-tree3.2.4indirect
npmtar7.5.16indirect
npmtoidentifier1.0.1indirect
npmtough-cookie4.1.4indirect
npmtr465.1.1indirect
npmtype-is1.6.18indirect
npmundici-types7.19.2indirect
npmuniversalify0.2.0indirect
npmuniversalify2.0.1indirect
npmunpipe1.0.0indirect
npmurl-join4.0.1indirect
npmurl-parse1.5.10indirect
npmutils-merge1.0.1indirect
npmvalidate-npm-package-name7.0.2indirect
npmvary1.1.2indirect
npmw3c-xmlserializer5.0.0indirect
npmwebidl-conversions7.0.0indirect
npmwhatwg-encoding3.1.1indirect
npmwhatwg-mimetype4.0.0indirect
npmwhatwg-url14.2.0indirect
npmwhich2.0.2indirect
npmwhich6.0.1indirect
npmworkerpool9.3.3indirect
npmwrap-ansi7.0.0indirect
npmwrap-ansi8.1.0indirect
npmwsl-utils0.1.0indirect
npmxml-name-validator5.0.0indirect
npmxmlchars2.2.0indirect
npmy18n5.0.8indirect
npmyallist5.0.0indirect
npmyargs17.7.2indirect
npmyargs-parser21.1.1indirect
npmyargs-unparser2.0.0indirect
npmyocto-queue0.1.0indirect
npmyoctocolors2.1.2indirect
Dependency advisories 15

This repository publishes no package the index resolves, so its own dependency graph was assessed — 389 packages, which also include development and test pins that never ship: 15 carry known advisories, of which 3 are direct.

PackageVersionRelationSeverityAdvisoriesFixed in
uuid10.0.0directhigh113.0.1
ws8.18.0directhigh28.21.0
ws8.18.3directhigh28.21.0
brace-expansion2.0.2indirecthigh25.0.7
form-data4.0.5indirecthigh14.0.6
glob10.4.5indirecthigh111.1.0
js-yaml4.1.0indirecthigh34.3.0
minimatch9.0.5indirecthigh310.2.3
path-to-regexp0.1.12indirecthigh10.1.13
serialize-javascript6.0.2indirecthigh27.0.5
tar7.5.16indirecthigh47.5.19
diff7.0.0indirectmoderate18.0.3
esbuild0.24.2indirectmoderate10.25.0
qs6.13.0indirectmoderate36.15.2
body-parser1.20.3indirectlow12.3.0

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 58048,
      "has_wiki": true,
      "homepage": "https://animesh.kundus.in/ai-or-die/",
      "languages": {
        "Go": 27947,
        "CSS": 217772,
        "HTML": 130755,
        "Shell": 9582,
        "Batchfile": 1793,
        "JavaScript": 4696498,
        "PowerShell": 2725
      },
      "pushed_at": "2026-07-17T04:05:31Z",
      "created_at": "2026-02-06T04:46:59Z",
      "owner_type": "User",
      "updated_at": "2026-07-17T04:05:32Z",
      "description": "Claude, Codex, Gemini, Copilot CLI on the web",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "JavaScript",
      "significant_languages": [
        "JavaScript"
      ]
    },
    "owner": {
      "blog": "https://animesh.kundus.in",
      "name": "Animesh",
      "type": "User",
      "login": "animeshkundu",
      "company": "@Microsoft",
      "location": "Seattle",
      "followers": 40,
      "avatar_url": "https://avatars.githubusercontent.com/u/7248674?v=4",
      "created_at": "2014-04-10T08:30:39Z",
      "is_verified": null,
      "public_repos": 35,
      "account_age_days": 4485
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.1.96",
          "kind": "patch",
          "published_at": "2026-07-17T04:05:32Z"
        },
        {
          "tag": "v0.1.95",
          "kind": "patch",
          "published_at": "2026-07-10T11:26:58Z"
        },
        {
          "tag": "v0.1.94",
          "kind": "patch",
          "published_at": "2026-07-06T01:50:52Z"
        },
        {
          "tag": "v0.1.93",
          "kind": "patch",
          "published_at": "2026-07-04T02:06:55Z"
        },
        {
          "tag": "v0.1.92",
          "kind": "patch",
          "published_at": "2026-07-02T07:29:29Z"
        },
        {
          "tag": "v0.1.91",
          "kind": "patch",
          "published_at": "2026-07-01T11:11:18Z"
        },
        {
          "tag": "mesh-15ca95fdba8ba0d81c2e49f8f9707d2fb124f51ee3982dea3a87d11b140ab279",
          "kind": "other",
          "published_at": "2026-07-01T11:10:58Z"
        },
        {
          "tag": "v0.1.90",
          "kind": "patch",
          "published_at": "2026-07-01T02:45:32Z"
        },
        {
          "tag": "v0.1.89",
          "kind": "patch",
          "published_at": "2026-07-01T00:18:53Z"
        },
        {
          "tag": "mesh-dbf60b5215ebb0b0947edf8fa47906280dd1fea12ef7e1181918fecfe7d9bcc0",
          "kind": "other",
          "published_at": "2026-07-01T00:18:32Z"
        },
        {
          "tag": "v0.1.88",
          "kind": "patch",
          "published_at": "2026-06-30T09:26:38Z"
        },
        {
          "tag": "mesh-fb010e2cd6a930ef7eeac0de0adaf903cdb7252815650c38eac2d72f15da6e3d",
          "kind": "other",
          "published_at": "2026-06-30T09:26:15Z"
        },
        {
          "tag": "v0.1.87",
          "kind": "patch",
          "published_at": "2026-06-30T09:17:14Z"
        },
        {
          "tag": "v0.1.86",
          "kind": "patch",
          "published_at": "2026-06-30T00:57:50Z"
        },
        {
          "tag": "v0.1.85",
          "kind": "patch",
          "published_at": "2026-06-29T13:08:24Z"
        },
        {
          "tag": "v0.1.84",
          "kind": "patch",
          "published_at": "2026-06-29T12:22:42Z"
        },
        {
          "tag": "v0.1.83",
          "kind": "patch",
          "published_at": "2026-06-29T11:15:19Z"
        },
        {
          "tag": "v0.1.82",
          "kind": "patch",
          "published_at": "2026-06-29T10:09:27Z"
        },
        {
          "tag": "v0.1.81",
          "kind": "patch",
          "published_at": "2026-06-29T00:17:33Z"
        },
        {
          "tag": "v0.1.80",
          "kind": "patch",
          "published_at": "2026-06-28T09:21:09Z"
        },
        {
          "tag": "v0.1.79",
          "kind": "patch",
          "published_at": "2026-06-27T00:43:15Z"
        },
        {
          "tag": "v0.1.78",
          "kind": "patch",
          "published_at": "2026-06-21T01:11:22Z"
        },
        {
          "tag": "v0.1.77",
          "kind": "patch",
          "published_at": "2026-06-20T20:12:18Z"
        },
        {
          "tag": "v0.1.76",
          "kind": "patch",
          "published_at": "2026-06-19T14:16:59Z"
        },
        {
          "tag": "v0.1.75",
          "kind": "patch",
          "published_at": "2026-06-19T06:43:50Z"
        },
        {
          "tag": "v0.1.74",
          "kind": "patch",
          "published_at": "2026-06-18T22:23:23Z"
        },
        {
          "tag": "v0.1.73",
          "kind": "patch",
          "published_at": "2026-06-17T06:59:50Z"
        },
        {
          "tag": "v0.1.72",
          "kind": "patch",
          "published_at": "2026-06-16T08:24:30Z"
        },
        {
          "tag": "v0.1.71",
          "kind": "patch",
          "published_at": "2026-06-14T23:45:00Z"
        },
        {
          "tag": "v0.1.70",
          "kind": "patch",
          "published_at": "2026-06-11T08:56:40Z"
        },
        {
          "tag": "v0.1.69",
          "kind": "patch",
          "published_at": "2026-06-01T07:00:41Z"
        },
        {
          "tag": "v0.1.68",
          "kind": "patch",
          "published_at": "2026-06-01T00:35:28Z"
        },
        {
          "tag": "v0.1.67",
          "kind": "patch",
          "published_at": "2026-05-29T00:58:18Z"
        },
        {
          "tag": "v0.1.66",
          "kind": "patch",
          "published_at": "2026-05-28T04:34:55Z"
        },
        {
          "tag": "v0.1.65",
          "kind": "patch",
          "published_at": "2026-05-26T07:49:33Z"
        },
        {
          "tag": "v0.1.64",
          "kind": "patch",
          "published_at": "2026-05-18T23:00:34Z"
        },
        {
          "tag": "v0.1.63",
          "kind": "patch",
          "published_at": "2026-05-15T05:57:18Z"
        },
        {
          "tag": "v0.1.62",
          "kind": "patch",
          "published_at": "2026-05-12T07:51:58Z"
        },
        {
          "tag": "v0.1.61",
          "kind": "patch",
          "published_at": "2026-04-30T04:38:52Z"
        },
        {
          "tag": "v0.1.60",
          "kind": "patch",
          "published_at": "2026-04-13T09:19:07Z"
        },
        {
          "tag": "v0.1.59",
          "kind": "patch",
          "published_at": "2026-04-13T09:05:47Z"
        },
        {
          "tag": "v0.1.58",
          "kind": "patch",
          "published_at": "2026-04-13T08:55:50Z"
        },
        {
          "tag": "v0.1.57",
          "kind": "patch",
          "published_at": "2026-04-13T08:33:21Z"
        },
        {
          "tag": "v0.1.56",
          "kind": "patch",
          "published_at": "2026-04-13T08:31:22Z"
        },
        {
          "tag": "v0.1.55",
          "kind": "patch",
          "published_at": "2026-04-13T08:28:36Z"
        },
        {
          "tag": "v0.1.54",
          "kind": "patch",
          "published_at": "2026-04-13T08:19:45Z"
        },
        {
          "tag": "v0.1.53",
          "kind": "patch",
          "published_at": "2026-03-24T20:41:10Z"
        },
        {
          "tag": "v0.1.51",
          "kind": "patch",
          "published_at": "2026-03-24T17:32:42Z"
        },
        {
          "tag": "v0.1.48",
          "kind": "patch",
          "published_at": "2026-03-24T17:24:28Z"
        },
        {
          "tag": "v0.1.47",
          "kind": "patch",
          "published_at": "2026-02-25T09:38:32Z"
        },
        {
          "tag": "v0.1.46",
          "kind": "patch",
          "published_at": "2026-02-20T10:27:31Z"
        },
        {
          "tag": "v0.1.45",
          "kind": "patch",
          "published_at": "2026-02-14T00:20:54Z"
        },
        {
          "tag": "v0.1.44",
          "kind": "patch",
          "published_at": "2026-02-13T13:43:48Z"
        },
        {
          "tag": "v0.1.43",
          "kind": "patch",
          "published_at": "2026-02-12T19:45:47Z"
        },
        {
          "tag": "v0.1.42",
          "kind": "patch",
          "published_at": "2026-02-11T12:08:11Z"
        },
        {
          "tag": "v0.1.41",
          "kind": "patch",
          "published_at": "2026-02-10T17:58:59Z"
        },
        {
          "tag": "v0.1.40",
          "kind": "patch",
          "published_at": "2026-02-10T08:49:55Z"
        },
        {
          "tag": "v0.1.39",
          "kind": "patch",
          "published_at": "2026-02-10T06:51:57Z"
        },
        {
          "tag": "v0.1.38",
          "kind": "patch",
          "published_at": "2026-02-09T17:42:32Z"
        },
        {
          "tag": "v0.1.37",
          "kind": "patch",
          "published_at": "2026-02-09T13:11:55Z"
        },
        {
          "tag": "v0.1.36",
          "kind": "patch",
          "published_at": "2026-02-08T11:22:34Z"
        },
        {
          "tag": "v0.1.35",
          "kind": "patch",
          "published_at": "2026-02-08T10:54:51Z"
        },
        {
          "tag": "v0.1.34",
          "kind": "patch",
          "published_at": "2026-02-08T10:28:02Z"
        },
        {
          "tag": "v0.1.33",
          "kind": "patch",
          "published_at": "2026-02-08T07:59:35Z"
        },
        {
          "tag": "v0.1.32",
          "kind": "patch",
          "published_at": "2026-02-08T07:56:57Z"
        },
        {
          "tag": "v0.1.31",
          "kind": "patch",
          "published_at": "2026-02-08T04:34:09Z"
        },
        {
          "tag": "v0.1.30",
          "kind": "patch",
          "published_at": "2026-02-08T04:10:25Z"
        },
        {
          "tag": "v0.1.29",
          "kind": "patch",
          "published_at": "2026-02-08T02:59:26Z"
        },
        {
          "tag": "v0.1.28",
          "kind": "patch",
          "published_at": "2026-02-08T02:47:34Z"
        },
        {
          "tag": "v0.1.27",
          "kind": "patch",
          "published_at": "2026-02-08T01:50:37Z"
        },
        {
          "tag": "v0.1.26",
          "kind": "patch",
          "published_at": "2026-02-08T00:18:15Z"
        },
        {
          "tag": "v0.1.25",
          "kind": "patch",
          "published_at": "2026-02-07T23:34:50Z"
        },
        {
          "tag": "v0.1.24",
          "kind": "patch",
          "published_at": "2026-02-07T23:24:22Z"
        },
        {
          "tag": "v0.1.23",
          "kind": "patch",
          "published_at": "2026-02-07T23:10:51Z"
        },
        {
          "tag": "v0.1.22",
          "kind": "patch",
          "published_at": "2026-02-07T13:26:58Z"
        },
        {
          "tag": "v0.1.21",
          "kind": "patch",
          "published_at": "2026-02-07T13:18:49Z"
        },
        {
          "tag": "v0.1.20",
          "kind": "patch",
          "published_at": "2026-02-07T12:20:12Z"
        },
        {
          "tag": "v0.1.19",
          "kind": "patch",
          "published_at": "2026-02-07T11:54:57Z"
        },
        {
          "tag": "v0.1.18",
          "kind": "patch",
          "published_at": "2026-02-07T11:25:14Z"
        },
        {
          "tag": "v0.1.17",
          "kind": "patch",
          "published_at": "2026-02-07T07:29:30Z"
        },
        {
          "tag": "v0.1.16",
          "kind": "patch",
          "published_at": "2026-02-07T01:07:02Z"
        },
        {
          "tag": "v0.1.15",
          "kind": "patch",
          "published_at": "2026-02-06T21:29:37Z"
        },
        {
          "tag": "v0.1.14",
          "kind": "patch",
          "published_at": "2026-02-06T12:34:34Z"
        },
        {
          "tag": "v0.1.13",
          "kind": "patch",
          "published_at": "2026-02-06T11:37:25Z"
        },
        {
          "tag": "v0.1.12",
          "kind": "patch",
          "published_at": "2026-02-06T11:30:38Z"
        },
        {
          "tag": "v0.1.11",
          "kind": "patch",
          "published_at": "2026-02-06T11:24:31Z"
        },
        {
          "tag": "v0.1.10",
          "kind": "patch",
          "published_at": "2026-02-06T11:16:10Z"
        },
        {
          "tag": "v0.1.9",
          "kind": "patch",
          "published_at": "2026-02-06T11:12:24Z"
        },
        {
          "tag": "v0.1.8",
          "kind": "patch",
          "published_at": "2026-02-06T11:09:31Z"
        },
        {
          "tag": "v0.1.7",
          "kind": "patch",
          "published_at": "2026-02-06T11:02:33Z"
        },
        {
          "tag": "v0.1.6",
          "kind": "patch",
          "published_at": "2026-02-06T10:57:19Z"
        },
        {
          "tag": "v0.1.5",
          "kind": "patch",
          "published_at": "2026-02-06T10:41:48Z"
        },
        {
          "tag": "v0.1.4",
          "kind": "patch",
          "published_at": "2026-02-06T10:39:44Z"
        },
        {
          "tag": "v0.1.3",
          "kind": "patch",
          "published_at": "2026-02-06T10:34:09Z"
        },
        {
          "tag": "v0.1.2",
          "kind": "patch",
          "published_at": "2026-02-06T10:32:13Z"
        },
        {
          "tag": "v0.1.1",
          "kind": "patch",
          "published_at": "2026-02-06T10:30:26Z"
        },
        {
          "tag": "v0.1.0",
          "kind": "minor",
          "published_at": "2026-02-06T04:47:54Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "4c181ef76639e7640717c31b3f4bc324f98a6d36",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.96",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-17T04:05:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a890d509aa936e1f6979eeeeb1fef947323cda7b",
          "body": "* feat(keepalive): name the Windows wake assertion as GitHub Copilot\n\nHold a named PowerCreateRequest/PowerSetRequest whose REASON_CONTEXT\nSimpleReasonString is \"GitHub Copilot CLI session active\", alongside the\nexisting SetThreadExecutionState assertion, so `powercfg /requests` shows a\nCopilot-iden\n[…]\nt by design (reverse with\n`powercfg /hibernate on`); Windows only; skipped under test/CI.\n\nAdds test/hibernation-guard.test.js, ADR-0030, a keepalive spec section, and the\nCLAUDE.md Keep-Awake bullet.",
          "is_bot": false,
          "headline": "feat(keepalive): GitHub Copilot naming + opt-in hibernation guard (#148)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-17T04:05:02Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "eb299f3ee2ac966314604922e187aff5da7f9104",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.95",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-10T11:26:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bfcc3201d23d46ecd6fa536248ed133b2b6e2e6b",
          "body": "…e xterm to 6.0 (#146)\n\n* fix(terminal): stop trackpad wheel hijacking full-screen TUIs; upgrade xterm to 6.0\n\nInside a full-screen app on the alternate screen buffer (the Claude Code TUI),\nxterm.js turns every wheel notch into Up/Down arrow bytes, so trackpad scrolling\njumped menus instead of scrol\n[…]\nranch under CI load; post-fix the tests\npass 8/8 and the full new-features project passes 52/52 with zero flakes across\nrepeated CI-load runs. Fixes the test-browser-new-features (windows-latest) job.",
          "is_bot": false,
          "headline": "fix(terminal): stop trackpad wheel hijacking full-screen TUIs; upgrad…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-10T11:26:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "577baec7370428f0becc039b5b02ca6fa05fdb44",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.94",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-06T01:50:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a52ecadb4ee46677b8687dbda4d59f4a4066f14a",
          "body": "…input, mode-aware key encoder, flicker-free keyboard (#143)\n\n* feat(mobile): full touch-driving of Claude Code on iPhone — two-mode input, mode-aware key encoder, flicker-free keyboard\n\nMake the Claude Code TUI fully operable by touch on an iPhone 16 (installed PWA\nunder Edge/WebKit) with no deskto\n[…]\n CI even with a wait). Instead wait for the\nshell prompt to be visible and assert the copy button writes non-empty visible\ntext to the clipboard. The getVisibleText contract is unit-tested separately.",
          "is_bot": false,
          "headline": "feat(mobile): full touch-driving of Claude Code on iPhone — two-mode …",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-06T01:50:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "47930cac537abae1a035a63a28afba5e9000f248",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.93",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-04T02:06:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18fdb95c59de3125ae769c43dafbc1b08ecae6ed",
          "body": "…hat, dismiss+reopen, SSE replay + /history, typed /await + /actions, data-aod-* capture (choose-one + multi-select), artifact_update, transcript idle-gate (#142)",
          "is_bot": false,
          "headline": "feat(artifact-panel): v2 P0+P1 — SSE-only render, per-session queue/c…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-04T02:06:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "68ef947a8e5ebaf8c2ebfca93b377d4800e65055",
          "body": "…e TTL (#141)\n\nThe sidecar announced MESH-EGRESS once at spawn, so mesh/egress.json's updatedAt\nwas frozen at start time. A consumer (github-router) treats the egress stale past\na ~120s freshness TTL, so after ~2 min of sidecar uptime every mesh drive failed\nclosed with MESH_UNCONFIGURED even though\n[…]\nis alive (stopping the timer once it exits, so\na dead sidecar is never kept artificially fresh). JS-only: the content-addressed\nsidecar binary is unchanged.\n\nCo-authored-by: Kundus <kundus@mini.local>",
          "is_bot": false,
          "headline": "fix(mesh): re-stamp egress.json so a live egress isn't rejected by th…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-02T07:29:01Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ea73739dcad8ccec47ed44edcb1b66e5f454ec2d",
          "body": "…140)\n\n* feat(mesh): userspace egress proxy + trustable stable-path sidecar\n\nLet a no-admin conductor drive the fleet over the Tailscale mesh, make the\nsidecar trustable once per machine, and surface untagged enrollment.\n\n- egress: the sidecar runs a loopback HTTP CONNECT proxy (tsnet Dial), gated b\n[…]\ner\nneeded at runtime (the sidecar ships as a prebuilt binary; local builds use\nonly mesh/main.go + go.mod), so exclude *_test.go from .npmignore.\n\n---------\n\nCo-authored-by: Kundus <kundus@mini.local>",
          "is_bot": false,
          "headline": "feat(mesh): userspace egress proxy + trustable stable-path sidecar (#…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-01T11:06:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0cbf26f2003a98dc4de6a9c016fc7fe282fb5ad4",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.90",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-01T02:45:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "44ef1e6ae681abbae8a1ecb2222dbd4977493a8e",
          "body": "…ssaging (#138)\n\n* feat(artifact-panel): horizontal + responsive layout when maximized\n\nMaximizing the artifact panel previously only changed its bounds (8px insets),\nleaving chat stacked below the content at a 30% cap. Maximizing is a request for\ncontent width, so switch the maximized body to a CSS\n[…]\nmitigated TUI-timing risk (Claude Code buffers\nstdin during a turn, so the worst likely case is a deferred, not corrupted,\nmessage); the transcript-awaiting-input gate remains the hardening follow-up.",
          "is_bot": false,
          "headline": "feat(artifact-panel): maximized horizontal split + idle-gated push me…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-01T02:45:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a9c5edb0d05686687070a945e79d009817ff96ed",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.89",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-01T00:18:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "27eecdcd7ef23b2efa07500c56359c045c8c46fa",
          "body": "* feat(mesh): publish tagged tailnet peers + inject the app bearer\n\nTwo additions that let github-router's fleet drive instances over the mesh\nwith zero per-instance config:\n\n- Sidecar (mesh/main.go) injects the app's bearer (AIORDIE_PROXY_BEARER,\n  passed by MeshManager) as Authorization on every t\n[…]\nvered:\npartial/oversized/malformed stdout lines, atomic write, stale-peers\ndeletion on mesh-down, smuggled Authorization header.\n\n* chore(mesh): refresh sidecar lock contentHash for the main.go change",
          "is_bot": false,
          "headline": "feat(mesh): publish tagged tailnet peers + inject the app bearer (#139)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-07-01T00:14:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "35cd45e6ba16d974675998d25b63bd94b8a7534c",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.88",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-30T09:26:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef7604beb006750525d12ecabf40c4c0eb2a961c",
          "body": "…136)\n\n* feat(mesh): content-addressed sidecar distribution + real edge TLS\n\nFixes `--mesh` \"sidecar not installed\" and the broken `--https --mesh` path.\n\nDistribution: version the sidecar by a content hash of its source, published\nonce to a `mesh-<hash>` release and pinned per ai-or-die version via\n[…]\nback backend (httptest, no tailnet), and tests the :80->443 308 redirect\npreserves path+query. Fixes the mesh/.gitignore pattern (go.sum, not mesh/go.sum).\nRegenerates the lock for the main.go change.",
          "is_bot": false,
          "headline": "feat(mesh): content-addressed sidecar distribution + real edge TLS (#…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-30T09:17:39Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3b7920410396daab75dfc51db2872ec055f5bbf7",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.87",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-30T09:17:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0cc633b2fb8244a9932cc9b0dfce7fc3a8260f1a",
          "body": "… repaint cache (#137)\n\n* fix(terminal): stop tab-switch render garble (#131) + instant per-tab repaint cache\n\nSwitching tabs could render overlapping/garbled output (a spinner line drawn\nover stale content) and lag blank until the next server frame arrived.\n\nThe garble was introduced by #131, which\n[…]\ntedForSession); otherwise clear as before. Preserves the instant\npaint for cached tabs and restores isolation for fresh ones.\n\nVerified: power-user-flows project 14/14 green locally (was 13 + 1 fail).",
          "is_bot": false,
          "headline": "fix(terminal): stop tab-switch render garble (#131) + instant per-tab…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-30T09:16:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e0efc9a15bf0e9db7d08188be59a95bb4d76bd15",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.86",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-30T00:57:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6c2eff98d25d31b281692b58dfdff0db5400b851",
          "body": "* fix(artifact): emit AIORDIE_INSECURE_TLS for self-signed loopback\n\nThe artifact API runs over a self-signed cert on https://127.0.0.1. Tell the\ngithub-router artifact client to relax TLS verification for this loopback\ninstance; it fails closed for non-loopback hosts.\n\n* fix(artifact): allow out-of\n[…]\nrtant, so restore needs no manual save). Mutually exclusive with minimize.\nCovered by a jsdom state-machine test + the real-browser e2e (maximize fills the\nwrapper, restore returns to the prior size).",
          "is_bot": false,
          "headline": "fix(artifact): emit AIORDIE_INSECURE_TLS for self-signed loopback (#134)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-30T00:57:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b211ed8e70d20263873005b0f90cdc0b4750cae6",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.85",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-29T13:08:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "12c8203386f23dd47becd669132170d8ca8cc7f8",
          "body": "…#135)\n\nTurn --mesh from a stub into one-command setup. On --mesh the manager now\ndownloads the platform sidecar from the matching GitHub release and verifies\nits SHA-256 against the release checksums before first use; a new\nbuild-mesh-sidecar release job cross-builds all platforms (Go, one runner) \n[…]\n+ trust model), installer tests\n\nAlso: --tunnel disables auth even with --mesh (tunnel controls access);\n--mesh alone keeps the Bearer token on. Reverts the earlier mesh-forces-auth\nbehavior per spec.",
          "is_bot": false,
          "headline": "feat(mesh): auto-fetch + verify sidecar binary; publish per release (…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-29T13:08:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "542d3d84634548143d9b8102e4e372ea753e1225",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.84",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-29T12:22:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "65849b5ef7390267e5c259a80380b94ee8ccba94",
          "body": "…) (#133)\n\n* feat: permanent userspace mesh reachability via tsnet sidecar (--mesh)\n\nAdd an opt-in --mesh transport so instances stay reachable permanently\nwithout the dev-tunnel expiry/URL-churn. A small tsnet sidecar (mesh/)\njoins a Tailscale tailnet in userspace — no kernel driver, no admin, no\ns\n[…]\nS_AUTHKEY but never passed it to the sidecar,\nso enroll always hit NeedsLogin. Forward it as TS_AUTHKEY only on the child\nenv (still stripped from parent + base child env). Caught by happy-path smoke.",
          "is_bot": false,
          "headline": "feat: permanent userspace mesh reachability via tsnet sidecar (--mesh…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-29T12:22:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d2e9552d6f21b4dba8a84ace3c1e5e36079c3e01",
          "body": "…#132)\n\nThe artifact-review env trio was injected only for toolName==='claude' tabs,\nso a user running 'npx github-router claude' inside a Terminal tab got no\nAIORDIE_BASE_URL/TOKEN/SESSION_ID and the in-proxy artifact_* tools stayed dark\n(NOT_IN_AIORDIE_TAB). Extend the gate to terminal tabs. The t\n[…]\njack.\nPer-tab uuid sessionId keeps multiple terminal claudes isolated.\n\nTest: startToolSession gate regression (terminal+claude get trio, codex none)\nplus per-session isolation; fails on pre-fix code.",
          "is_bot": false,
          "headline": "fix: artifact viewer for github-router claude run in a terminal tab (…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-29T11:14:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a0b82e037750c66d0601cebbbeee4102ad863776",
          "body": "…131)\n\n* fix: artifact viewer under --disable-auth + repaint tab on refresh\n\nTwo standalone (no-fleet) bugs:\n\n- Artifact viewer never opened under --disable-auth: the env trio was\n  gated on `this.auth`, which is null with auth disabled. Add\n  `_artifactEnvForSession()` injecting the trio when auth \n[…]\nin/dispose\n  are time-bounded so a slow drain can't stall or leak.\n\nTests: artifact-env-disable-auth (3), transcript-peek (2).\n\n* test: give F6 control-spawn stub the new _artifactEnvForSession method",
          "is_bot": false,
          "headline": "fix: artifact viewer under --disable-auth + repaint tab on refresh (#…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-29T10:09:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "46b4222811d0ff80c190214e7fb21ca515f67b8b",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.81",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-29T00:17:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e515621645b43376655bce55094eeb54a474e89",
          "body": "… (#130)\n\nInject the artifact env trio (AIORDIE_BASE_URL/TOKEN/SESSION_ID) for a manually\nstarted claude tab when auth is set, so artifact_* tools activate without the\nfleet/control plane. Add chokidar auto live-reload (per-session, awaitWriteFinish,\ncapped) broadcasting a reload signal the panel applies without clobbering the\nfeedback box. Tests: reloadReview + suites green.",
          "is_bot": false,
          "headline": "feat: activate artifact-review panel for standalone manual claude tab…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-29T00:17:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8cb320ba7100db065dea8d1b0cbd55e17d38769c",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.80",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-28T09:21:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd00b9a66e1d63627c6428021de1516199e9ebf1",
          "body": "…ract audit) (#129)\n\n* feat: fleet control-plane scale hardening (F15/F16/F19/F21/F22 + contract audit)\n\nCluster-4 scale workstream for the fleet control plane: per-session event\nretention with atomic snapshot+cursor resync (F15), per-session steering mutex\n(F16), capabilities negotiation endpoint (\n[…]\nended, transcriptPath drift, summariser-off + opt-out binding.\n\ngithub-router's SessionStart-hook sidecar already writes the correct real\ntranscript path on Windows; no github-router change is needed.",
          "is_bot": false,
          "headline": "feat: fleet control-plane scale hardening (F15/F16/F19/F21/F22 + cont…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-28T09:20:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "23dfd216d5021d8bf60882e8a31787745180b223",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.79",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-27T00:43:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef59e919be4c689b9a932495d6b00f75dc877db8",
          "body": "…(#128)\n\n* feat: federated fleet session control plane + remote artifact review\n\nAdd a token-gated REST/JSON control plane (/api/control/*) that lets one\nclient LLM enumerate, read, steer, and supervise the live AI-CLI sessions\nacross many ai-or-die instances, plus a native per-tab artifact-review p\n[…]\nha now also runs test/control/*).\n\n* chore: regenerate linux visual baselines — claude now always available via the github-router launcher [update-baselines]\n\n* test: regenerate linux visual baselines",
          "is_bot": false,
          "headline": "feat: federated fleet session control plane + remote artifact review …",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-27T00:42:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c62d330f2125f267b133e0a5dbe4702cf7c01f2c",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.78",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-21T01:11:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8187038a3d556d8ddefad7a948d8bd3fe452c31b",
          "body": "…e timeout) (#127)\n\nOn Windows the Vulkan GPU prebuilt is frequently incompatible, so node-llama-cpp\nfalls back to pure CPU. At the hard-capped 2 inference threads a real summary took\n~160s, far past the 60s engine timeout, so every inference timed out and after 3\nconsecutive failures the circuit br\n[…]\nxplicit/bogus/string, GPU vs CPU), engine\n300s-timeout + auto/explicit-threads + stale-runtime-info regressions, summarizer\none-timeout-owner check, and the real-inference smoke budget raised to 310s.",
          "is_bot": false,
          "headline": "fix: sticky notes never summarize on Windows CPU (inference outran th…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-21T01:10:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "22bd3135c633a9b0bae3567d9ea5c0125211881e",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.77",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-20T20:12:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b3a0202ec4e2d7fceb6f0b8baf6f40296e3fdbd",
          "body": "…#126)\n\n* feat: deterministic process shutdown (no zombie node/bun processes)\n\nWhen the supervisor process dies for ANY reason (Ctrl+C, crash, taskkill /F,\nSIGKILL, console close), the whole tree now dies with it — server, node-pty\nPTYs, and the CLI's node/bun MCP grandchildren. While the system is \n[…]\ne('koffi') can never succeed. Short-circuit\nisAvailable() on global.__SEA_MODE__ so the PTY-start hot path doesn't attempt a\ndoomed module lookup; the SEA binary runs in best-effort degraded teardown.",
          "is_bot": false,
          "headline": "feat: deterministic process shutdown (no zombie node/bun processes) (…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-20T20:11:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e60ecbfac840cdc71f3dcbbe073b04c0dac12ddb",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.76",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-19T14:16:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "051bd9a402f664199300a2176182000fbd527ea8",
          "body": "…cy (#125)\n\n* feat: per-machine identity, settings redesign, and UI token consistency\n\nAdd a per-machine app identity and tighten design-language consistency\nacross the product.\n\nIdentity ([HOST] ai-or-die):\n- new shared UMD app-identity.js (browser + server) that sanitizes the\n  hostname and format\n[…]\nubuntu and commits the updated\nbaselines back to the branch. It is gated by an \"[update-baselines]\"\ncommit-message marker so it stays inert on normal pushes.\n\n* test: regenerate linux visual baselines",
          "is_bot": false,
          "headline": "feat: per-machine identity, settings redesign, and UI token consisten…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-19T14:16:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "989b0a17a567ad8844a962bb3e76b6dbe998c4ba",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.75",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-19T06:43:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9140dc1fcd625701b51d12b9f118591a69d9401",
          "body": "* feat: keep the machine awake on Windows while the server runs\n\nHold a SetThreadExecutionState(ES_SYSTEM_REQUIRED) power assertion for the\nlifetime of the server so Windows 11 cannot sleep mid-session and drop live\nsessions, WebSockets, and tunnels. One persistent in-box powershell.exe helper\nP/Inv\n[…]\nrowser-CDN download flaked intermittently across many jobs with no\nretry, the most common red across runs. Wrap all 16 install steps in a\n3-attempt bash retry (cross-platform via Git Bash on Windows).",
          "is_bot": false,
          "headline": "feat: keep the machine awake on Windows while the server runs (#123)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-19T06:43:25Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "46b366b35b58fba5ffabc459681953320e1b7781",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.74",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-18T22:23:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "edfc24e4bee837a316f365f7306340ca56d3de5f",
          "body": "…r (#124)\n\nMultiple Terminal tabs running `github-router claude` across distinct projects\nall showed the one growing session's note/title. Root cause: the binder scoped\nby liveCwd||workingDir then picked newest-mtime; terminal-launched claude has\nliveCwd null (cmd.exe / no OSC 7), so every tab colla\n[…]\neanup on\n  close; persist claudePinnedSessionId.\n- ADR-0026 (supersedes the deferred fix in ADR-0024); spec + history updated.\n\nRequires the github-router SessionStart-hook change to take full effect.",
          "is_bot": false,
          "headline": "fix: bind sticky notes to the right claude session via per-tab sideca…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-18T22:23:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "40689438bec574810e876aeb0f71806ee3798911",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.73",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-17T06:59:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9f49e5754da01cfdccd63c109c52665190f530b0",
          "body": "* fix: prevent SIGABRT on Ctrl+C from native worker teardown\n\nStarting the app and pressing Ctrl+C aborted the process with SIGABRT\n(exit 134, \"libc++abi: terminating due to uncaught exception of type\nNapi::Error\"). The two ggml-based native worker engines (STT / sherpa-onnx,\nsticky-notes / node-lla\n[…]\nd lookup resolves the live transcript\nand the ai-title tail reads the real title. Adds Windows drive-letter\ncases to test/sticky-note-jsonl.test.js (61 sticky-note unit + 30\nserver-wiring tests pass).",
          "is_bot": false,
          "headline": "fix: prevent SIGABRT on Ctrl+C from native worker teardown (#121)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-17T06:59:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "51797e63674363d185926d4c7fc2a95035ee5e0f",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.72",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-16T08:24:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "62eab8cf76c8d0a46c7b1dde6e7d9041df974719",
          "body": "…e (#119)\n\n* fix: stream voice audio as a binary WS frame to stop the recording crash\n\nLocal-mode mic audio was buffered and sent as one base64-JSON WebSocket\nframe on stop. base64's 33% inflation crossed the 1 MiB frame guard at\n~24.6 s, so any recording past ~25 s triggered ws.close(1009) — a clea\n[…]\na reset\n- pre-handoff timeout + error cleanup drop scanner/slowloris connections\n- close() destroys proxied sockets and the inner servers\n\nDocs: ADR-0027, server spec. Adds test/https-upgrade.test.js.",
          "is_bot": false,
          "headline": "fix: voice recording crash (binary WS frame) + http→https auto-upgrad…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-16T08:24:03Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8ef41f35b00cafb690b1fc420f46a05e277991c5",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.71",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-14T23:44:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1048bae457e68cf2332732533214ff214898e3c9",
          "body": "…ault (#118)\n\n* feat: per-tab local-LLM sticky notes + auto tab titles; STT on by default\n\nAdds a per-tab \"sticky note\" that summarises each AI tab's terminal output\n(goal / progress / waiting-on) plus an auto-generated short tab title, produced\nby a bundled node-llama-cpp worker running Gemma 3 1B \n[…]\nntegrations / new-features) over their\n12-min timeout. No createServer-based spec exercises the real sticky model, so\ndisable its download by default (opt in with createServer({ stickyNotes: true })).",
          "is_bot": false,
          "headline": "feat: per-tab local-LLM sticky notes + auto tab titles; STT on by def…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-14T23:44:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cdf488aa50caeb227c8ecb3d67f3b4d4e8880a12",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.70",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-11T08:56:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "79ec7645219a951738da989973db23a2ce9fac9f",
          "body": "* fix: non-image drag-drop uploads + per-tab file-browser root\n\nNon-image file drops failed because the global express.json() (~100KB default) shadowed the upload route's own parser, 413-ing base64 bodies over ~75KB before the route ran; images bypass it via WebSocket. Exempt /api/files/upload from \n[…]\nb parser is sufficient and bytes round-trip exactly (server side), and a session whose workingDir is outside baseFolder falling back to baseFolder (no 403, no leak) — the stale/persisted-session path.",
          "is_bot": false,
          "headline": "fix: non-image drag-drop uploads + per-tab file-browser root (#117)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-11T08:56:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b5c799315ce3d902e2c3409869e0a4cce400d34a",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.69",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-01T07:00:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5db415699f28d1545be36a4d33a89c7bb680576",
          "body": "…ps, general file upload (#116)\n\n* feat: iOS PWA Dynamic Island fix + arrow-key tooltips\n\nPorts the two still-relevant parts of #109 onto current main (the PNG-icon\nportion was already superseded by the PWA install work in #115).\n\nDynamic Island fix:\n- Gate top safe-area padding to `html.pwa-standal\n[…]\nbile — independent of PWA/safe-area. Drop it to\n--z-sticky (200): above terminal content, below the modal backdrop. Verified\nvia the safe-area harness — the FAB is now occluded by the modal dim layer.",
          "is_bot": false,
          "headline": "feat: iOS PWA safe-area (Dynamic Island + all overlays), arrow toolti…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-01T07:00:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "262dc8c01f7e3c12380a1408b4e3b62723aee107",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.68",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-01T00:35:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "65ef8692a73f18fb6a3764e86081739240635b87",
          "body": "…owser launch (#115)\n\n- STT: set cloud SpeechRecognition locale to en-IN (voice-handler.js + manifest lang).\n- PWA tunnel install: add crossorigin=\"use-credentials\" to the manifest <link> so the\n  manifest and its icon fetches carry the session cookie behind a credentialed proxy/tunnel.\n  devtunnel \n[…]\ntill parses.\n- HTTPS: self-signed fallback notice points to --tunnel for a trusted, installable origin.\n\nTests: test/pwa-assets.test.js, test/voice-locale.test.js, test/supervisor-restart-env.test.js.",
          "is_bot": false,
          "headline": "feat: en-IN STT locale, PWA install fixes (tunnel + icons), opt-in br…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-06-01T00:35:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "74b3a9f24c5d1110e4c49a81e85447f4bd573816",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.67",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-29T00:58:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e174e0071d16d087eccc6d1bc5f51ef9ce7dd24",
          "body": "…ess supervision, browser longevity (campaign 2026-05) (#114)\n\n* fix(client): cap plan-detector buffer by bytes (8 MB FIFO) not items\n\nCLIENT-01 — replaces the 10000-item / 5000-prune cap on\nPlanDetector.outputBuffer with an 8 MB byte cap (data.length total).\nPre-fix the cap admitted ~80 MB of retai\n[…]\n} — HOT-08 guard error\n  2. WS close with code 1009 — HOT-08 forced close\n  3. image_upload_error / voice_transcription_error — pre-HOT-08 path,\n     preserved for back-compat in case HOT-08 is ever …",
          "is_bot": false,
          "headline": "feat: months-long stability hardening — event-loop, persistence, proc…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-05-29T00:57:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e2fbaf8705430373f99a4b00cea860e25011e632",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.66",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-28T04:34:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2c0c0ee0c79986ec716814731adff5e2e9132718",
          "body": "…t memo\n\nAdds docs/audits/hot-05-sessionstore-stringify.md and a paired\nregression test demonstrating that SessionStore.saveSessions (line 97)\nserializes the entire data structure on the main thread.\n\nThe setImmediate wrapper is cosmetic — it yields once BEFORE the\nstringify but the stringify itself\n[…]\nentLoopDelay h.max < 50ms\nacross the saveSessions call. Fails on main (~90ms); passes after the\nproposed worker_threads offload fix (HOT-10).\n\nInvestigation phase only; fix task created post-baseline.",
          "is_bot": false,
          "headline": "test(longevity): HOT-05 SessionStore stringify regression test + audi…",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-05-28T04:32:11Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "66dff59e183ce1b7b2b4b57b603133c9f944b9ed",
          "body": "Adds docs/audits/hot-04-attachment-scan.md and a paired regression\ntest that preloads a tmp .claude-attachments dir with 500 files,\nwraps fs.statSync with a 1ms busy-wait (network-share RTT proxy),\nand drives 10 _attachmentDirBytes calls.\n\nThe current implementation in src/server.js:553-574 does\nrea\n[…]\nost-warmup h.max < 50ms (vs\n~500ms on main). Both fail on main; both pass after the proposed\nper-session (bytes, mtimeMs) cache fix (HOT-09).\n\nInvestigation phase only; fix task created post-baseline.",
          "is_bot": false,
          "headline": "test(longevity): HOT-04 attachment dir scan regression test + audit memo",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-05-28T04:29:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "febd07b4826e1902f686428537df805e835cec7b",
          "body": "…memo\n\nAdds docs/audits/hot-03-ws-frame-size.md and a paired regression test\nthat boots the real ClaudeCodeWebServer on a port > 11000, connects a\nws client, and sends a 5 MB JSON frame. Asserts the server responds\nwithin 8s with either {type:'error', code:'message_too_large'} or a\nws-standard close\n[…]\nin as required (no marker error / 1009 close arrives);\npasses after the proposed MAX_WS_MESSAGE_BYTES guard (HOT-08, sized\nat 1 MB per memo).\n\nInvestigation phase only; fix task created post-baseline.",
          "is_bot": false,
          "headline": "test(longevity): HOT-03 WS binary frame size regression test + audit …",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-05-28T04:26:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7ec4e073e487bbcae3b4a0f2cada03aa0701ad10",
          "body": "…memo\n\nAdds docs/audits/hot-02-filewatcher-hash.md and a paired regression\ntest under test/longevity/event-loop/ that reproduces FileWatcher's\nsynchronous fs.readFileSync + MD5 on the chokidar event hot path.\nThe legacy includeHash:true default applies to any caller that doesn't\npass depth:0 (the on\n[…]\n9) because percentile gets misled\nby ~150 idle samples + 1 big spike → p99 ≈ noise floor. max is the\nright metric for a bunched-flush burst.\n\nInvestigation phase only; fix tasks created post-baseline.",
          "is_bot": false,
          "headline": "test(longevity): HOT-02 FileWatcher sync MD5 regression test + audit …",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-05-28T04:22:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7b5be047104b94ce178ffd0a6c7667385727d463",
          "body": "Adds docs/audits/hot-01-osc7-dedupe.md and a paired regression test\nunder test/longevity/event-loop/ that reproduces the per-session\n_lastRawOsc7 dedupe gap in terminal-bridge.js: multi-tab or alternating-\ncwd workloads bypass the cache and pay full validatePath cost (3-4\nsync syscalls, 30-150ms eac\n[…]\nh fail on main as\nrequired (160 calls, p99 = 60ms); both pass after the proposed\nprocess-wide canonical-keyed validated-path cache (HOT-06).\n\nInvestigation phase only; fix tasks created post-baseline.",
          "is_bot": false,
          "headline": "test(longevity): HOT-01 OSC 7 dedupe regression test + audit memo",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-05-28T04:17:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d31ead0b4fea8d5ddb856f721876404d0041c1dd",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.65",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-26T07:49:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e00195befd29ac2efe01d4083696b7e7e2f0d6ab",
          "body": "…h scope (#110)\n\n* fix(windows): unhang from OSC 7 validatePath syscall storm on Q:\\src\n\nA Windows user reported the server hanging in ~5 minutes after starting a\nTerminal session at Q:\\src with pwsh.exe. Diagnostics showed:\n\n  uptime  900s: active_handles 16,    active_requests 0,     heap  50 MB\n \n[…]\ntive_handles bounded by\n\"number of distinct parent dirs of currently-viewed dir + open tabs\"\non Q:\\src — single digits typical, capped well under 100 even with\n50 open tabs scattered across worktrees.",
          "is_bot": false,
          "headline": "fix(windows): unhang from OSC 7 validate storm + narrow chokidar watc…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-05-26T07:49:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6327fe867cce7fb0efb6cdf743584419211b1dc8",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.64",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-18T23:00:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72c37e5a4e8b6516331b7a1b5cf0f007dda37c41",
          "body": "…al terminal-path open, generic file drop (#108)\n\n* docs: spec + ADR-0019 for File Browser v2 (OSC 7, fuzzy find, terminal-path resolver, generic drop)\n\n* feat(terminal-bridge): parse OSC 7 for live CWD tracking\n\nPer ADR-0019. The Terminal bridge now extracts file://<host><path> from\nOSC 7 escape se\n[…]\nrs).\n- `_setupTerminalLinking` (app.js): wires `getBridgeType` reading\n  `claudeSessions.find(...).agent` (null treated as Block C per\n  architect's \"AI fallback is least-bad default\" guidance).\n- `/…",
          "is_bot": false,
          "headline": "feat: file browser v2 — live CWD via OSC 7, Cmd-P fuzzy find, univers…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-05-18T22:59:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5a1593292b88f9bb2bce4c31eab523e553fb500c",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.63",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-15T05:57:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e38191314355db8910f6d3ab273c6ecdd020530c",
          "body": "…, cross-file search (#99)\n\n* docs: add ADR-0016 superseding ADR-0012's Ace editor decision\n\nCaptures the decision to migrate the file-browser editor from Ace to Monaco\nto deliver IDE-feel parity with vscode.dev / github.dev / Cursor. Documents\nthe AMD-loader-from-CDN pattern, the same-origin worker\n[…]\ny` per team-lead's shared-WT race-protocol change.\n\n* feat: diff view client via createDiffEditor + git-show integration (#6)\n\nAdds the third tab mode to the file browser — a side-by-side diff\nviewer…",
          "is_bot": false,
          "headline": "feat: first-class file browser — Monaco IDE, rich viewers, tabs, diff…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-05-15T05:56:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2561a16a3d02b6fdffbd47eca7db16163a809c42",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.62",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-12T07:51:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "444a038ca33eb346e14e654113aee93ba5eeeb7b",
          "body": "…) (#95)\n\n* feat: instant WebSocket reconnect via pong-watchdog and per-socket fencing\n\nReconnection on tab return / network blip was taking 30s+ on cellular\nbecause the heartbeat sent ping every 30s but never checked if pong came\nback, plus reconnect() had a hard-coded 1000ms wait and onclose added\n[…]\n\n  - same-session re-join must NOT emit session_left\n  - different-session switch MUST still emit session_left\n\nVerified locally: post-reconnect auto-rejoin completes in ~15ms.\nGolden-path E2E passes.",
          "is_bot": false,
          "headline": "feat: instant WebSocket reconnect (pong-watchdog + per-socket fencing…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-05-12T07:50:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6dff5b69935726959d8724e8aa6c963b9d1114af",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.61",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-30T04:38:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59f62f58d090a1d0044c4d4ac79eac8762296e86",
          "body": "* feat: add PWA install section to settings with unified state machine\n\nSurfaces PWA installation in the Settings modal with contextual status\nmessages (ready, installed, HTTPS required, iOS instructions, browser\nmenu fallback). Replaces the old inline install script with a unified\nstate machine on \n[…]\nes local test 306). Tracked in\n  docs/history/nerd-font-tofu-rendering.md.\n- 03-clipboard.spec.js:84: passes both ubuntu and windows CI but\n  fails locally on macOS — Playwright clipboard environment.",
          "is_bot": false,
          "headline": "feat: PWA install section + LAN self-signed-cert docs (#94)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-04-30T04:38:27Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "77e58e1f4fe4098a3b979b2ea94df11549bac0c8",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.60",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-13T09:19:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c2326881baadc655a4493a01c29bca07b38c288c",
          "body": "- Add docs/history/npm-oidc-publish-fix.md with full debugging story,\n  failed approaches, root causes, and prerequisites\n- Update docs/agent-instructions/03-tooling-and-pipelines.md with OIDC\n  trusted publishing requirements and warnings",
          "is_bot": false,
          "headline": "docs: document npm OIDC publish fix and release pipeline details",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T09:18:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b9d363ab985610a37552a2df17b31a461054bc1f",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.59",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-13T09:05:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a5bfd8c89687b0d89488f33cfa6c0a215bf52d5",
          "body": "Bundled npm v10.9.7 on Node 22 runners can't self-upgrade (broken\narborist) and doesn't support OIDC token exchange. Use npx to run\nnpm v11 directly, bypassing both issues.",
          "is_bot": false,
          "headline": "fix(ci): use npx npm@11 for OIDC trusted publishing",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T09:05:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6ece28770a997037207905d74839e97c8ae376ec",
          "body": "npm OIDC token exchange requires npm v11.5.1+. Node 22 ships npm v10.x\nwhich can't perform the exchange. Pin to npm@11 instead of npm@latest\nto avoid the promise-retry MODULE_NOT_FOUND bug on current runners.",
          "is_bot": false,
          "headline": "fix(ci): install npm v11 for OIDC trusted publishing support",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T09:04:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5fd6987f1ed00d1314ea0befbcc23b9ff2ddc9ea",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.58",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-13T08:55:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b324176e3972b1da28e7ae49c74d17e482051aad",
          "body": "setup-node injects GITHUB_TOKEN as NODE_AUTH_TOKEN at the job level.\nThis must be fully unset (not empty) so npm CLI detects the OIDC\ncontext and exchanges the GitHub Actions OIDC token for npm auth.",
          "is_bot": false,
          "headline": "fix(ci): unset NODE_AUTH_TOKEN for OIDC trusted npm publishing",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T08:55:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "79f4afa7b0addb7ff3fdbfbc9a6ae0bc8b0e3ea9",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.57",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-13T08:33:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "131e96b316e14b6f9be89b918a061e6bbdf4e03b",
          "body": "npm config delete doesn't affect the setup-node generated npmrc at\nNPM_CONFIG_USERCONFIG. Use sed to remove the _authToken line directly\nso npm CLI falls through to OIDC trusted publishing.",
          "is_bot": false,
          "headline": "fix(ci): strip _authToken from npmrc for OIDC publishing",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T08:32:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2ed766cac12fa535911b5d46fe214fc103a90aea",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.56",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-13T08:31:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0f20126bd25f2c8e216af5227e90078a0c6c285c",
          "body": "setup-node injects GITHUB_TOKEN as NODE_AUTH_TOKEN into .npmrc, which\ngets sent to npmjs.org and rejected (404). Clearing the _authToken\nentry lets npm CLI fall through to OIDC-based authentication.",
          "is_bot": false,
          "headline": "fix(ci): clear npmrc auth token so npm uses OIDC trusted publishing",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T08:30:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8b275b9eaa001ff9839f28d8d5d6cb824f477a32",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.55",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-13T08:28:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3fbe4792d5f089d5f054890708af37b480f8e0b6",
          "body": "npm trusted publisher uses OIDC provenance via the id-token: write\npermission already configured on the job. The empty NODE_AUTH_TOKEN\nwas overriding the OIDC-based auth and causing ENEEDAUTH.",
          "is_bot": false,
          "headline": "fix(ci): remove empty NODE_AUTH_TOKEN from npm publish step",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T08:27:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a2bc02be30f387f4cb27a07efda60fcab1615f84",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.54",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-13T08:19:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "002e8a97bfb2e4975da1d7234368d9d281c1dc79",
          "body": "The global npm upgrade corrupts the bundled npm installation on GitHub\nActions Node 22 runners (MODULE_NOT_FOUND: promise-retry). The runner's\nbundled npm works fine for npm ci and npm publish.",
          "is_bot": false,
          "headline": "fix(ci): remove broken npm install -g npm@latest from release workflow",
          "author_name": "Kundus",
          "author_login": null,
          "committed_at": "2026-04-13T08:19:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2e242b69035d17cb5948d3376a1fceef6970d14",
          "body": "* fix: STT not working over HTTP on local network\n\nMicrophone APIs (getUserMedia, AudioWorklet, SpeechRecognition) require\na secure context (HTTPS or localhost). When accessed via plain HTTP on\nLAN, navigator.mediaDevices is undefined causing a raw TypeError.\n\n- Guard getUserMedia and SpeechRecognit\n[…]\nce timeout to 20 minutes\n\nTests pass in ~11m on Windows but the 15-minute job timeout was being\nhit during post-test artifact upload, causing the job to be canceled\nafter all tests had already passed.",
          "is_bot": false,
          "headline": "fix: STT not working over HTTP on local network (#93)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-04-13T08:16:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6170af838cfe93fac0af08e4292a273099617100",
          "body": "Rewrites FACTORY_PROTOCOL.md from 1015 lines to 3255 lines, adopting\nthe full comprehensive protocol with ai-or-die-specific adaptations:\n\n- 7 permanent expert teams (CPO, Research/Discovery, Oversight, Build,\n  QA, Review, Factory Optimization) with 3-6 agents each\n- Dual cron system (12-min heartb\n[…]\nences\n\nReviewed by 3 adversarial expert agents (systems architect, security/QA,\nprocess/cost). 12 findings applied including E2E project list fix,\nQA report schema alignment, and brief fallback rules.",
          "is_bot": false,
          "headline": "docs: comprehensive autonomous factory protocol with 7 expert teams",
          "author_name": "Ani",
          "author_login": null,
          "committed_at": "2026-04-02T02:21:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "589347bf91d8a9dbcbd0c527d188b4da099ec814",
          "body": "* fix: package version, tarball hygiene, and smoke test suite\n\n- Fix hardcoded .version('0.1.0') in bin/ai-or-die.js to read from\n  package.json dynamically (was reporting wrong version for every release)\n- Expand .npmignore to exclude .github/, docs/, scripts/, CLAUDE.md,\n  e2e/, test-results/, and\n[…]\nn(__dirname, '..', 'package.json')) fails in\nSEA binaries because the embedded module system can't resolve filesystem\npaths. Use static require('../package.json') which esbuild inlines at\nbundle time.",
          "is_bot": false,
          "headline": "fix: package version, tarball hygiene, and smoke test suite (#92)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-03-24T20:40:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a5f2ef18aa2fa85311db1bae6f9af5588c6fdbd4",
          "body": null,
          "is_bot": false,
          "headline": "feat: release v0.1.51",
          "author_name": "anikundu",
          "author_login": null,
          "committed_at": "2026-03-24T17:32:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "abaceff6588b36a06ff7986bd45d095a2ff9455d",
          "body": "Skip 0.1.49 which was already published to npm registry by a prior\nworkflow run, causing the release pipeline to fail.",
          "is_bot": false,
          "headline": "chore: bump version to 0.1.50",
          "author_name": "anikundu",
          "author_login": null,
          "committed_at": "2026-03-24T17:29:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "410e1f142ff95a701bd4e821069951588db659b1",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.48",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-03-24T17:24:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c9c9e88642d8a17c4f072ffb6fe44497f2d6b28b",
          "body": "…ecurity improvements (#91)\n\n* feat: autonomous factory protocol for local-first development\n\nAdapt the Autonomous Factory Protocol for ai-or-die with fully local\ntesting, self-chaining cron orchestration, and adversarial quality gates.\n\nKey design decisions (informed by 40-finding adversarial revie\n[…]\nows ConPTY\n\nPowerShell startup on Windows CI can take 3-5s. The 3s drain was\ninsufficient — shell prompt wasn't ready when the echo command was sent.\nIncreased drain to 5s and marker collection to 8s.",
          "is_bot": false,
          "headline": "feat: autonomous factory — 13 reliability, mobile, performance, and s…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-03-24T09:49:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "79e0b9743074e30a0ea35bdee65375f5b519bd59",
          "body": "…ion (#88)\n\n* feat: unified feedback system, type-ahead input overlay, multi-tool plan viewer\n\nThree major UX features:\n\n1. Feedback System (3 layers):\n   - Micro-feedback: inline \"Copied\" badge via callback pattern\n   - Toasts: FeedbackManager with info/success/warning/error, action buttons,\n     d\n[…]\n devtunnel if\ninstalled via npm/scoop as a .cmd wrapper) fail with EINVAL.\n\nAffected call sites: _spawnTunnel, _checkDevtunnelAuth,\n_loginDevtunnel, _execDevtunnel, and the cleanup execFile in stop().",
          "is_bot": false,
          "headline": "feat: UX polish — banner uniformity, auto-dismiss, Gemini plan detect…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-03-03T03:35:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2568431eba99ee6788ccb3fde0e8dd71b1b158c8",
          "body": "…lan viewer (#87)\n\n* feat: unified feedback system, type-ahead input overlay, multi-tool plan viewer\n\nThree major UX features:\n\n1. Feedback System (3 layers):\n   - Micro-feedback: inline \"Copied\" badge via callback pattern\n   - Toasts: FeedbackManager with info/success/warning/error, action buttons,\n[…]\n race\n\nSame Execution context destroyed race condition as the orientation test\naffects the extra key Tab test. Applied the same retry pattern with\nwaitForAppReady + waitForTerminalCanvas before retry.",
          "is_bot": false,
          "headline": "feat: unified feedback system, type-ahead input overlay, multi-tool p…",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-03-02T10:31:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9ec34bdcfc83b1749721808cdd0b1acb428cbef0",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.47",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-02-25T09:38:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b27c6324a77633f83dd1d9bb8a188bf946da60b",
          "body": "When logged in via GitHub, devtunnel operations fail with 403 on tunnels\ncreated under a different auth provider (e.g. Entra ID). Detect the auth\nprovider from `devtunnel user show` and append `-gh` to tunnel names\nwhen using GitHub auth to avoid cross-provider name collisions.\n\nAlso fixes `devtunnel delete` using non-existent `-y` flag (now `-f`).",
          "is_bot": false,
          "headline": "fix: devtunnel GitHub auth tunnel name collision (#86)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-02-25T09:38:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c9a24cc0018f16ce0ad8f4340ea54167d6eef5b5",
          "body": null,
          "is_bot": true,
          "headline": "chore: bump version to 0.1.46",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-02-20T10:27:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e65f7b00a4ae226ffeb97974bc1a5c28380dc1e3",
          "body": "* feat: add service restart for memory management\n\nThree-layer defense against memory growth in long-running processes:\n- Automatic GC when RSS exceeds 1 GB (configurable via MEMORY_GC_THRESHOLD_MB)\n- User notification when RSS exceeds 2 GB (configurable via MEMORY_WARN_THRESHOLD_MB)\n- User-triggere\n[…]\nrestart timer was already pending\n\n3. Crash-save writeFileSync now uses mode 0o600 — session output in\n   .crash files could contain secrets, matching the permissions used\n   for regular session saves",
          "is_bot": false,
          "headline": "feat: service restart for memory management (#72)",
          "author_name": "Animesh",
          "author_login": "animeshkundu",
          "committed_at": "2026-02-20T10:26:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        }
      ],
      "releases_count": 97,
      "commits_last_year": 196,
      "latest_release_at": "2026-07-17T04:05:32Z",
      "latest_release_tag": "v0.1.96",
      "releases_from_tags": false,
      "days_since_last_push": 4,
      "active_weeks_last_year": 17,
      "days_since_latest_release": 4,
      "mean_days_between_releases": 1.8
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 71,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "ai-or-die",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "ai-or-die",
            "aiordie",
            "ai",
            "terminal",
            "claude",
            "copilot",
            "gemini",
            "web",
            "browser",
            "remote"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/ai-or-die",
          "is_deprecated": false,
          "latest_version": "0.1.96",
          "repository_url": "https://github.com/animeshkundu/ai-or-die",
          "versions_count": 87,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 4771,
          "first_published_at": "2026-02-06T09:59:31.458000Z",
          "latest_published_at": "2026-07-17T04:05:55.115000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 4
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0
      },
      "open_issues_and_prs": 21
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "mesh/go.mod"
      ],
      "largest_source_bytes": 338958,
      "source_files_sampled": 398,
      "oversized_source_files": 4,
      "agent_instruction_files": [
        ".github/copilot-instructions.md",
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 11890
    },
    "dependencies": {
      "manifests": [
        "mesh/go.mod",
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "uuid",
            "direct": true,
            "version": "10.0.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-w5hq-g745-h8pq"
            ],
            "fixed_version": "13.0.1",
            "advisory_count": 1,
            "oldest_advisory_days": 90
          },
          {
            "name": "ws",
            "direct": true,
            "version": "8.18.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-58qx-3vcg-4xpx",
              "GHSA-96hv-2xvq-fx4p"
            ],
            "fixed_version": "8.21.0",
            "advisory_count": 2,
            "oldest_advisory_days": 64
          },
          {
            "name": "ws",
            "direct": true,
            "version": "8.18.3",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-58qx-3vcg-4xpx",
              "GHSA-96hv-2xvq-fx4p"
            ],
            "fixed_version": "8.21.0",
            "advisory_count": 2,
            "oldest_advisory_days": 64
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "2.0.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp",
              "GHSA-f886-m6hf-6m8v"
            ],
            "fixed_version": "5.0.7",
            "advisory_count": 2,
            "oldest_advisory_days": 117
          },
          {
            "name": "form-data",
            "direct": false,
            "version": "4.0.5",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-hmw2-7cc7-3qxx"
            ],
            "fixed_version": "4.0.6",
            "advisory_count": 1,
            "oldest_advisory_days": 36
          },
          {
            "name": "glob",
            "direct": false,
            "version": "10.4.5",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-5j98-mcp5-4vw2"
            ],
            "fixed_version": "11.1.0",
            "advisory_count": 1,
            "oldest_advisory_days": 246
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "4.1.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-52cp-r559-cp3m",
              "GHSA-h67p-54hq-rp68",
              "GHSA-mh29-5h37-fv8m"
            ],
            "fixed_version": "4.3.0",
            "advisory_count": 3,
            "oldest_advisory_days": 249
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "9.0.5",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23c5-xmqv-rm74",
              "GHSA-3ppc-4f35-3m26",
              "GHSA-7r86-cg39-jmmj"
            ],
            "fixed_version": "10.2.3",
            "advisory_count": 3,
            "oldest_advisory_days": 152
          },
          {
            "name": "path-to-regexp",
            "direct": false,
            "version": "0.1.12",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-37ch-88jc-xwx2"
            ],
            "fixed_version": "0.1.13",
            "advisory_count": 1,
            "oldest_advisory_days": 116
          },
          {
            "name": "serialize-javascript",
            "direct": false,
            "version": "6.0.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 8.1,
            "advisory_ids": [
              "GHSA-5c6j-r48x-rmvq",
              "GHSA-qj8w-gfj5-8c6v"
            ],
            "fixed_version": "7.0.5",
            "advisory_count": 2,
            "oldest_advisory_days": 143
          },
          {
            "name": "tar",
            "direct": false,
            "version": "7.5.16",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23hp-3jrh-7fpw",
              "GHSA-8x88-c5mf-7j5w",
              "GHSA-gvwx-54wh-qm9j",
              "GHSA-w8wr-v893-vjvp"
            ],
            "fixed_version": "7.5.19",
            "advisory_count": 4,
            "oldest_advisory_days": 0
          },
          {
            "name": "diff",
            "direct": false,
            "version": "7.0.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-73rr-hh4g-fpgx"
            ],
            "fixed_version": "8.0.3",
            "advisory_count": 1,
            "oldest_advisory_days": 187
          },
          {
            "name": "esbuild",
            "direct": false,
            "version": "0.24.2",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-67mh-4wv8-2f99"
            ],
            "fixed_version": "0.25.0",
            "advisory_count": 1,
            "oldest_advisory_days": 526
          },
          {
            "name": "qs",
            "direct": false,
            "version": "6.13.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-6rw7-vpxm-498p",
              "GHSA-q8mj-m7cp-5q26",
              "GHSA-w7fw-mjwx-w883"
            ],
            "fixed_version": "6.15.2",
            "advisory_count": 3,
            "oldest_advisory_days": 203
          },
          {
            "name": "body-parser",
            "direct": false,
            "version": "1.20.3",
            "severity": "low",
            "ecosystem": "npm",
            "cvss_score": 3.7,
            "advisory_ids": [
              "GHSA-v422-hmwv-36x6"
            ],
            "fixed_version": "2.3.0",
            "advisory_count": 1,
            "oldest_advisory_days": 0
          }
        ],
        "collected": true,
        "truncated": false,
        "by_severity": {
          "low": 1,
          "high": 11,
          "moderate": 3
        },
        "advisory_count": 28,
        "affected_count": 15,
        "assessed_count": 389,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 3
      },
      "ecosystems": [
        "go",
        "npm"
      ],
      "dependencies": [
        {
          "name": "tailscale.com",
          "manifest": "mesh/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.80.0"
        },
        {
          "name": "@lydell/node-pty",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "1.2.0-beta.10"
        },
        {
          "name": "@vscode/ripgrep",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.18.0"
        },
        {
          "name": "@xterm/headless",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.0.0"
        },
        {
          "name": "chokidar",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.0.0"
        },
        {
          "name": "commander",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^12.1.0"
        },
        {
          "name": "cors",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.8.5"
        },
        {
          "name": "express",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.19.2"
        },
        {
          "name": "fuzzysort",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.0"
        },
        {
          "name": "koffi",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.0.2"
        },
        {
          "name": "open",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.1.0"
        },
        {
          "name": "selfsigned",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.1"
        },
        {
          "name": "sherpa-onnx-node",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.12.24"
        },
        {
          "name": "uuid",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.0.0"
        },
        {
          "name": "ws",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^8.18.0"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "tailscale.com",
            "direct": true,
            "version": "v1.80.0",
            "ecosystem": "go"
          },
          {
            "name": "@lydell/node-pty",
            "direct": true,
            "version": "1.2.0-beta.10",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep",
            "direct": true,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@xterm/headless",
            "direct": true,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "chokidar",
            "direct": true,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "chokidar",
            "direct": true,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "commander",
            "direct": true,
            "version": "10.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "commander",
            "direct": true,
            "version": "12.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "commander",
            "direct": true,
            "version": "9.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "cors",
            "direct": true,
            "version": "2.8.5",
            "ecosystem": "npm"
          },
          {
            "name": "express",
            "direct": true,
            "version": "4.21.2",
            "ecosystem": "npm"
          },
          {
            "name": "fuzzysort",
            "direct": true,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "koffi",
            "direct": true,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "open",
            "direct": true,
            "version": "10.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "selfsigned",
            "direct": true,
            "version": "2.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "sherpa-onnx-node",
            "direct": true,
            "version": "1.12.24",
            "ecosystem": "npm"
          },
          {
            "name": "uuid",
            "direct": true,
            "version": "10.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ws",
            "direct": true,
            "version": "8.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "ws",
            "direct": true,
            "version": "8.18.3",
            "ecosystem": "npm"
          },
          {
            "name": "@asamuzakjp/css-color",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/color-helpers",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-calc",
            "direct": false,
            "version": "2.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-color-parser",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-parser-algorithms",
            "direct": false,
            "version": "3.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-tokenizer",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/aix-ppc64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-arm64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-arm64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ia32",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-loong64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-mips64el",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ppc64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-riscv64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-s390x",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/netbsd-arm64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/netbsd-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openbsd-arm64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openbsd-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/sunos-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-arm64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-ia32",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-x64",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "@huggingface/jinja",
            "direct": false,
            "version": "0.5.9",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/cliui",
            "direct": false,
            "version": "8.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/fs-minipass",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-darwin-arm64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-darwin-x64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-freebsd-arm64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-freebsd-ia32",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-freebsd-x64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-linux-arm64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-linux-ia32",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-linux-loong64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-linux-riscv64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-linux-x64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-openbsd-ia32",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-openbsd-x64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-win32-ia32",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@koromix/koffi-win32-x64",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@kwsites/file-exists",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@kwsites/promise-deferred",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@lydell/node-pty-darwin-arm64",
            "direct": false,
            "version": "1.2.0-beta.10",
            "ecosystem": "npm"
          },
          {
            "name": "@lydell/node-pty-darwin-x64",
            "direct": false,
            "version": "1.2.0-beta.10",
            "ecosystem": "npm"
          },
          {
            "name": "@lydell/node-pty-linux-arm64",
            "direct": false,
            "version": "1.2.0-beta.10",
            "ecosystem": "npm"
          },
          {
            "name": "@lydell/node-pty-linux-x64",
            "direct": false,
            "version": "1.2.0-beta.10",
            "ecosystem": "npm"
          },
          {
            "name": "@lydell/node-pty-win32-arm64",
            "direct": false,
            "version": "1.2.0-beta.10",
            "ecosystem": "npm"
          },
          {
            "name": "@lydell/node-pty-win32-x64",
            "direct": false,
            "version": "1.2.0-beta.10",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/linux-arm64",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/linux-armv7l",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/linux-x64",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/linux-x64-cuda",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/linux-x64-cuda-ext",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/linux-x64-vulkan",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/mac-arm64-metal",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/mac-x64",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/win-arm64",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/win-x64",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/win-x64-cuda",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/win-x64-cuda-ext",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@node-llama-cpp/win-x64-vulkan",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@pkgjs/parseargs",
            "direct": false,
            "version": "0.11.0",
            "ecosystem": "npm"
          },
          {
            "name": "@playwright/test",
            "direct": false,
            "version": "1.58.2",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-darwin-arm64",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-darwin-x64",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-linux-arm64-gnu",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-linux-arm64-musl",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-linux-x64-gnu",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-linux-x64-musl",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-win32-arm64-msvc",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@reflink/reflink-win32-x64-msvc",
            "direct": false,
            "version": "0.1.19",
            "ecosystem": "npm"
          },
          {
            "name": "@simple-git/args-pathspec",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@simple-git/argv-parser",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@tinyhttp/content-disposition",
            "direct": false,
            "version": "2.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "25.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node-forge",
            "direct": false,
            "version": "1.3.14",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-darwin-arm64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-darwin-x64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-linux-arm",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-linux-arm64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-linux-ia32",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-linux-ppc64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-linux-riscv64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-linux-s390x",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-linux-x64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-win32-arm64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-win32-ia32",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vscode/ripgrep-win32-x64",
            "direct": false,
            "version": "1.18.0",
            "ecosystem": "npm"
          },
          {
            "name": "accepts",
            "direct": false,
            "version": "1.3.8",
            "ecosystem": "npm"
          },
          {
            "name": "agent-base",
            "direct": false,
            "version": "7.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-escapes",
            "direct": false,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "6.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "6.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "argparse",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "array-flatten",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "async-retry",
            "direct": false,
            "version": "1.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "asynckit",
            "direct": false,
            "version": "0.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "body-parser",
            "direct": false,
            "version": "1.20.3",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "browser-stdout",
            "direct": false,
            "version": "1.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "bundle-name",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "bytes",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "call-bind-apply-helpers",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "call-bound",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "camelcase",
            "direct": false,
            "version": "6.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "chalk",
            "direct": false,
            "version": "4.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "chalk",
            "direct": false,
            "version": "5.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "chmodrp",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "chownr",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ci-info",
            "direct": false,
            "version": "4.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "cli-cursor",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cli-spinners",
            "direct": false,
            "version": "2.9.2",
            "ecosystem": "npm"
          },
          {
            "name": "cli-spinners",
            "direct": false,
            "version": "3.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "cliui",
            "direct": false,
            "version": "8.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "cmake-js",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "color-convert",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "color-name",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "combined-stream",
            "direct": false,
            "version": "1.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "content-disposition",
            "direct": false,
            "version": "0.5.4",
            "ecosystem": "npm"
          },
          {
            "name": "content-type",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "cookie",
            "direct": false,
            "version": "0.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "cookie-signature",
            "direct": false,
            "version": "1.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "cssstyle",
            "direct": false,
            "version": "4.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "data-urls",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "2.6.9",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "decamelize",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "decimal.js",
            "direct": false,
            "version": "10.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "deep-extend",
            "direct": false,
            "version": "0.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "default-browser",
            "direct": false,
            "version": "5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "default-browser-id",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "define-lazy-prop",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "delayed-stream",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "depd",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "destroy",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "diff",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "dunder-proto",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "eastasianwidth",
            "direct": false,
            "version": "0.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "ee-first",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "10.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "9.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "encodeurl",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "encodeurl",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "entities",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "env-var",
            "direct": false,
            "version": "7.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "es-define-property",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "es-errors",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "es-object-atoms",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "es-set-tostringtag",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "esbuild",
            "direct": false,
            "version": "0.24.2",
            "ecosystem": "npm"
          },
          {
            "name": "escalade",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "escape-html",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "escape-string-regexp",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "etag",
            "direct": false,
            "version": "1.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "eventemitter3",
            "direct": false,
            "version": "5.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "filename-reserved-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "filenamify",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "finalhandler",
            "direct": false,
            "version": "1.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "find-up",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "flat",
            "direct": false,
            "version": "5.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "foreground-child",
            "direct": false,
            "version": "3.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "form-data",
            "direct": false,
            "version": "4.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "forwarded",
            "direct": false,
            "version": "0.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "fresh",
            "direct": false,
            "version": "0.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "fs-extra",
            "direct": false,
            "version": "11.3.5",
            "ecosystem": "npm"
          },
          {
            "name": "fsevents",
            "direct": false,
            "version": "2.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "function-bind",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "get-caller-file",
            "direct": false,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "get-east-asian-width",
            "direct": false,
            "version": "1.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-intrinsic",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-proto",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": false,
            "version": "10.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "gopd",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "graceful-fs",
            "direct": false,
            "version": "4.2.11",
            "ecosystem": "npm"
          },
          {
            "name": "has-flag",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "has-symbols",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "has-tostringtag",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "hasown",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "he",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "html-encoding-sniffer",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "http-errors",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "http-proxy-agent",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "https-proxy-agent",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "iconv-lite",
            "direct": false,
            "version": "0.4.24",
            "ecosystem": "npm"
          },
          {
            "name": "iconv-lite",
            "direct": false,
            "version": "0.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "ignore",
            "direct": false,
            "version": "7.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "inherits",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "ini",
            "direct": false,
            "version": "1.3.8",
            "ecosystem": "npm"
          },
          {
            "name": "ipaddr.js",
            "direct": false,
            "version": "1.9.1",
            "ecosystem": "npm"
          },
          {
            "name": "ipull",
            "direct": false,
            "version": "3.9.5",
            "ecosystem": "npm"
          },
          {
            "name": "is-docker",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-fullwidth-code-point",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-fullwidth-code-point",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-inside-container",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-interactive",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-plain-obj",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-potential-custom-element-name",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-unicode-supported",
            "direct": false,
            "version": "0.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-unicode-supported",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-wsl",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "jackspeak",
            "direct": false,
            "version": "3.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "jsdom",
            "direct": false,
            "version": "24.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "jsonfile",
            "direct": false,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "lifecycle-utils",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "lifecycle-utils",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "locate-path",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "lodash.debounce",
            "direct": false,
            "version": "4.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "log-symbols",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "log-symbols",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "lowdb",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "10.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "math-intrinsics",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "media-typer",
            "direct": false,
            "version": "0.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "merge-descriptors",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "methods",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "mime",
            "direct": false,
            "version": "1.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "mime-db",
            "direct": false,
            "version": "1.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "mime-types",
            "direct": false,
            "version": "2.1.35",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-function",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "9.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "minimist",
            "direct": false,
            "version": "1.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": false,
            "version": "7.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "minizlib",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "mocha",
            "direct": false,
            "version": "11.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "nanoid",
            "direct": false,
            "version": "5.1.11",
            "ecosystem": "npm"
          },
          {
            "name": "negotiator",
            "direct": false,
            "version": "0.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "node-addon-api",
            "direct": false,
            "version": "8.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-api-headers",
            "direct": false,
            "version": "1.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-forge",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-llama-cpp",
            "direct": false,
            "version": "3.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "nwsapi",
            "direct": false,
            "version": "2.2.23",
            "ecosystem": "npm"
          },
          {
            "name": "object-assign",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "object-inspect",
            "direct": false,
            "version": "1.13.4",
            "ecosystem": "npm"
          },
          {
            "name": "on-finished",
            "direct": false,
            "version": "2.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "onetime",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ora",
            "direct": false,
            "version": "9.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "p-limit",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "p-locate",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "package-json-from-dist",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "parse-ms",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "parse-ms",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "parse5",
            "direct": false,
            "version": "7.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "parseurl",
            "direct": false,
            "version": "1.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "path-exists",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "path-key",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-scurry",
            "direct": false,
            "version": "1.11.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-to-regexp",
            "direct": false,
            "version": "0.1.12",
            "ecosystem": "npm"
          },
          {
            "name": "picocolors",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "playwright",
            "direct": false,
            "version": "1.58.2",
            "ecosystem": "npm"
          },
          {
            "name": "playwright-core",
            "direct": false,
            "version": "1.58.2",
            "ecosystem": "npm"
          },
          {
            "name": "postject",
            "direct": false,
            "version": "1.0.0-alpha.6",
            "ecosystem": "npm"
          },
          {
            "name": "pretty-bytes",
            "direct": false,
            "version": "6.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "pretty-ms",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "pretty-ms",
            "direct": false,
            "version": "9.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "proper-lockfile",
            "direct": false,
            "version": "4.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "proxy-addr",
            "direct": false,
            "version": "2.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "psl",
            "direct": false,
            "version": "1.15.0",
            "ecosystem": "npm"
          },
          {
            "name": "punycode",
            "direct": false,
            "version": "2.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "qs",
            "direct": false,
            "version": "6.13.0",
            "ecosystem": "npm"
          },
          {
            "name": "querystringify",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "randombytes",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "range-parser",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "raw-body",
            "direct": false,
            "version": "2.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "rc",
            "direct": false,
            "version": "1.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "readdirp",
            "direct": false,
            "version": "4.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "readdirp",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "require-directory",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "requires-port",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "restore-cursor",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "retry",
            "direct": false,
            "version": "0.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "retry",
            "direct": false,
            "version": "0.13.1",
            "ecosystem": "npm"
          },
          {
            "name": "rrweb-cssom",
            "direct": false,
            "version": "0.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "rrweb-cssom",
            "direct": false,
            "version": "0.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "run-applescript",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "safe-buffer",
            "direct": false,
            "version": "5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "safer-buffer",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "saxes",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.8.4",
            "ecosystem": "npm"
          },
          {
            "name": "send",
            "direct": false,
            "version": "0.19.0",
            "ecosystem": "npm"
          },
          {
            "name": "serialize-javascript",
            "direct": false,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "serve-static",
            "direct": false,
            "version": "1.16.2",
            "ecosystem": "npm"
          },
          {
            "name": "setprototypeof",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-command",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "sherpa-onnx-darwin-arm64",
            "direct": false,
            "version": "1.12.24",
            "ecosystem": "npm"
          },
          {
            "name": "sherpa-onnx-darwin-x64",
            "direct": false,
            "version": "1.12.24",
            "ecosystem": "npm"
          },
          {
            "name": "sherpa-onnx-linux-arm64",
            "direct": false,
            "version": "1.12.24",
            "ecosystem": "npm"
          },
          {
            "name": "sherpa-onnx-linux-x64",
            "direct": false,
            "version": "1.12.24",
            "ecosystem": "npm"
          },
          {
            "name": "sherpa-onnx-win-ia32",
            "direct": false,
            "version": "1.12.24",
            "ecosystem": "npm"
          },
          {
            "name": "sherpa-onnx-win-x64",
            "direct": false,
            "version": "1.12.24",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-list",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-map",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-weakmap",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "3.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "simple-git",
            "direct": false,
            "version": "3.36.0",
            "ecosystem": "npm"
          },
          {
            "name": "sleep-promise",
            "direct": false,
            "version": "9.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "slice-ansi",
            "direct": false,
            "version": "7.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "slice-ansi",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "statuses",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "stdin-discarder",
            "direct": false,
            "version": "0.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "stdout-update",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "steno",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "4.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "8.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-ansi",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-ansi",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "supports-color",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "supports-color",
            "direct": false,
            "version": "8.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "symbol-tree",
            "direct": false,
            "version": "3.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "tar",
            "direct": false,
            "version": "7.5.16",
            "ecosystem": "npm"
          },
          {
            "name": "toidentifier",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "tough-cookie",
            "direct": false,
            "version": "4.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "tr46",
            "direct": false,
            "version": "5.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "type-is",
            "direct": false,
            "version": "1.6.18",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "7.19.2",
            "ecosystem": "npm"
          },
          {
            "name": "universalify",
            "direct": false,
            "version": "0.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "universalify",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "unpipe",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "url-join",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "url-parse",
            "direct": false,
            "version": "1.5.10",
            "ecosystem": "npm"
          },
          {
            "name": "utils-merge",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "validate-npm-package-name",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "vary",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "w3c-xmlserializer",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "webidl-conversions",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "whatwg-encoding",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "whatwg-mimetype",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "whatwg-url",
            "direct": false,
            "version": "14.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "workerpool",
            "direct": false,
            "version": "9.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "8.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "wsl-utils",
            "direct": false,
            "version": "0.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "xml-name-validator",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "xmlchars",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "y18n",
            "direct": false,
            "version": "5.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "yargs",
            "direct": false,
            "version": "17.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "yargs-parser",
            "direct": false,
            "version": "21.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "yargs-unparser",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "yocto-queue",
            "direct": false,
            "version": "0.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "yoctocolors",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 389,
        "direct_count": 19,
        "indirect_count": 370
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 6,
        "merged_prs": 78,
        "open_issues": 15,
        "closed_ratio": 0.605,
        "closed_issues": 23,
        "closed_unmerged_prs": 26
      },
      "bus_factor": 1,
      "bot_contributors": 2,
      "top_contributors": [
        {
          "type": "User",
          "login": "animeshkundu",
          "commits": 77,
          "avatar_url": "https://avatars.githubusercontent.com/u/7248674?v=4"
        },
        {
          "type": "User",
          "login": "animeshk",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/2742175?v=4"
        }
      ],
      "contributors_sampled": 2,
      "top_contributor_share": 0.975
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "build-binaries.yml",
        "ci.yml",
        "longevity-nightly.yml",
        "longevity-smoke.yml",
        "longevity-weekly.yml",
        "pages.yml",
        "release-on-main.yml",
        "test-sticky.yml",
        "test-voice.yml",
        "update-visual-baselines.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "17 out of 17 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 3,
            "reason": "project has 1 contributing companies or organizations -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 12 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 5,
            "reason": "dependency not pinned by hash detected -- score normalized to 5",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "26 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "4c181ef76639e7640717c31b3f4bc324f98a6d36",
        "ran_at": "2026-07-21T21:32:46Z",
        "aggregate_score": 3.6,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/animeshkundu/ai-or-die",
    "host": "github.com",
    "name": "ai-or-die",
    "owner": "animeshkundu"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 60,
      "inputs": {
        "security": 41,
        "vitality": 82,
        "community": 43,
        "governance": 53,
        "engineering": 77
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 82,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 76,
            "inputs": {
              "commits_last_year": 196,
              "human_commit_share": 0.58,
              "days_since_last_push": 4,
              "active_weeks_last_year": 17
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "17/52 weeks with commits",
                "points": 11.8,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 17
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "196 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 196
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 12 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 97,
              "latest_release_tag": "v0.1.96",
              "releases_from_tags": false,
              "days_since_latest_release": 4,
              "mean_days_between_releases": 1.8
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "97 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 97
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~1.8 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 1.8
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 43,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "good",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 61,
            "inputs": {
              "packages": [
                "ai-or-die"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 4771
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "4,771 downloads/month across npm",
                "points": 49,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 4771,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 53,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 15,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 2,
              "top_contributor_share": 0.975
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 98% of commits",
                "points": 0.6,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 98
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "2 contributors",
                "points": 2.7,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 57,
            "inputs": {
              "merged_prs": 78,
              "open_issues": 15,
              "closed_issues": 23,
              "issue_closed_ratio": 0.605,
              "closed_unmerged_prs": 26
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "60% of issues closed",
                "points": 28.3,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 60
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "78/104 decided PRs merged",
                "points": 28.7,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 78,
                      "decided": 104
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 56,
            "inputs": {
              "followers": 40,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "animeshkundu",
              "public_repos": 35,
              "account_age_days": 4485
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "40 followers of animeshkundu",
                "points": 11.6,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 40,
                      "login": "animeshkundu"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "35 public repos, account ~12 yr old",
                "points": 23.3,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 35
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 12
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "ai-or-die"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 4
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 4 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "87 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 87
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 77,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 68,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "10 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "17 out of 17 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": "https://animesh.kundus.in/ai-or-die/",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://animesh.kundus.in/ai-or-die/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 41,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": null,
            "notes": [],
            "value": 36,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 18,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 0,
              "scorecard_aggregate": 3.6
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "17 out of 17 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 12 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 5",
                "points": 2.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "26 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "moderate",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 389 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 389
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 59,
            "inputs": {
              "source": "osv",
              "advisories": 28,
              "affected_packages": 15,
              "assessed_packages": 389,
              "unassessed_packages": 0,
              "affected_by_severity": "high 11, moderate 3, low 1",
              "direct_affected_packages": 3
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "3 affected: uuid 10.0.0 (high 7.5), ws 8.18.0 (high 7.5), ws 8.18.3 (high 7.5)",
                "points": 10.2,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_affected",
                    "params": {
                      "count": 3,
                      "packages": "uuid 10.0.0 (high 7.5), ws 8.18.0 (high 7.5), ws 8.18.3 (high 7.5)"
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "1 advisory-carrying package(s) unaddressed past 90 days; oldest published 90 days ago",
                "points": 33.7,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_stale",
                    "params": {
                      "days": 90,
                      "count": 1,
                      "oldest": 90
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 389,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 3
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 64,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [
                ".github/copilot-instructions.md",
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 11890
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "58 of 58 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 58,
                      "sampled": 58
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 52,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "package-lock.json"
              ],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0.01,
              "toolchain_manifests": [
                "mesh/go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "mesh/go.mod (toolchain convention, no task runner)",
                "points": 12.6,
                "status": "partial",
                "details": [
                  {
                    "code": "toolchain_convention",
                    "params": {
                      "files": "mesh/go.mod"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "1 of the last 100 commits agent-authored or agent-credited",
                "points": 2,
                "status": "partial",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 1,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 5",
                "points": 5,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "moderate",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 54,
            "inputs": {
              "primary_language": "JavaScript",
              "largest_source_bytes": 338958,
              "source_files_sampled": 398,
              "oversized_source_files": 4
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "JavaScript without a type-check config",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_typecheck_config_language",
                    "params": {
                      "language": "JavaScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "4/398 source files over 60KB",
                "points": 54.4,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 398,
                      "oversized": 4
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "deps.dev does not index npm:ai-or-die@0.1.96; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-21T21:33:02.276377Z",
  "schema_version": "0.23.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/a/animeshkundu/ai-or-die.svg",
  "full_name": "animeshkundu/ai-or-die",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.23.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsnpm.