Raw JSON report machine-readable
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 6862,
"has_wiki": false,
"homepage": "https://apoxy.dev",
"languages": {
"Go": 4159623,
"CSS": 14604,
"HTML": 6142,
"Shell": 8479,
"JavaScript": 8125,
"TypeScript": 720908,
"Go Template": 8796
},
"pushed_at": "2026-07-23T03:32:44Z",
"created_at": "2023-11-20T17:00:44Z",
"owner_type": "Organization",
"updated_at": "2026-07-23T03:32:47Z",
"description": "Programmable connectivity platform",
"is_archived": false,
"is_disabled": false,
"license_spdx": "AGPL-3.0",
"default_branch": "main",
"license_spdx_raw": "AGPL-3.0",
"primary_language": "Go",
"significant_languages": [
"Go",
"TypeScript"
]
},
"owner": {
"blog": "https://apoxy.dev",
"name": "Apoxy",
"type": "Organization",
"login": "apoxy-dev",
"company": null,
"location": null,
"followers": 6,
"avatar_url": "https://avatars.githubusercontent.com/u/107369053?v=4",
"created_at": "2022-06-12T19:56:52Z",
"is_verified": null,
"public_repos": 34,
"account_age_days": 1501
},
"license": {
"state": "standard",
"spdx_id": "AGPL-3.0",
"raw_spdx": "AGPL-3.0",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.11.25",
"kind": "patch",
"published_at": "2026-07-16T19:44:42Z"
},
{
"tag": "v0.11.24",
"kind": "patch",
"published_at": "2026-07-02T18:41:22Z"
},
{
"tag": "v0.11.23",
"kind": "patch",
"published_at": "2026-06-16T07:43:34Z"
},
{
"tag": "v0.11.22",
"kind": "patch",
"published_at": "2026-06-03T20:27:48Z"
},
{
"tag": "v0.20.0",
"kind": "minor",
"published_at": "2026-05-13T21:32:57Z"
},
{
"tag": "v0.19.3",
"kind": "patch",
"published_at": "2026-05-09T05:32:31Z"
},
{
"tag": "v0.19.2",
"kind": "patch",
"published_at": "2026-04-14T21:09:48Z"
},
{
"tag": "v0.19.1",
"kind": "patch",
"published_at": "2026-04-14T06:13:25Z"
},
{
"tag": "v0.19.0",
"kind": "minor",
"published_at": "2026-04-14T05:21:15Z"
},
{
"tag": "v0.18.1",
"kind": "patch",
"published_at": "2026-03-31T17:37:28Z"
},
{
"tag": "v0.18.0",
"kind": "minor",
"published_at": "2026-03-27T06:26:07Z"
},
{
"tag": "v0.17.0",
"kind": "minor",
"published_at": "2026-03-25T17:02:07Z"
},
{
"tag": "v0.16.1",
"kind": "patch",
"published_at": "2026-03-19T03:48:07Z"
},
{
"tag": "v0.16.0",
"kind": "minor",
"published_at": "2026-03-19T00:31:51Z"
},
{
"tag": "v0.15.0",
"kind": "minor",
"published_at": "2026-03-03T22:51:59Z"
},
{
"tag": "v0.14.0",
"kind": "minor",
"published_at": "2026-01-21T08:03:26Z"
},
{
"tag": "v0.13.0",
"kind": "minor",
"published_at": "2025-11-18T00:02:25Z"
},
{
"tag": "v0.12.4",
"kind": "patch",
"published_at": "2025-10-28T22:59:08Z"
},
{
"tag": "v0.12.3",
"kind": "patch",
"published_at": "2025-10-14T21:49:19Z"
},
{
"tag": "v0.12.2",
"kind": "patch",
"published_at": "2025-10-13T20:11:13Z"
},
{
"tag": "v0.12.1",
"kind": "patch",
"published_at": "2025-10-12T05:32:33Z"
},
{
"tag": "v0.12.0",
"kind": "minor",
"published_at": "2025-10-09T06:43:33Z"
},
{
"tag": "v0.11.21",
"kind": "patch",
"published_at": "2025-10-01T23:43:52Z"
},
{
"tag": "v0.11.20",
"kind": "patch",
"published_at": "2025-09-27T10:23:15Z"
},
{
"tag": "v0.11.19",
"kind": "patch",
"published_at": "2025-09-24T01:26:56Z"
},
{
"tag": "v0.11.18",
"kind": "patch",
"published_at": "2025-09-09T22:56:19Z"
},
{
"tag": "v0.11.17",
"kind": "patch",
"published_at": "2025-09-01T22:02:16Z"
},
{
"tag": "v0.11.15",
"kind": "patch",
"published_at": "2025-08-29T22:14:44Z"
},
{
"tag": "v0.11.14",
"kind": "patch",
"published_at": "2025-08-28T17:31:19Z"
},
{
"tag": "v0.11.13",
"kind": "patch",
"published_at": "2025-08-27T17:12:26Z"
},
{
"tag": "v0.11.12",
"kind": "patch",
"published_at": "2025-08-26T23:25:19Z"
},
{
"tag": "v0.11.11",
"kind": "patch",
"published_at": "2025-08-26T21:22:45Z"
},
{
"tag": "v0.11.10",
"kind": "patch",
"published_at": "2025-08-20T19:56:16Z"
},
{
"tag": "v0.11.9",
"kind": "patch",
"published_at": "2025-08-19T07:54:06Z"
},
{
"tag": "v0.11.8",
"kind": "patch",
"published_at": "2025-08-14T08:25:54Z"
},
{
"tag": "v0.11.6",
"kind": "patch",
"published_at": "2025-07-30T16:30:27Z"
},
{
"tag": "v0.11.5",
"kind": "patch",
"published_at": "2025-07-30T07:24:06Z"
},
{
"tag": "v0.11.4",
"kind": "patch",
"published_at": "2025-07-30T06:32:20Z"
},
{
"tag": "v0.11.3",
"kind": "patch",
"published_at": "2025-07-29T20:08:59Z"
},
{
"tag": "v0.11.2",
"kind": "patch",
"published_at": "2025-07-29T18:59:12Z"
},
{
"tag": "v0.11.1",
"kind": "patch",
"published_at": "2025-07-29T08:45:13Z"
},
{
"tag": "v0.11.0",
"kind": "minor",
"published_at": "2025-07-26T08:52:23Z"
},
{
"tag": "v0.10.0",
"kind": "minor",
"published_at": "2025-07-03T00:00:04Z"
},
{
"tag": "v0.9.3",
"kind": "patch",
"published_at": "2025-04-30T03:37:04Z"
},
{
"tag": "v0.9.2",
"kind": "patch",
"published_at": "2025-04-29T21:48:18Z"
},
{
"tag": "v0.9.1",
"kind": "patch",
"published_at": "2025-04-28T21:22:11Z"
},
{
"tag": "v0.9.0",
"kind": "minor",
"published_at": "2025-04-25T03:46:13Z"
},
{
"tag": "v0.8.5",
"kind": "patch",
"published_at": "2025-04-20T07:14:47Z"
},
{
"tag": "v0.8.4",
"kind": "patch",
"published_at": "2025-04-10T06:56:42Z"
},
{
"tag": "v0.8.3",
"kind": "patch",
"published_at": "2025-04-09T19:07:07Z"
},
{
"tag": "v0.8.2",
"kind": "patch",
"published_at": "2025-02-21T20:41:53Z"
},
{
"tag": "v0.8.1",
"kind": "patch",
"published_at": "2025-02-15T20:47:13Z"
},
{
"tag": "v0.8.0",
"kind": "minor",
"published_at": "2025-02-14T01:21:05Z"
},
{
"tag": "v0.7.8",
"kind": "patch",
"published_at": "2025-02-13T23:10:02Z"
},
{
"tag": "v0.7.7",
"kind": "patch",
"published_at": "2025-02-13T20:36:53Z"
},
{
"tag": "v0.7.6",
"kind": "patch",
"published_at": "2025-02-13T00:08:46Z"
},
{
"tag": "v0.7.5",
"kind": "patch",
"published_at": "2025-02-12T20:48:06Z"
},
{
"tag": "v0.7.3",
"kind": "patch",
"published_at": "2025-02-12T19:05:56Z"
},
{
"tag": "v0.7.2",
"kind": "patch",
"published_at": "2025-02-10T20:08:25Z"
},
{
"tag": "v0.7.1",
"kind": "patch",
"published_at": "2025-02-09T18:54:49Z"
},
{
"tag": "v0.7.0",
"kind": "minor",
"published_at": "2025-02-07T20:29:05Z"
},
{
"tag": "v0.6.2",
"kind": "patch",
"published_at": "2025-01-20T20:36:45Z"
},
{
"tag": "v0.6.1",
"kind": "patch",
"published_at": "2025-01-19T21:58:06Z"
},
{
"tag": "v0.6.0",
"kind": "minor",
"published_at": "2025-01-18T00:36:53Z"
},
{
"tag": "v0.5.9",
"kind": "patch",
"published_at": "2025-01-12T22:54:16Z"
},
{
"tag": "v0.5.8",
"kind": "patch",
"published_at": "2025-01-09T08:02:06Z"
},
{
"tag": "v0.5.7",
"kind": "patch",
"published_at": "2025-01-02T21:11:33Z"
},
{
"tag": "v0.5.6",
"kind": "patch",
"published_at": "2025-01-02T20:56:33Z"
},
{
"tag": "v0.5.5",
"kind": "patch",
"published_at": "2025-01-02T20:51:14Z"
},
{
"tag": "v0.5.4",
"kind": "patch",
"published_at": "2025-01-02T08:39:16Z"
},
{
"tag": "v0.5.3",
"kind": "patch",
"published_at": "2024-12-31T08:28:26Z"
},
{
"tag": "v0.5.2",
"kind": "patch",
"published_at": "2024-12-31T07:53:40Z"
},
{
"tag": "v0.5.1",
"kind": "patch",
"published_at": "2024-12-31T05:53:51Z"
},
{
"tag": "v0.5.0",
"kind": "minor",
"published_at": "2024-12-30T07:07:30Z"
},
{
"tag": "v0.4.2",
"kind": "patch",
"published_at": "2024-12-23T11:10:41Z"
},
{
"tag": "v0.4.1",
"kind": "patch",
"published_at": "2024-12-11T19:52:08Z"
},
{
"tag": "v0.4.0",
"kind": "minor",
"published_at": "2024-11-25T21:52:42Z"
},
{
"tag": "v0.1.5",
"kind": "patch",
"published_at": "2024-01-30T01:34:30Z"
},
{
"tag": "v0.1.4",
"kind": "patch",
"published_at": "2024-01-23T07:46:57Z"
},
{
"tag": "v0.1.3",
"kind": "patch",
"published_at": "2024-01-21T08:02:37Z"
},
{
"tag": "v0.1.2",
"kind": "patch",
"published_at": "2023-12-19T08:10:11Z"
},
{
"tag": "v0.1.1",
"kind": "patch",
"published_at": "2023-12-16T08:11:22Z"
},
{
"tag": "v0.1.0",
"kind": "minor",
"published_at": "2023-12-10T01:22:34Z"
}
],
"recent_commits": [
{
"oid": "e4d7dc78f1a7f0b732477bc541d777ab210ebba1",
"body": "…ice proxy\n\nkube-aggregator re-polls each APIService's discovery and OpenAPI\nendpoints continuously; every poll was crossing the customer VPC boundary\nto the cloud apiserver. Wrap the proxy transport in a small TTL cache\n(1min, singleflight-deduped, bounded at 128 entries / 16MiB) for the\nstable discovery paths so repeated health and schema checks are served\nlocally from the kube-controller pod.",
"is_bot": false,
"headline": "[kube-controller] cache aggregator discovery responses in the APIServ…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-23T03:32:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6f41b4ac801869f6faa5411a81875803d4adc4da",
"body": "An agent running with min-conns > 1 gets no drain resilience when the LB\nhashes all of its QUIC connections onto one relay replica: that replica's\ndrain zeroes the agent's entire endpoint set at once (observed during the\ntunnelproxy roll on the green shard, APO-922).\n\nServer now tracks live/in-fligh\n[…]\nancelled workers and dropped live ones, and make every /connect\nerror status flush-and-hold so rejections actually reach the peer instead\nof being discarded by the handler's deferred CONNECTION_CLOSE.",
"is_bot": false,
"headline": "[tunnel] same-server connection diversity for multi-conn agents",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-23T02:51:46Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9bb3fbd9e701d8d9aab83a4064335a93cc99a164",
"body": "Introduce the control-plane presence for the vpc.apoxy.dev Relay: a relay\nregisters a write-once Relay object and renews a coordination.apoxy.dev\nLease; an apiserver-side watcher derives relay readiness from that lease\nand garbage-collects on expiry. No cmd wiring yet (phase 5).\n\nRelayRegistrar (pkg\n[…]\nims it.\n\nTests: fake-client tables for write-once/renew/sub-second-floor/drain and\nfor readiness transitions, within-grace keep, past-grace GC, lease-gone\nGC, and cross-namespace/foreign-lease ignore.",
"is_bot": false,
"headline": "[tunnel] add RelayRegistrar + relay lease watcher (APO-825 phase 4)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-23T01:02:41Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "fab435927d77da224f2a2d7414c418df4123ed6c",
"body": "…se 3)\n\nIntroduce pkg/tunnel/ipalloc, the relay-side in-process address allocators\nfor the vpc.apoxy.dev connect path (§2.8). No wiring yet — phase 5 is the\nfirst consumer; nothing existing is touched.\n\n- BlockLeaser seam: leases a /80 block of a network /72 (byte 9 = 8-bit\n index, 256 blocks/netwo\n[…]\nex round-trip, leaser\ndistinct/reuse/256-exhaustion, v6/v4 derivation and reuse, v4-exhaustion→\nv6-only, v6-exhaustion→ErrBlockExhausted, cross-network v4 overlap, and the\nforeign-block release guard.",
"is_bot": false,
"headline": "[tunnel] add ipalloc block-lease + connection allocators (APO-825 pha…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-22T14:59:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d178767fe9aef5eb29a3eeeb578a5b0242b72772",
"body": "Extend the relay connect protocol and authentication seam ahead of the\nvpc.apoxy.dev connect-path rewrite, with no behavior change for existing\ndeployments. Targets the new Relay (JSON over HTTP/3), not the legacy\nMASQUE TunnelServer.\n\nWire (pkg/tunnel/api):\n- ConnectRequest gains Labels, Advertised\n[…]\nSON\nround-trip/back-compat, and relay loopback cases for the 403/400 paths,\nnil-authz-fails-closed, and the advertised MTU. Also fixes a pre-existing\ndata race in the connect/disconnect loopback test.",
"is_bot": false,
"headline": "[tunnel] add TokenValidator seam + connect wire fields (APO-825 phase 2)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-22T06:13:47Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9c4975f003f371b5e5f18070115240fbc9f10b5a",
"body": "New aggregated-apiserver group with four cluster-scoped kinds per\ndocs/vpc-binding-relay-network-api.mdx section 2: VPCNetwork (private\nconnectivity domain), VPCService (Service-like selector addressing over\nTunnels), Relay (write-once relay tracking), and Tunnel (one object per\nlive connection, the\n[…]\nd scheme + storage\nregistration in the apiserver manager.\n\nThe legacy core/v1alpha2 Tunnel/TunnelAgent kinds are untouched; both\ngroups coexist until the phase-6 deletion + one-shot storage migration.",
"is_bot": false,
"headline": "[api] add vpc.apoxy.dev/v1alpha1 group (APO-825 phase 1)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T21:28:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "965997c677b8f883b605c84ef91b057aeb896fd8",
"body": "Snapshot changes now log a compact per-resource diff at Info\n(e.g. \"Cluster +1(foo) ~2(bar,baz); RouteConfiguration -1(qux)\") built\nfrom the cache's per-name hash table; the full resource and IR dumps\n(150-600KB per line) move to Debug along with the per-route extension\nhook and compressor chatter. \n[…]\ner-watch library chatter from production\nlogs; the runner no longer double-announces generations at Info or\nmislabels failed pushes as \"resources unchanged\"; diff sections render\nin sorted type order.",
"is_bot": false,
"headline": "[gateway] log per-resource snapshot diffs instead of full dumps",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T19:12:09Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3752e137c499b56f4eaee63922ce45b82d51181c",
"body": "…nchanged\n\nThe message bus regenerates snapshots on every update even when the\ntranslated resources are byte-identical, and the xds-server runner logged\nthe full resource dump (150-630KB per line) at Info on each regen -- the\ntop contributor to prod log volume during deploy churn.\n\nMove change detec\n[…]\nn call, node_test's PrivateAddress->InternalAddress rename,\nir/xds_test's TCPListener Routes migration and RemoteJWKS pointer, and a\nmalformed slog.Error call in message/watchutil.go that vet flagged.",
"is_bot": false,
"headline": "[gateway] skip xDS snapshot pushes and log dumps when resources are u…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T16:47:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b41b278e77bedd0a7ccac6ab0895cdea44090d10",
"body": "…exit (APO-922)\n\nThe tracker keyed flows directionally: the SYN-ACK created a second\nreverse-direction entry and each side's FIN landed on its own entry, so\nflows were never deleted and ActiveCount grew monotonically (frozen\nactive=723623 during the 2026-07-20 Trainy shard drain), defeating the\nlame\n[…]\nso a reused 4-tuple cannot\n inherit stale half-close state\n- table-driven tests incl. same-IP port tie-break, tuple reuse, clock-\n injected liveness/sweep cases, and a 1000-lifecycle leak regression",
"is_bot": false,
"headline": "[tunnel] fix conntrack flow accounting + idle-expiry for drain early-…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T07:32:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e6cc7c303610e580187f64d0588a3ca0ea5ce6ed",
"body": "icx v0.19.0 replaces VirtualNetwork.RemoteAddr with an atomic accessor to\nsupport WithSourceLearning. Adapt the one external consumer: the DNAT-sync\nlog line now nil-guards peer.RemoteAddr(), since under source learning the\nremote endpoint may not be learned yet.",
"is_bot": false,
"headline": "[tunnel] bump icx to v0.19.0 (authenticated source learning, APO-740)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T05:38:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8380b559260786094ff91049cfc30aa68a1227fb",
"body": "logtail.go called unix.Fallocate (FALLOC_FL_PUNCH_HOLE/COLLAPSE_RANGE)\nunconditionally, which only exists on linux; any darwin build reaching\nthe package failed to compile. The tailer only ships on linux - move the\ntwo calls behind punchHole/collapseRange with a non-linux stub that\nreturns an error.",
"is_bot": false,
"headline": "[backplane] isolate logtail fallocate behind linux build-tagged helpers",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T01:10:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2438d87d52ab94fbcde4a0b31a57551d36dd18a5",
"body": "icx v0.18.0 turned VirtualNetwork.AllowedRoutes into a snapshot accessor\n(race-safe); the linux-only iptables sync in icx_netlink_linux.go still\nranged over it as a field, breaking linux builds. Darwin builds and tests\ncould not catch it.",
"is_bot": false,
"headline": "[tunnel] call AllowedRoutes() accessor in the DNAT rule sync",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T01:04:09Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3ea5a0c77d7c31ea50382c69a67098909e8021a3",
"body": "First tagged release past v0.16.1: PSP-style per-epoch KDF (closes the\ndeterministic-GCM nonce-reuse restart collision), multi-peer key plane,\nvtep drivers, and the v0.17.0 MTU() fix. Same commit as the previous\npseudo-version pin (0b9cc8b) - version label only. APO-824 step 1.",
"is_bot": false,
"headline": "[deps] bump icx to v0.18.0",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T00:57:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3635989dc607b02353956ab517c6e9e4077619ae",
"body": "…stalls\n\nFollow-up on the master-secret keying migration, from code review:\n\n- Relay mints the connection's master before publishing the connection to the\n map, so a concurrent handleUpdateKeys can no longer read a zero master; the\n master is now an immutable construction-time field (SetMaster dro\n[…]\ningle place.\n- The agent fails closed on an empty master and reschedules a failed key apply\n after 10s instead of at half-life, so a transient failure no longer leaves\n the tunnel unkeyed for hours.",
"is_bot": false,
"headline": "[tunnel] harden relay/agent keying against zero-master and stalled in…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T00:44:37Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f5c2c209e2b64dda4b7e57c80a002cd802f603b7",
"body": "Per-query tunnel/VPC DNS resolution logging runs at ~13 events/s on busy\nshards and diag session open/close pairs add a few more — together they\nkept prod edge clusters just under Vector's 20 events/s per-namespace log\nthrottle, so any rollout burst tipped into dropped logs. These are routine\nper-request events, not operator-actionable state changes.",
"is_bot": false,
"headline": "[tunnel,dns] demote per-event resolution and diag-session logs to Debug",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T00:12:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "40d99065db8ca5619bad09090e7c559f55791b73",
"body": "Every flow past the allow verdict costs a Sentry netstack endpoint plus\ntwo host FDs and two splice goroutines, so a worker opening connections\nin a loop could exhaust host FDs / Sentry memory for the whole node.\nCap live bridged flows at 1024 per resident, counted from accept to\nclose so the preamb\n[…]\nan't pin a goroutine + flow slot.\n\nRemaining per-resident limit work (cgroup memory/cpu/pids, DNS QPS,\nlower tcpForwarderMaxInFlight, bundle size cap, isolate knobs, log\nvolume) is tracked in APO-921.",
"is_bot": false,
"headline": "[workerd] cap concurrent egress flows per resident",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-21T00:12:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "507407abcccacfcea51c1e008dc94dc70aec9119",
"body": "Adopt the icx PSP-style keying API: the wire schema replaces the raw\nSend/Recv AES keys with a base64 32-byte MasterSecret minted once per\nconnection (crypto/rand); rotations advance only the epoch under the same\nmaster and each side derives its own per-direction keys inside the icx\nhandler (relay =\n[…]\n key crosses the wire.\n\nAlso fixes connect handing out epoch 0, which the handler rejects: the\nfirst epoch is now 1 (IncrementKeyEpoch at connect), un-breaking\nTestRelay_Connect_UpdateKeys_Disconnect.",
"is_bot": false,
"headline": "[tunnel] key relay/agent tunnels from a per-connection master secret",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-20T23:59:56Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b88f038f2c10b4ddec6d2b5b86c875d082405169",
"body": "A worker hammering policy-blocked destinations used to get a completed\nTCP handshake per attempt: the in-Sentry forwarder created the gVisor\nendpoint first and only then bridged to the host, where a denied flow\nwas silently closed. Each denied connect() therefore allocated netstack\nendpoint state in\n[…]\nSYN (a real guest observes prompt refusal on\na denied dial, reported via an allowed flow), and the acceptance-tagged\nTestWorkerdEgressDialsThrough (stock workerd fetch() through the verdict\nprotocol).",
"is_bot": false,
"headline": "[workerd,sandbox] RST denied egress at SYN, before any netstack endpoint",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-20T23:37:49Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "fb8efff88ecfe84532d51f0a4cf53587dcbc94e0",
"body": "Add in-Sentry DNS resolution + hostname egress policy + VPC-ULA reach on\ntop of the base TCP egress data path, so a worker fetch() can resolve and\nreach real hostnames (api.stripe.com) rather than only literal IPs.\n\n- egressfwd: UDP:53 forwarder dials the resident's abstract unixgram DNS\n resolver \n[…]\nApplyDNS) for the manager-side pusher.\n- register.go: static-assert the gvisor pin includes the AF_UNIX\n SOCK_DGRAM seccomp allowance.\n\nBumps the gvisor fork pin to include the plugin seccomp change.",
"is_bot": false,
"headline": "[sandbox,workerd] compute worker egress DNS plane",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-17T07:00:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b038bd4a11b4772127b6d56ad8c2909d19a342cd",
"body": "## What changed\n\n- add an optional `spec.dynamicPluginConfig` field outside the\nEdgeFunction revision template\n- translate that field into Envoy Go filter `ConfigsPerRoute`\n- keep the existing filter-level plugin config as the static parent\nconfig\n- preserve the existing route-enable encoding when d\n[…]\nso catches up one pre-existing\ndocumentation-only Egress schema line. The two excluded\n`TestBuildXdsCluster*` tests have a pre-existing nil bootstrap option\npanic; the remaining translator tests pass.",
"is_bot": false,
"headline": "Add dynamic Go plugin configuration (#90)",
"author_name": "dilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-16T06:06:45Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3f10e0a3e07ec6ec744d705e97d970d539fea7b8",
"body": "…balOutbound\n\nMake worker fetch() actually leave the gVisor sandbox. The config plane\n(EgressConfig gRPC sink + reconciler) already recorded egress state, but\nnothing consumed it: dispatcher.js hardcoded globalOutbound:null and no\nForwarderInstaller was registered, so outbound SYNs were RST in the n\n[…]\nission rejects external/unixSocket/loopback\n globalOutbound so a structural connect() is never flattened before syscall.\n\nVerified: unit (policy/merge/SSRF/framing) + real-runsc acceptance + dev e2e.",
"is_bot": false,
"headline": "[workerd] egress data path: forwarder, host bridge, SSRF-filtered glo…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-15T21:24:19Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "67fbc114575091f6925d72947ed8f0afbbf32c67",
"body": null,
"is_bot": false,
"headline": "Ignore local test and Playwright artifacts",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-15T18:15:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "18197e031004c709ccafe38576be070bf05979e5",
"body": "…sh config, write status\n\nThe backplane side of the worker-mediated egress config plane: resolve\neach compute Service's egress selection against the project's\nEgressGateways/EgressRoutes, compile it, push the whole state to the\nco-located resident, and write the status contract.\n\nSplit into two halv\n[…]\nule. The sandbox seam and\nrecorded EgressState go per-Service to match.\n\nConfig plane only: worker egress stays hard-denied (the dispatcher's\nglobalOutbound: null) until the data path lands (APO-713).",
"is_bot": false,
"headline": "[workerd,api,sandbox] APO-726 compute egress reconciler: compile + pu…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-15T07:44:17Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c169a5f0814f3de638c9bc69153330fdb4c9d618",
"body": "…Egress, drop Capabilities\n\nEgress for compute Services is transparent to worker code: no binding,\nno fetch wrapper — plain fetch() works, mediated host-side (sandbox\nnetstack + egress gateway data plane). A Service selects its gateway\nvia a new egress block on ServiceConfigSpec:\n\n- Absent block (or\n[…]\nPI): dead code with no\nconsumer, replaced by the egress block. NOT YET ENFORCED is stamped on\nthe doc comments: the runtime denies all worker egress until the\nAPO-726/713/722 control/data planes land.",
"is_bot": false,
"headline": "[api,compute] egress API surface: EgressGateway/EgressRoute + Service…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-14T07:04:23Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "0f7d1da515ddd39d10cc3a63177531a88320f534",
"body": "The onboarding manifest is now HA by default (2 replicas, preferred\nhostname anti-affinity, minAvailable=1 PDB — rendered server-side by\ncosmos). --single-replica sends single_replica=true to the onboarding\nendpoint to render the old single-replica manifest with no\nanti-affinity and no PDB, for single-node or resource-constrained\nclusters.",
"is_bot": false,
"headline": "[cli] add --single-replica opt-out to apoxy k8s install",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-14T03:04:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "969ea8676e6db37076f248875ca3d83d6e7b67c2",
"body": "…gress sink\n\nThe backplane's egress reconciler (APO-726) needs a way to push compiled\negress config into a running workerd manager, which is a separate process\nfrom the backplane (clrk drives its equivalent setters in-process from a\nCRD watch). This adds the worker-side sink:\n\n- api/workerd/v1: Egre\n[…]\ncycle (incl. duplicate-create and self-heal\nrecreate), generation semantics, tenant isolation, gRPC error mapping,\nstale-socket rebind, double-Close, and the manager wiring end-to-end\nover a real UDS.",
"is_bot": false,
"headline": "[api,workerd,sandbox] APO-723 egress config plane: worker-side ApplyE…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-13T22:49:50Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4c986f2676611579e3a76cf7c52827fcf794085b",
"body": "The shared backplane re-runs a full Gateway-API translation every few\nseconds, and each pass logged an Info line per HTTP filter plus a\nspurious \"No valid HTTP backends\" Error for every DirectResponse-backed\nroute (which legitimately has no backendRefs). Together these accounted\nfor ~3 log events/s \n[…]\nushed the staging namespace\ninto Vector's per-namespace ingest cap.\n\nDemote the per-filter line to Debug and only log the no-valid-backends\nerror when the translator actually injects the 500 fallback.",
"is_bot": false,
"headline": "[gateway] quiet per-translation log spam in HTTPRoute processing",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-13T06:48:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "593ab117a2b56d2aed553ed2d2992f4a35d34054",
"body": "- SecretStoreValues now echoes the parent's spec.scopes (read-only), and\n the workerd-manager resolver enforces scopes from that document with a\n single live values GET per store. The previous main-resource Get went\n through the controller-runtime cache, whose lazy informer WATCHes\n secretstores\n[…]\nitted identity, and wildcard grants on the aggregated\n group are common.\n- BuildWorkerdConfig errors cleanly on a secret binding with no secret\n block instead of dereferencing nil in the error path.",
"is_bot": false,
"headline": "[api,apiserver,workerd,cli] harden SecretStore from review findings",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-11T23:47:09Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "582d324abc82979dcdeea2483059bd789b459693",
"body": "The SecretStore/SecretStoreValues commit regenerated\napi/generated/zz_generated.openapi.go but the file never made it into the\ncommit, so any apiserver built from that pin fails startup with 'cannot\nfind model definition for ...SecretStore'.",
"is_bot": false,
"headline": "[api] add missing regenerated openapi definitions for SecretStore",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-11T20:23:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d0e55c6ece468e2b8ed9e82ea0643ed3bc5c2765",
"body": "…vices (APO-627)\n\nAdds core.apoxy.dev SecretStore: a named map of write-only secret values\nplus consumer scopes (\"<surface>[:<name-glob>]\", e.g. compute:frontend-*).\nValues never appear on the main resource - spec holds only scopes, status\nreports key names + sha256:<8hex> digests, and all value I/O\n[…]\nince the\nk8s.io/apiserver v0.34 bump, headerrequest.New takes a uidHeaders\nparameter second, so X-Remote-Group was being parsed as a UID header and\nevery header-authenticated identity lost its groups.",
"is_bot": false,
"headline": "[api,apiserver,workerd] SecretStore + secret bindings for compute Ser…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-11T19:29:22Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ee5574fee6a6a8f0e042e815dd500f5eabbf910e",
"body": "apoxy build ./proj staged into CWD-relative .apoxy/build while the rest\nof the flow read <proj>/.apoxy/build - caught by the new CLI deploy\nintegration test in apoxy-cloud. Default --out/--dir now resolve inside\nthe project directory, matching deploy's -f default; explicit flags are\nuntouched.",
"is_bot": false,
"headline": "[cli] anchor build/deploy staging dir to the project dir",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-11T07:45:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2c43eec637c703bd1f0dd8872ac6967ae59e9f7b",
"body": "Local-first push-mode flow: apoxy build bundles a JS/TS project with\nin-process esbuild (ESM output, workerd resolution conditions, module-\ncollector plugin turning wasm/text/data imports into separate bundle\nmodules); apoxy bundle push packs the staged output with the service\nbundle media types and\n[…]\nnnot silently unpin it.\n\nCovers the push half of APO-700. Verified end to end on dev: fresh\nproject -> apoxy deploy -> 200 through the shared gateway, redeploy\ndigest-stable, pin survives plain apply.",
"is_bot": false,
"headline": "[cli] add build / bundle push / deploy for compute Services (APO-626)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-11T07:26:57Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "72b5ac9930366a9c83d785a2ad37de241bb8346b",
"body": "The bundle fetchers hardcoded an anonymous oras credential, so the\ncredentials/credentialsRef fields on Service.spec.source.oci were\nsilently dropped and private-registry bundles always failed with an\nanonymous 401 at serve time.\n\nThread pull credentials from the BundleRef through every pull path,\ns\n[…]\nredentials are sent to a plain-HTTP registry on the\n insecure-registries dev lists.\n\nCovered by a fake OCI registry driving real basic, bearer, and\nrefresh-token exchanges through oras's auth client.",
"is_bot": false,
"headline": "[workerd] honor BundleRef pull credentials end to end (APO-871)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-10T23:59:30Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "370a86c2393805e86140ff0c12047cfbaf2e5d3d",
"body": "Update the console-core analytics dependency from 1.376.4 to the\ncurrent release. The new version drops posthog-js's transitive\n@opentelemetry/* dependencies, which accounts for the lockfile\nshrinkage.",
"is_bot": false,
"headline": "[console] bump posthog-js to 1.399.0",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-09T17:56:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "67abb43bad182787d828ddc9817bf79b5aee273e",
"body": "…trap\n\nExtract Run()'s resident-host preamble (config validation, state/staging/\nimage dir creation, PID-1 child reaper, factory construction, one-shot\norphan sweep, ResidentManager construction) into an exported\nSetupResidents, and export the DefaultRootDir/DefaultImageBaseDir/\nDefaultListenAddr li\n[…]\nbootstrap (a new ResidentConfig field, a pre-flight check) would land in\nthe single-project path via a routine pin bump while shared mode silently\ndiverged. Now both topologies call the same function.",
"is_bot": false,
"headline": "[workerd] export SetupResidents so shared shards reuse the host boots…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-09T04:41:57Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d4d51710c059404eb875ccb6c2ed306828cd6545",
"body": "Newer runsc writes container metadata as flat files directly in the\n--root dir (\"<id>_sandbox:<sid>.state\" + \".lock\") instead of a\nper-container directory. Manager.Cleanup only scanned directories, so\nafter any unclean manager restart the dead resident's metadata survived\nthe boot sweep and every ru\n[…]\nart left exactly this state behind).\n\nscanOrphanIDs now derives ids from both layouts (portable + unit\ntested), and Purge also removes the flat metadata files in case runsc\ndelete failed or never ran.",
"is_bot": false,
"headline": "[sandbox] reap flat-file runsc metadata in boot cleanup",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-09T00:02:11Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a4b4debc714f71934d962eb0d080cb4268af62bf",
"body": "Pivot the resident workerd from process-global singleton to one resident\nper tenant (project UUID; \"\" keeps the legacy single-project naming\nbyte-identical), so the shared backplane can fan the manager out per\nengaged project (APO-797) without cross-tenant demux collisions.\n\n- pkg/workerd/names: sin\n[…]\nrrAlreadyExists wedge on stop-then-recreate flows.\n\nSingle-project topologies (apoxy dev, dedicated) are byte-identical:\nsame sandbox id, socket path, cluster name, and 127.0.0.1:2024 control\naddress.",
"is_bot": false,
"headline": "[workerd] per-tenant residents with per-project Envoy clusters (APO-796)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-08T23:12:32Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a30d1e9a4323752e5c59233a18319b325f69c125",
"body": "Add Server.WithEvents(store), which serves the upstream events.k8s.io/v1\nEvents API from a builder-constructed apiserver, backed by a persistent,\nwatchable StoreFn (e.g. kine) - the same seam as WithResourceAndStorage.\nCallers get LIST/GET/WATCH/CREATE/UPDATE/DELETE and the client-go events\nbroadcas\n[…]\nk-only (never aggregated into a host kube-apiserver).\n\nTo support the external-type path, defaultStrategy gains an optional\nnamespaceScoped override, used when there is no Object to derive scope from.",
"is_bot": false,
"headline": "[apiserver] add WithEvents to serve events.k8s.io/v1 from the builder",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-07T19:01:19Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "0758df91094cdbb1ce93828c92be2151b00baf88",
"body": "Add a router-agnostic PostHog analytics primitive shared by both consoles\n(apoxy-console and clrk-console). posthog-js is loaded lazily via dynamic\nimport so it stays off the initial bundle and never runs during SSR or tests.\n\nEvents are sent through our first-party e.apoxy.dev proxy (matching the\nm\n[…]\n $pageview on\nmount and on every location change; callers feed their router's current\nlocation, keeping core free of a router dependency. capturePageview and\ncaptureEvent are exported for one-off use.",
"is_bot": false,
"headline": "[console] add PostHog product analytics to console-core",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-07T18:49:41Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d47ab81694c704a440646e4c7279993d2aaccccb",
"body": null,
"is_bot": false,
"headline": "[ci] publish images to apoxy-dev public GAR instead of Docker Hub",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-07-07T00:43:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "72bd454c9bc179cbff30ea064e23dda75daf7c13",
"body": "Short payloads (under two lines) now render hatched filler rows above and\nbelow the content so a one-line body reads as a framed box rather than a\nlone cramped row, mirroring the design's CodeBlock minimum. JSON number\nliterals switch from amber to coral to match the production syntax palette\n(blue keys, leaf strings, coral numbers).",
"is_bot": false,
"headline": "[console-core] BodyBox: pad short bodies, coral number tint",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-28T03:45:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "39bf11d2e207fa06a7cf7be773aeb98515f05612",
"body": "Bump the box title to 16px and the size/content-type pills and toolbar/segment\nbuttons to 12px (the 10-11px chrome read as too small against the body), and add\ncursor: pointer to the buttons so they show the hand on hover.",
"is_bot": false,
"headline": "[console-core] BodyBox: larger toolbar type and pointer-cursor buttons",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-27T21:50:08Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0e2fbfd89a869ac367682d04bca79a422e03ed98",
"body": "Code-review follow-ups on the new BodyBox:\n- copy() falls back to execCommand for insecure (plain-http) contexts and only\n flashes \"Copied\" on an actual success; a rejected async write no longer goes\n unhandled.\n- size falls back to the text length when the caller's byte count is 0\n (unknown), so\n[…]\narger token (2024-06-27, 5xx) is no longer split-colored.\n- a size that rounds up to 1024 KiB rolls over to 1.0 MiB.\n- the fullscreen overlay no longer leaves a duplicate line table mounted behind it.",
"is_bot": false,
"headline": "[console-core] BodyBox: robust copy, byte-count + tint fixes",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-27T21:12:57Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d2added41e98c2796a1c4717e8177e7ca6ebce27",
"body": "…ewer\n\nThe span inspector renders captured request/response bodies, which run up to the\ngateway's body-capture cap (tens of KiB, thousands of lines). A flat <pre> is\nunreadable at that size. BodyBox gives line numbers, a fixed-height scroll, soft\nJSON tint, wrap/copy, and a fullscreen pop-out; streamed responses pass multiple\nviews (Decoded / Raw) and get a segmented selector.\n\nApp-agnostic (text in, no resource knowledge) so apoxy / clrk / cloud share it.",
"is_bot": false,
"headline": "[console-core] add BodyBox: capped, line-numbered request/response vi…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-27T20:33:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c6bd2bb707bc5cec895e30ca2041c7dd889a0ddc",
"body": "The tunnelproxy and relay QUIC servers loaded their TLS keypair once at\nstartup and never reloaded it. cert-manager rotates the mounted Secret in\nplace, but a long-lived process kept serving the leaf it loaded at boot;\nonce that leaf expired, every agent QUIC dial failed the TLS handshake\nuntil the \n[…]\nigrate the kube-controller apiserviceproxy cert-watcher\nonto the same package instead of keeping a parallel copy; it keeps its\nexisting apoxy_kube_controller_cert_* metric names via a Metrics adapter.",
"is_bot": false,
"headline": "[cert] hot-reload TLS server certs via shared pkg/cert/reload",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-27T19:33:22Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d25c878301e877520a14ec7a63696ad167a4dacc",
"body": "publish-images has failed on every push since 2026-06-17, all with\n\n npm error code EBADPLATFORM\n npm error notsup Unsupported platform for @cloudflare/workerd-linux-arm64:\n wanted {\"os\":\"linux\",\"cpu\":\"arm64\"} (current: {\"os\":\"linux\",\"cpu\":\"x64\"})\n\nbuildWorkerd extracts the prebuilt worke\n[…]\nnever executed here, so installing a foreign-arch package\nneeds no emulation. npm's --os/--cpu flags do not override the check for\na directly-named package (verified), so --force is the working lever.",
"is_bot": false,
"headline": "[ci] force-install cross-arch workerd prebuilt",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-26T04:36:53Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "cc8a2d5553ac5be683c020c00c52f7b468b387dd",
"body": "The hover crosshair landed ~zoom% left of the cursor in Safari, worsening\nwith x (e.g. 45-126px off across the plot at zoom 0.9), while Blink was\nfine. Root cause: the pointer was mapped through svg.getScreenCTM(), which\nthe two engines compute differently under an ancestor CSS `zoom`. Blink\nfolds t\n[…]\ned by zoom in WebKit, detected by whether the rect width\nstill carries the zoom) and invert. Verified pixel-truth in real WebKit\nand Blink: 126px -> <2px across a cursor sweep at 1600 and 2560 widths.",
"is_bot": false,
"headline": "[console-core] fix chart crosshair drift under CSS zoom in WebKit",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-25T22:17:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dfc03cd526f634bb7f942aab78eb986df21a96d4",
"body": "The crosshair line snapped to the nearest bucket center, so between buckets it\nsat up to half a bucket (~19px with hourly buckets over ~1000px) from the\ncursor -- it read as the line not tracking the mouse. Measured offset swung\n-19..+19px with mean ~0 (no coordinate error, pure snap).\n\nDraw the cro\n[…]\n at the exact (continuous) cursor x instead; only the\ndots and tooltip snap to the nearest data bucket. Verified with a DPR-2\nheadless sweep: crosshair-vs-cursor offset is now 0.0px at every position.",
"is_bot": false,
"headline": "[console-core] chart crosshair follows cursor exactly, not the bucket",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-25T21:44:33Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9b05d622cf864a3b91a3ede7aea9ff57049ce721",
"body": "The traffic chart sits under an app-root `zoom: 0.9`. useTooltipInPortal\nmounts the tooltip on document.body (outside the zoomed subtree) and offsets\nit by the container's painted rect, mixing zoomed and painted coordinate\nspaces; the box landed at the far-left edge, detached from the cursor.\n\nDrop \n[…]\n whichever side of the cursor has\nroom so a high or right-edge point can't clip it. Map the pointer with the\nsvg screen CTM (matrixTransform of the inverse), which folds in the ancestor\nzoom natively.",
"is_bot": false,
"headline": "[console-core] fix chart tooltip: render in-container, not a body portal",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-25T21:06:34Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5bd8b740e7abc142dc819fae216f9d2f6a143a45",
"body": "…e link\n\nTimeSeriesChart:\n- Render the hover tooltip in a portal (useTooltipInPortal) with bounds\n detection so a tall peak can't clip it off the top — it flips near the\n viewport edge instead. Fixes the tooltip showing only its last row on\n high points.\n- Map the pointer to a bucket explicitly o\n[…]\nuted) in both themes.\n\nSidebar: add an optional `home` link (SidebarLink) rendered above the\ngrouped resource nav, for a standalone Overview/dashboard entry the\nregistry can't express (it has no GVR).",
"is_bot": false,
"headline": "[console-core] fix chart tooltip occlusion/alignment; add Sidebar hom…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-25T20:37:04Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4cce84703b50e733047302bd66b273f7b489d3a8",
"body": "Add a shared, styled charting surface so consoles stop hand-rolling\nscaled-viewBox SVGs (which balloon axis fonts + strokes on wide monitors\nand at page zoom). Both render to real container pixels via visx, never a\nstretched coordinate space.\n\n- TimeSeriesChart: measured (ParentSize) line/area chart\n[…]\n fixed-size trend line, min/max normalized.\n\nvisx (@visx/responsive,scale,shape,group,tooltip,event) becomes a\nconsole-core dependency. Exported from the public surface; covered by a\njsdom smoke test.",
"is_bot": false,
"headline": "[console-core] add TimeSeriesChart + Sparkline visx chart primitives",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-25T20:08:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "54e4ec4277830fb366594462c0d853e254b44cc6",
"body": "…tenant\n\nThe workerd resident is per-tenant: one per backplane, scoped to the single\nproject its manager's kube client watches, reached over one fixed socket. The\nproject never needed to travel through Envoy or the demux key — the resident\nalready knows it. Remove it end to end:\n\n- translator stamps\n[…]\nange there. A load-bearing invariant note on the\nhook records that the bare-service key is safe only because the resident is\nper-tenant (a shared multi-project resident would need the qualifier back).",
"is_bot": false,
"headline": "[workerd] drop the project qualifier from the demux; resident is per-…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-23T06:46:40Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bae8f241438efc59ce0e8ead1fe362b5b45fba79",
"body": "The workerd route demux was implemented twice on the xDS side: the fork's\nin-tree hook (keyed on the backendRef IR marker) and a duplicate keyed on the\nEnvoy route name. The resident already owns revision and liveness demux via\n/resolve, so the xDS side needs no runtime routing state.\n\nMake the in-t\n[…]\nange loop, the manager's publish channel, and the\n--backplane_publish_addr/--node_id flags. The dev apiserver now passes\n--project_id so the stamped header matches the manager's /resolve key.\n\nAPO-816",
"is_bot": false,
"headline": "[workerd] collapse xDS demux to one stateless in-tree hook",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-23T01:45:51Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "2f566d9c4c6bce296bef08833712b21653f1d518",
"body": "Add a darwin-runnable plumbing proof that a worker's outbound dial to a\nnon-local destination is captured by the in-Sentry netstack: routed out\neth0, looped back via the production loopether link, stolen by the\ncatch-all egress forwarder, and bridged to a controlled upstream. A\nsecond subtest assert\n[…]\nthe inbound and egress\nproofs share the lo topology, and drop the //go:build linux tag from\nloopether.go (pure pkg/tcpip, no syscalls) so the test can use the real\nloop link on macOS as well as in CI.",
"is_bot": false,
"headline": "[sandbox] APO-815 egress capture netstack proof + shared loopback helper",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-22T21:10:37Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "022461686951fd668d89dd5d3adcfea45356ef35",
"body": "The qpack v0.5.1 replace guards the apoxy-dev/quic-go fork's http3 (v0.5.x\nqpack API). The old comment claimed \"the fork redirect below means clrk uses\nthe same quic-go+qpack pair we do\" -- false: a replace never propagates to a\ndownstream module, and this commit's lineage dropped clrk as an apoxy d\n[…]\nState the real rule (each consumer must carry its own qpack replace)\nso the next reader doesn't assume cross-repo alignment is automatic -- the\nexact assumption that left apoxy-cloud's qpack unpinned.",
"is_bot": false,
"headline": "[sandbox] correct the qpack-replace comment: replaces don't propagate",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-22T00:08:17Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "14d2f79bfe15432a488585ffb4dc911a8821aece",
"body": "Move the gVisor/runsc sandbox runtime core (pkg/sandbox +\npkg/sandbox/sentrystack) into apoxy and repoint the workerd host\n(pkg/workerd/host, cmd/workerd-*) at the now-in-tree package.\n\napoxy was already the primary consumer of this core (13 import sites vs\nclrk's single wrapper package) and is the \n[…]\nthe module\nboundary as the thin tenant/egress wrapper.\n\nThe package moves verbatim apart from self-import path rewrites; it carries\nno clrk or tenant coupling (deps are only ORAS, x/sync, and stdlib).",
"is_bot": false,
"headline": "[sandbox] adopt the tenant-neutral sandbox runtime core from clrk",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-21T20:47:53Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ae95f78dc196a823b1313fbeb6935ff83eae91ed",
"body": "…t Envoy)\n\nThe dispatcher reads x-apoxy-service: <project>:<service> and resolves the live\nrevision itself via a new manager GET /resolve endpoint (short-TTL cached,\nsingle-flight, serves last-known on a transient blip), instead of the xDS\ntranslators stamping the revision into the header. The revis\n[…]\npiserver/dev/dedicated xDS path): DemuxHeader\n now returns the 2-part service key and gates on non-empty membership, matching\n the apoxy-cloud backplane path so both translators agree on the header.",
"is_bot": false,
"headline": "[workerd] resolve the live revision in the resident (rollout-invarian…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-21T16:53:40Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dc90b643cbab760030e920fe992818dfa2b973e4",
"body": null,
"is_bot": false,
"headline": "[apoxy-console] use core ListenerGlyph and harden listener port parsing",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-21T01:10:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0b6b220c5fe1f745272575eb7c3156e7efede7e1",
"body": null,
"is_bot": false,
"headline": "[console-core] add @carbon/icons-react and shared ListenerGlyph",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-21T01:10:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f9619aac999fe84c5497ca52934b443c5c7be97f",
"body": null,
"is_bot": false,
"headline": "[console-core] use the design's Carbon glyphs in the YAML menu",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-20T05:09:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5204bc9ee461a03d2579355324c66d47d750c6ff",
"body": "…or gutter",
"is_bot": false,
"headline": "[console-core] bundle Everett/Inter/JetBrains fonts and fix YAML edit…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-20T05:09:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0cab6f7b461ac37bf8ffea8ccb6c46d3770450f2",
"body": null,
"is_bot": false,
"headline": "[console-core] add breadcrumb object-switcher to Breadcrumbs",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-20T01:41:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "dda32eb2ae484ac7e9a4a2f4a2365d7ef57dbad6",
"body": "Follow-up to the initial compute Service runtime that makes the echo demo\nserve end-to-end through the real `apoxy dev` docker/gVisor stack. Three\nstrands:\n\nPer-node readiness/publish refactor\n The resident reconciler is now read-only on the API: it keeps the resident\n up, warms each revision, and\n[…]\ne local registries for dev. The\n xds-translator re-translates on a workerd publish (the IR bus dedups by\n value, so a late publish needs a side-channel signal), gated on an actual\n snapshot change.",
"is_bot": false,
"headline": "[workerd] wire APO-796 compute Service end-to-end under apoxy dev",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-19T23:28:17Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "6de6a13c97a8c411f74739e2b6592b2c3d3a5775",
"body": "…hed YAML editor",
"is_bot": false,
"headline": "[console] add creation wizard, per-object actions, and read-only-matc…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-18T22:13:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "140e43478931f53758af882e98f1afb6159d613e",
"body": null,
"is_bot": false,
"headline": "[console] make gateway filter search rules and backends, not just routes",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-18T19:30:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e85d5589cd8cbe6151ceda08eb8d4c5282a83da0",
"body": "…route pips, apparent path",
"is_bot": false,
"headline": "[console] rework gateway miller to design: tabs above cards, search, …",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-18T19:12:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "12ab64c51f5fc0e284900e514280518accd14559",
"body": null,
"is_bot": false,
"headline": "[console] add gateway pages with reusable miller-column route browser",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-18T18:46:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3a033779ce1fe81bf3091a05e6e060eeb59caa20",
"body": "…ux, dev)\n\nIntroduce the compute.apoxy.dev Service runtime: one shared resident\nworkerd per backplane hosts many services/revisions as WorkerLoader\nisolates, demuxed by the x-apoxy-service header and isolated by\ngVisor/runsc.\n\n- host (pkg/workerd/host): static resident dispatcher config, the\n per-i\n[…]\nk\n @cloudflare/workerd npm prebuilt into a wolfi OCI image.\n- example: _examples/compute_echo + httproute_compute_echo.yaml.\n\nDepends on the clrk guest->host control forwarder; pin bumped to a4ce619.",
"is_bot": false,
"headline": "[workerd] add APO-796 compute Service runtime (resident, manager, dem…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-18T05:56:45Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8872f2eb0339c605766ff0ceca7b2822886c61cd",
"body": null,
"is_bot": false,
"headline": "[console] style the CodeMirror completion dropdown to the design",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T23:37:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7d5869aec7c2e2024aadee8aa03acf284d8d2ca7",
"body": null,
"is_bot": false,
"headline": "[console] add schema-driven completion to the CodeMirror YAML editor",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T23:26:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0a30d893db12e4814cae2d08d0b5958c0f3d7fb7",
"body": null,
"is_bot": false,
"headline": "[console] open the YAML tray with y on a focused list or detail row",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T23:26:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2fab4234f85fab60ee97363d62197f421970f40a",
"body": "…the palette",
"is_bot": false,
"headline": "[console] derive g-sequence shortcuts from the registry, shared with …",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T23:26:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "813a3433e4eb211feac459a021c546ad4af14a19",
"body": null,
"is_bot": false,
"headline": "[console] fix #root zoom overflow clipping the viewport",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T21:36:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "307afc5eab6bd0a3748468fe30500a4ef9e07195",
"body": null,
"is_bot": false,
"headline": "[ci] guard console resource-schemas against codegen drift",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T21:36:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "73538acd42588b15c4a9fbec8d78ecbb2b6fccbe",
"body": "…eate flow",
"is_bot": false,
"headline": "[console] complete M4 deferred items: CM6 editor, per-kind schema, cr…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T21:36:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b3f7af3a05a576f01041023f65725e7775a66d75",
"body": null,
"is_bot": false,
"headline": "[console] add view-authoring guide and skill",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T19:24:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6e423ad04c831fdf3e2e27b2f782e51141a8e971",
"body": null,
"is_bot": false,
"headline": "[console] rebuild chrome to CLRK design and fill viewport under zoom",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T19:24:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "76b8d6e10a8733ca6bf2a5f70ebeb1f50ca79596",
"body": null,
"is_bot": false,
"headline": "[console] address M4 review findings",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T18:06:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c834781ebef2f60a147b13228ab1b4b0a4100393",
"body": null,
"is_bot": false,
"headline": "[console] add M4 YAML tray, command palette and keyboard navigation",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T07:44:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b222846415803a2e1f47041d7398cae97ea00576",
"body": "clrk went public, so the default CI GITHUB_TOKEN can fetch it. Pass\n--github-token=env:GITHUB_TOKEN through to publish-images in both the\nmain and release workflows so PublishImages stops hitting the\nno-github-token branch and silently skipping the workerd-host build. The\nimage now publishes alongside apiserver/backplane/tunnelproxy.",
"is_bot": false,
"headline": "[ci] publish workerd-host image via default github token",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T07:04:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "24c887a1641f20f5ff91f32af1f4cabdf13af4ed",
"body": "…emory leak\n\ngo-socks5 proxies each CONNECT with two io.CopyBuffer goroutines and only\nreleases the connection (its 256KB buffer + fds) once BOTH finish. A peer that\nvanishes half-open (NAT idle-drop, client crash, no FIN) wedges a Read forever,\nleaking the connection, ~2 goroutines, and the buffer \n[…]\nring,\nactive-traffic-not-reaped including a one-directional-stream regression, shutdown\nreap, deadline math, and a gVisor gonet-upstream half-open test exercising the\nproduction conn type. Race-clean.",
"is_bot": false,
"headline": "[socksproxy] reap idle/half-open proxied connections to stop tunnel m…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T06:38:34Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b94c9098cad65d679d6385b6e2c3cca580d9a3fd",
"body": null,
"is_bot": false,
"headline": "[ci] repoint console schema drift gate to the app path",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T06:28:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f7216a38c3ed1b6fa9acf7060c4a3e0602eea2b7",
"body": "…derers",
"is_bot": false,
"headline": "[console] add M3 resource registry, discovery, chrome and generic ren…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T06:28:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "714c9edddd440444c04d42f620f2d6cec2504a3f",
"body": "The publish-edge-runtime-multiarch manifest step normally finishes in ~50s but\nspiked to 5m44s and tripped its tight timeout-minutes: 5 cap, failing the job\nand short-circuiting publish-images (which needs it) before it could build. Give\nthe registry manifest op generous headroom so transient slowness doesn't gate\nthe whole image pipeline.",
"is_bot": false,
"headline": "[ci] raise edge-runtime multi-arch manifest timeout 5m -> 20m",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-17T05:59:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f00fc77702647154cbf541193e5a9941554b3249",
"body": "The clrk dependency pins ch-go v0.72.0, whose compress.NewWriter(Level, Method)\nsignature is incompatible with the stale clickhouse-go/v2 v2.23.2 that called it\nwith no args -- breaking the image build (publish-images) with \"not enough\narguments in call to compress.NewWriter\". apoxy-cli only compile\n[…]\n so move clickhouse-go\nforward to the current line that uses the new API rather than force ch-go back.\nNo apoxy-cli code changes; pulls benign minor bumps (docker v28.5.2, brotli\nv1.2.0, orb v0.12.0).",
"is_bot": false,
"headline": "[deps] bump clickhouse-go to v2.46.0 to match ch-go v0.72.0",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T22:54:22Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "517f5e46f907a1986c58dd779f48a3f8dfb1b397",
"body": null,
"is_bot": false,
"headline": "[ci] daggerize console build, test and codegen-drift checks",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T21:25:09Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9c35e7bb406bee66e5cdd1a94808067179237557",
"body": null,
"is_bot": false,
"headline": "[console] add M2 generic client, WatchManager and React hooks",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T21:25:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f1b1eafdf0f6817a74318a557755a1bb92073239",
"body": null,
"is_bot": false,
"headline": "[console] drop ADR references from comments and docs",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T21:24:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4c0859d43d37746341d3eddd51fb3b5e8cbd6ade",
"body": "buildSpec now sets Spec.InboundListenAddr (derived from the HTTP socket's port\nas 127.0.0.1:<port>) so the clrk sandbox core opens a host AF_UNIX socket\nfronting the in-Sentry worker and installs its inbound forwarder. The opened\nsocket path lands on Instance.InboundSocket, which startResident surfa\n[…]\nt asserts the derived InboundListenAddr and that InboundSocket is\nsurfaced for an HTTP-socket resident; the gated acceptance test now drives a\nreal unix-socket HTTP GET through the sandbox end to end.",
"is_bot": false,
"headline": "[workerd-host] wire APO-694 ingress to the resident worker socket",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:57:34Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b4001835da11e4095953fe8851f49eb49df7dc17",
"body": "The workerd-host ingress wiring needs sandbox.Spec.InboundListenAddr and\nsandbox.Instance.InboundSocket, added in clrk c5f7cd3 ([sandbox] add\ntenant-neutral inbound forwarder, APO-694). Pin past aff0985 so pkg/workerd/host\ncompiles. clrk-only go.sum churn; no other dependency moved.",
"is_bot": false,
"headline": "[deps] bump clrk to c5f7cd3 for the inbound sandbox surface",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:57:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "91a5ab5ca92b7e5c7d7b780f5f0f271765a81566",
"body": null,
"is_bot": false,
"headline": "[console] make app typecheck self-generate the route tree",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a85f96d71b3d7a51e38e053c319b3317349828bc",
"body": null,
"is_bot": false,
"headline": "[ci] add console build and codegen drift check to PR workflow",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3bd714c1c861569c3f440ead1a6b85bbfe1c5050",
"body": "… and codegen",
"is_bot": false,
"headline": "[console] scaffold pnpm workspace with toolchain, tokens, primitives,…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bfbb57ef9f951a278dd1050c8107cd51bbfa9ee8",
"body": null,
"is_bot": false,
"headline": "[openapi-dump] add command to render apiserver OpenAPI spec offline",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a8f9350cd262f17786bdee46307b312bc3628c93",
"body": "…(625-e)\n\nThe serve loop (run.go) and make-before-break reload (Runtime.Ensure) already\nexist and are unit-tested; this fills in the rest of 625-e.\n\n- Surface Resident.SandboxIP, captured from the created sandbox Instance, so\n callers (the lifecycle owner APO-796, and the isolation assertion below)\n[…]\nress/IMDS/DNS). Reaching a backend-mode worker needs\na host->sandbox ingress forwarder, which is APO-628 (the Envoy upstream data\npath), not APO-625. The acceptance test marks that exact unskip point.",
"is_bot": false,
"headline": "[workerd-host] surface resident SandboxIP + gated acceptance harness …",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "1e24151fc61063e36f19e174fd0d5c3b50a09321",
"body": "Add a dagger function that builds the workerd-host OCI image: a static\n(CGO_ENABLED=0) linux binary on a chainguard wolfi-base — a real rootfs the\ngVisor Sentry chroot needs for /etc/localtime — with /bin/workerd-host as the\nentrypoint and runsc re-exec target. apoxy-cli has no Bazel, so this mirror\n[…]\n call build-workerd-host --platform=linux/amd64`\nfetches the pinned clrk, compiles the full sandbox/runsc/sentrystack import\ntree, and exports a static linux x86-64 ELF from the assembled wolfi image.",
"is_bot": false,
"headline": "[workerd-host] add BuildWorkerdHost dagger image + publish step (625-d)",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8ee02a25ecaad4278f1d1e69c91b64bcde182a84",
"body": "…625-a/c)\n\nAdd cmd/workerd-host and pkg/workerd/host: a thin policy layer over clrk's\nextracted pkg/sandbox.Runtime that runs stock workerd in a gVisor/runsc jail\nand serves fetch over an HTTP socket (M1 backend mode, APO-625).\n\n- runtime.go: per-tenant resident lifecycle with make-before-break relo\n[…]\n build, linux build of netstack/tunnel/http3\n/workerd-host, host unit tests, and go mod verify all green.\n\nThe dagger OCI image (625-d) and privileged gVisor acceptance test (625-e)\nare still pending.",
"is_bot": false,
"headline": "[workerd-host] add gVisor sandbox runtime wrapper + binary scaffold (…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c24de7f35bb0706bed316b6b268f7f0136dc0136",
"body": "…clrk pin\n\nFirst slice of the APO-625 workerd runtime container: a pure, deterministic BundleManifest -> textual workerd capnp config builder (pkg/workerd/host) reusing the api/compute/v1alpha1 Service/Bundle types. Maps modules (esModule/commonJsModule/text/data/json/wasm) to workerd's module union\n[…]\n2 commit to clrk's May-19 commit (5d6cfb0), which the next slice's clrk/pkg/sandbox import requires. pkg/netstack and pkg/tunnel build green against it on darwin and GOOS=linux.\n\nRefs APO-625 (625-b).",
"is_bot": false,
"headline": "[workerd-host] add workerd capnp config builder; bump gvisor fork to …",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "0d57bd42459a34cd96551bfcba721770903da48c",
"body": "…-2.0\n\nReplace the Business Source License 1.1 with the GNU AGPL v3.0-only as the repository license, carving out api/ and client/ — the API type definitions and the generated Kubernetes client — under Apache-2.0 so the SDK surface integrators import imposes no copyleft obligations.\n\nBoth directorie\n[…]\ns Apache-2.0, so regeneration preserves the carve. LICENSING.md documents the split; the root + per-directory LICENSE files are the load-bearing mechanism, with a per-file SPDX header sweep to follow.",
"is_bot": false,
"headline": "[license] relicense apoxy-cli to AGPL-3.0; keep api/ + client/ Apache…",
"author_name": "Dmitry Ilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T17:49:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d2e74a17b2efd7d64c9587d7adb932902fa68e42",
"body": "…with auto_sni (#88)\n\n## What\n\nForward-ports the dynamic forward proxy (DFP) improvements that shipped\non the `v0.11.x` release line to `main` — **correct from the start**:\n\n- **Speak HTTP/2 upstream** for `h2`/`h2c` Backends by emitting\n`HttpProtocolOptions` on the `dynamic_forward_proxy` cluster (\n[…]\ner output is unchanged. Proven red without the fix,\ngreen with it.\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "[gateway] forward-port dynamic forward proxy h2/h2c upstream support …",
"author_name": "dilyevsky",
"author_login": "dilyevsky",
"committed_at": "2026-06-16T07:36:52Z",
"body_truncated": true,
"is_coding_agent": true
}
],
"releases_count": 83,
"commits_last_year": 495,
"latest_release_at": "2026-07-16T19:44:42Z",
"latest_release_tag": "v0.11.25",
"releases_from_tags": false,
"days_since_last_push": 0,
"active_weeks_last_year": 49,
"days_since_latest_release": 6,
"mean_days_between_releases": 11.9
},
"community": {
"has_readme": false,
"has_license": true,
"has_description": true,
"has_contributing": false,
"health_percentage": 25,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "github.com/apoxy-dev/apoxy",
"exists": true,
"license": null,
"keywords": [],
"ecosystem": "go",
"matches_repo": true,
"registry_url": "https://pkg.go.dev/github.com/apoxy-dev/apoxy",
"is_deprecated": false,
"latest_version": "v0.20.0",
"repository_url": "https://github.com/apoxy-dev/apoxy",
"versions_count": 128,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": null,
"first_published_at": null,
"latest_published_at": "2026-05-13T20:45:14Z",
"latest_version_yanked": null,
"days_since_latest_publish": 70
}
]
},
"popularity": {
"forks": 2,
"stars": 11,
"watchers": 2,
"fork_history": {
"days": [
{
"date": "2025-07-26",
"count": 1
},
{
"date": "2026-07-08",
"count": 1
}
],
"complete": true,
"collected": 2,
"total_forks": 2
},
"star_history": null,
"open_issues_and_prs": 1
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [
"api/workerd/v1/egress.proto",
"api/workerd/v1/vpcdns.proto",
"console/openapi.json"
],
"has_devcontainer": false,
"typecheck_configs": [
"console/apps/apoxy-console/tsconfig.json",
"console/packages/core/tsconfig.json"
],
"toolchain_manifests": [
"ci/go.mod",
"go.mod"
],
"largest_source_bytes": 982171,
"source_files_sampled": 1075,
"oversized_source_files": 5,
"agent_instruction_files": [
"CLAUDE.md"
],
"agent_instruction_max_bytes": 7921
},
"dependencies": {
"manifests": [
"ci/go.mod",
"console/package.json",
"go.mod"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [
{
"name": "github.com/envoyproxy/gateway",
"direct": true,
"version": "v1.4.0",
"severity": "critical",
"ecosystem": "go",
"cvss_score": 9.1,
"advisory_ids": [
"GHSA-22xc-xg2r-9j7v",
"GHSA-8fv2-88gg-hm7q",
"GHSA-cxpq-8v7q-cg56",
"GHSA-fcrp-7gc2-93g7",
"GHSA-h7pq-86h8-rp5x",
"GHSA-m2v6-2jmh-4c68",
"GHSA-wcrf-9vrr-854f",
"GHSA-xrwg-mqj6-6m22",
"GO-2026-4312",
"GO-2026-6003"
],
"fixed_version": "1.8.1",
"advisory_count": 16,
"oldest_advisory_days": 190
},
{
"name": "golang.org/x/crypto",
"direct": true,
"version": "v0.51.0",
"severity": "critical",
"ecosystem": "go",
"cvss_score": 10,
"advisory_ids": [
"GHSA-45gg-vh54-h5m9",
"GHSA-5cgq-3rg8-m6cv",
"GHSA-78mq-xcr3-xm33",
"GHSA-89gr-r52h-f8rx",
"GHSA-9m57-25v3-79x9",
"GHSA-f5wc-c3c7-36mc",
"GHSA-jppx-rxg9-jmrx",
"GHSA-q4h4-gmj2-qvw2",
"GHSA-qpw4-5x99-6vjp",
"GHSA-rm3j-f69w-wqmq"
],
"fixed_version": "0.52.0",
"advisory_count": 27,
"oldest_advisory_days": 62
},
{
"name": "google.golang.org/grpc",
"direct": true,
"version": "v1.76.0",
"severity": "critical",
"ecosystem": "go",
"cvss_score": 9.1,
"advisory_ids": [
"GHSA-hrxh-6v49-42gf",
"GHSA-p77j-4mvh-x3m3",
"GO-2026-4762"
],
"fixed_version": "1.82.1",
"advisory_count": 3,
"oldest_advisory_days": 126
},
{
"name": "google.golang.org/grpc",
"direct": true,
"version": "v1.80.0",
"severity": "critical",
"ecosystem": "go",
"cvss_score": 9.1,
"advisory_ids": [
"GHSA-hrxh-6v49-42gf"
],
"fixed_version": "1.82.1",
"advisory_count": 1,
"oldest_advisory_days": 1
},
{
"name": "github.com/coredns/coredns",
"direct": true,
"version": "v1.11.3",
"severity": "high",
"ecosystem": "go",
"cvss_score": 7.7,
"advisory_ids": [
"GHSA-2wpx-qpw2-g5h5",
"GHSA-527x-5wrf-22m2",
"GHSA-63cw-r7xf-jmwr",
"GHSA-93mf-426m-g6x9",
"GHSA-c9v3-4pv7-87pr",
"GHSA-cvx7-x8pj-x2gw",
"GHSA-h75p-j8xm-m278",
"GHSA-h8mm-c463-wjq3",
"GHSA-qhmp-q7xh-99rh",
"GHSA-vp29-5652-4fw9"
],
"fixed_version": "1.14.3",
"advisory_count": 20,
"oldest_advisory_days": 411
},
{
"name": "github.com/docker/docker",
"direct": true,
"version": "v28.5.2+incompatible",
"severity": "high",
"ecosystem": "go",
"cvss_score": 8.8,
"advisory_ids": [
"GHSA-pxq6-2prw-chj9",
"GHSA-rg2x-37c3-w2rh",
"GHSA-vp62-88p7-qqf5",
"GHSA-x744-4wpc-v9h2",
"GHSA-x86f-5xw2-fm2r",
"GO-2026-4883",
"GO-2026-4887",
"GO-2026-5617",
"GO-2026-5668",
"GO-2026-5746"
],
"fixed_version": "29.3.1",
"advisory_count": 10,
"oldest_advisory_days": 117
},
{
"name": "github.com/golang-jwt/jwt",
"direct": true,
"version": "v3.2.2+incompatible",
"severity": "high",
"ecosystem": "go",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-mh63-6h87-95cp",
"GO-2025-3553"
],
"fixed_version": "5.2.2",
"advisory_count": 2,
"oldest_advisory_days": 488
},
{
"name": "go.opentelemetry.io/otel",
"direct": true,
"version": "v1.38.0",
"severity": "high",
"ecosystem": "go",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-mh2q-q3fh-2475"
],
"fixed_version": "1.41.0",
"advisory_count": 1,
"oldest_advisory_days": 106
},
{
"name": "go.opentelemetry.io/otel/sdk",
"direct": true,
"version": "v1.38.0",
"severity": "high",
"ecosystem": "go",
"cvss_score": 7,
"advisory_ids": [
"GHSA-9h8m-3fm2-qjrq",
"GHSA-hfvc-g4fc-pqhx",
"GO-2026-4394"
],
"fixed_version": "1.43.0",
"advisory_count": 3,
"oldest_advisory_days": 170
},
{
"name": "oras.land/oras-go/v2",
"direct": true,
"version": "v2.6.0",
"severity": "high",
"ecosystem": "go",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-8xwf-rjm4-xvhv",
"GHSA-fxhp-mv3v-67qp",
"GHSA-jxpm-75mh-9fp7",
"GHSA-vh4v-2xq2-g5cg",
"GHSA-xf85-363p-868w"
],
"fixed_version": "2.6.1",
"advisory_count": 5,
"oldest_advisory_days": 21
},
{
"name": "github.com/apache/thrift",
"direct": false,
"version": "v0.20.0",
"severity": "high",
"ecosystem": "go",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-wf45-q9ch-q8gh"
],
"fixed_version": "0.23.0",
"advisory_count": 1,
"oldest_advisory_days": 85
},
{
"name": "github.com/expr-lang/expr",
"direct": false,
"version": "v1.17.6",
"severity": "high",
"ecosystem": "go",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-cfpf-hrx2-8rv6",
"GO-2025-4245"
],
"fixed_version": "1.17.7",
"advisory_count": 2,
"oldest_advisory_days": 218
},
{
"name": "github.com/opencontainers/selinux",
"direct": false,
"version": "v1.11.1",
"severity": "high",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GHSA-cgrx-mc8f-2prm",
"GO-2025-4098"
],
"fixed_version": "1.13.0",
"advisory_count": 2,
"oldest_advisory_days": 259
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp",
"direct": true,
"version": "v1.38.0",
"severity": "moderate",
"ecosystem": "go",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-w8rr-5gcm-pp58",
"GO-2026-4985"
],
"fixed_version": "1.43.0",
"advisory_count": 2,
"oldest_advisory_days": 105
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp",
"direct": true,
"version": "v1.38.0",
"severity": "moderate",
"ecosystem": "go",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-w8rr-5gcm-pp58",
"GO-2026-4985"
],
"fixed_version": "1.43.0",
"advisory_count": 2,
"oldest_advisory_days": 105
},
{
"name": "golang.org/x/net",
"direct": true,
"version": "v0.44.0",
"severity": "moderate",
"ecosystem": "go",
"cvss_score": 6.5,
"advisory_ids": [
"GHSA-5cv4-jp36-h3mw",
"GO-2026-4440",
"GO-2026-4441",
"GO-2026-4918",
"GO-2026-5025",
"GO-2026-5026",
"GO-2026-5027",
"GO-2026-5028",
"GO-2026-5029",
"GO-2026-5030"
],
"fixed_version": "1.26.3",
"advisory_count": 11,
"oldest_advisory_days": 167
},
{
"name": "golang.org/x/net",
"direct": true,
"version": "v0.54.0",
"severity": "moderate",
"ecosystem": "go",
"cvss_score": 6.5,
"advisory_ids": [
"GHSA-5cv4-jp36-h3mw",
"GO-2026-5025",
"GO-2026-5026",
"GO-2026-5027",
"GO-2026-5028",
"GO-2026-5029",
"GO-2026-5030",
"GO-2026-5942"
],
"fixed_version": "0.56.0",
"advisory_count": 8,
"oldest_advisory_days": 62
},
{
"name": "github.com/opencontainers/runc",
"direct": true,
"version": "v1.2.5",
"severity": "low",
"ecosystem": "go",
"cvss_score": 3.3,
"advisory_ids": [
"GHSA-9493-h29p-rfm2",
"GHSA-cgrx-mc8f-2prm",
"GHSA-qw9x-cqr3-wc7r",
"GHSA-xjvp-4fhw-gc47",
"GO-2025-4096",
"GO-2025-4097",
"GO-2025-4098",
"GO-2026-5761"
],
"fixed_version": "1.13.0",
"advisory_count": 8,
"oldest_advisory_days": 259
},
{
"name": "go.temporal.io/api",
"direct": true,
"version": "v1.29.2",
"severity": "low",
"ecosystem": "go",
"cvss_score": 3.3,
"advisory_ids": [
"GHSA-q9w6-cwj4-gf4p",
"GO-2025-3462"
],
"fixed_version": "1.44.1",
"advisory_count": 2,
"oldest_advisory_days": 526
},
{
"name": "filippo.io/edwards25519",
"direct": false,
"version": "v1.1.0",
"severity": "low",
"ecosystem": "go",
"cvss_score": 3.7,
"advisory_ids": [
"GHSA-fw7p-63qq-7hpr",
"GO-2026-4503"
],
"fixed_version": "1.1.1",
"advisory_count": 2,
"oldest_advisory_days": 155
},
{
"name": "golang.org/x/sys",
"direct": true,
"version": "v0.36.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5024"
],
"fixed_version": "0.44.0",
"advisory_count": 1,
"oldest_advisory_days": 61
},
{
"name": "k8s.io/kubernetes",
"direct": true,
"version": "v1.34.4",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2025-3521",
"GO-2025-3547"
],
"fixed_version": null,
"advisory_count": 2,
"oldest_advisory_days": 484
},
{
"name": "brace-expansion",
"direct": false,
"version": "2.1.1",
"severity": "unknown",
"ecosystem": "npm",
"cvss_score": null,
"advisory_ids": [
"GHSA-3jxr-9vmj-r5cp"
],
"fixed_version": null,
"advisory_count": 1,
"oldest_advisory_days": null
},
{
"name": "dompurify",
"direct": false,
"version": "3.4.11",
"severity": "unknown",
"ecosystem": "npm",
"cvss_score": null,
"advisory_ids": [
"GHSA-c2j3-45gr-mqc4"
],
"fixed_version": null,
"advisory_count": 1,
"oldest_advisory_days": null
},
{
"name": "github.com/aws/aws-sdk-go",
"direct": false,
"version": "v1.55.5",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2022-0635",
"GO-2022-0646"
],
"fixed_version": null,
"advisory_count": 2,
"oldest_advisory_days": 1622
},
{
"name": "github.com/go-jose/go-jose/v4",
"direct": false,
"version": "v4.1.3",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GHSA-78h2-9frx-2jm8",
"GO-2026-4945"
],
"fixed_version": null,
"advisory_count": 2,
"oldest_advisory_days": null
},
{
"name": "github.com/jackc/pgx/v5",
"direct": false,
"version": "v5.8.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GHSA-9jj7-4m8r-rfcm",
"GHSA-j88v-2chj-qfwx",
"GHSA-xgrm-4fwx-7qm8",
"GO-2026-4771",
"GO-2026-4772",
"GO-2026-5004"
],
"fixed_version": null,
"advisory_count": 6,
"oldest_advisory_days": null
},
{
"name": "github.com/nats-io/nats-server/v2",
"direct": false,
"version": "v2.12.2",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GHSA-3f24-pcvm-5jqc",
"GHSA-52jh-2xxh-pwh6",
"GHSA-55h8-8g96-x4hj",
"GHSA-8m2x-3m6q-6w8j",
"GHSA-8r68-gvr4-jh7j",
"GHSA-9983-vrx2-fg9c",
"GHSA-fcjp-h8cc-6879",
"GHSA-jxxm-27vp-c3m5",
"GHSA-pq2q-rcw4-3hr6",
"GHSA-pwx7-fx9r-hr4h"
],
"fixed_version": null,
"advisory_count": 28,
"oldest_advisory_days": null
},
{
"name": "go.mongodb.org/mongo-driver",
"direct": false,
"version": "v1.17.4",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GHSA-cp6g-7hqx-qxhp"
],
"fixed_version": null,
"advisory_count": 1,
"oldest_advisory_days": null
},
{
"name": "go.temporal.io/server",
"direct": false,
"version": "v1.23.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GHSA-hmhp-gh8m-c8xp",
"GHSA-p768-c3pr-6459",
"GHSA-q98v-9f9w-f49q",
"GHSA-xpg8-3hhp-p7w8",
"GO-2025-3953",
"GO-2026-4273",
"GO-2026-5578",
"GO-2026-5766"
],
"fixed_version": null,
"advisory_count": 8,
"oldest_advisory_days": null
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.29.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5970"
],
"fixed_version": null,
"advisory_count": 1,
"oldest_advisory_days": null
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.37.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5970"
],
"fixed_version": null,
"advisory_count": 1,
"oldest_advisory_days": null
},
{
"name": "gopkg.in/square/go-jose.v2",
"direct": false,
"version": "v2.6.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GHSA-c5q2-7r4c-mv6g",
"GO-2024-2631"
],
"fixed_version": null,
"advisory_count": 2,
"oldest_advisory_days": null
},
{
"name": "js-yaml",
"direct": false,
"version": "4.1.1",
"severity": "unknown",
"ecosystem": "npm",
"cvss_score": null,
"advisory_ids": [
"GHSA-52cp-r559-cp3m",
"GHSA-h67p-54hq-rp68"
],
"fixed_version": null,
"advisory_count": 2,
"oldest_advisory_days": null
}
],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {
"low": 3,
"high": 9,
"unknown": 14,
"critical": 4,
"moderate": 4
},
"advisory_count": 186,
"affected_count": 34,
"assessed_count": 881,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 36,
"direct_affected_count": 18
},
"ecosystems": [
"go",
"npm"
],
"dependencies": [
{
"name": "github.com/99designs/gqlgen",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.17.81"
},
{
"name": "github.com/Khan/genqlient",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.8.1"
},
{
"name": "github.com/containerd/platforms",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.2.1"
},
{
"name": "github.com/vektah/gqlparser/v2",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v2.5.30"
},
{
"name": "go.opentelemetry.io/otel",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploggrpc",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.0"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlplog/otlploghttp",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.0"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/log",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.0"
},
{
"name": "go.opentelemetry.io/otel/metric",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/sdk",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/sdk/log",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.0"
},
{
"name": "go.opentelemetry.io/otel/sdk/metric",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/otel/trace",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.38.0"
},
{
"name": "go.opentelemetry.io/proto/otlp",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.8.0"
},
{
"name": "golang.org/x/sync",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v0.17.0"
},
{
"name": "google.golang.org/grpc",
"manifest": "ci/go.mod",
"ecosystem": "go",
"version_constraint": "v1.76.0"
},
{
"name": "github.com/ClickHouse/clickhouse-go/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.46.0"
},
{
"name": "github.com/MicahParks/jwkset",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.9.6"
},
{
"name": "github.com/MicahParks/keyfunc/v3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.6.1"
},
{
"name": "github.com/adrg/xdg",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.5.3"
},
{
"name": "github.com/alphadose/haxmap",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.4.1"
},
{
"name": "github.com/anatol/vmtest",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20250318022921-2f32244e2f0f"
},
{
"name": "github.com/apoxy-dev/icx",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.19.0"
},
{
"name": "github.com/avast/retry-go/v4",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v4.6.1"
},
{
"name": "github.com/bramvdbogaerde/go-scp",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.5.0"
},
{
"name": "github.com/buraksezer/olric",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.5.6"
},
{
"name": "github.com/charmbracelet/bubbles",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.21.0"
},
{
"name": "github.com/charmbracelet/bubbletea",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.3.10"
},
{
"name": "github.com/charmbracelet/lipgloss",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.1.0"
},
{
"name": "github.com/cncf/xds/go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20251210132809-ee656c7534f5"
},
{
"name": "github.com/coder/websocket",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.8.12"
},
{
"name": "github.com/coredns/coredns",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.11.3"
},
{
"name": "github.com/coreos/go-iptables",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.8.0"
},
{
"name": "github.com/dgraph-io/badger/v4",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v4.5.0"
},
{
"name": "github.com/docker/docker",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v28.5.2+incompatible"
},
{
"name": "github.com/dpeckett/contextio",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.5.1"
},
{
"name": "github.com/dpeckett/network",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.5.0"
},
{
"name": "github.com/envoyproxy/gateway",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.4.0"
},
{
"name": "github.com/envoyproxy/go-control-plane",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.0"
},
{
"name": "github.com/envoyproxy/go-control-plane/contrib",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.32.5-0.20250408134212-157c26b62099"
},
{
"name": "github.com/envoyproxy/go-control-plane/envoy",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.37.0"
},
{
"name": "github.com/envoyproxy/go-control-plane/ratelimit",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.1.0"
},
{
"name": "github.com/envoyproxy/ratelimit",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.4.1-0.20230427142404-e2a87f41d3a7"
},
{
"name": "github.com/evanw/esbuild",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.28.1"
},
{
"name": "github.com/extism/go-sdk",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.3.0"
},
{
"name": "github.com/fsnotify/fsnotify",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.9.0"
},
{
"name": "github.com/getsavvyinc/upgrade-cli",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.3.0"
},
{
"name": "github.com/getsentry/sentry-go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.26.0"
},
{
"name": "github.com/go-logr/logr",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.4.3"
},
{
"name": "github.com/go-logr/stdr",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.2"
},
{
"name": "github.com/goccy/go-json",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.9.11"
},
{
"name": "github.com/golang-jwt/jwt",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.2.2+incompatible"
},
{
"name": "github.com/golang-jwt/jwt/v5",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v5.3.0"
},
{
"name": "github.com/golang-migrate/migrate/v4",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v4.17.1"
},
{
"name": "github.com/golang/protobuf",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.5.4"
},
{
"name": "github.com/google/go-cmp",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.7.0"
},
{
"name": "github.com/google/go-containerregistry",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.21.6"
},
{
"name": "github.com/google/go-github/v61",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v61.0.0"
},
{
"name": "github.com/google/gopacket",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.1.19"
},
{
"name": "github.com/google/uuid",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.6.0"
},
{
"name": "github.com/hashicorp/go-discover",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20240726212017-342faf50e5d4"
},
{
"name": "github.com/hashicorp/go-version",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.8.0"
},
{
"name": "github.com/hashicorp/golang-lru/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.0.7"
},
{
"name": "github.com/jedib0t/go-pretty/v6",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v6.6.8"
},
{
"name": "github.com/julienschmidt/httprouter",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.3.0"
},
{
"name": "github.com/k3s-io/kine",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.11"
},
{
"name": "github.com/kdomanski/iso9660",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.4.0"
},
{
"name": "github.com/klauspost/cpuid/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.2.10"
},
{
"name": "github.com/mattn/go-runewidth",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.16"
},
{
"name": "github.com/mattn/go-sqlite3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.14.42"
},
{
"name": "github.com/metal-stack/go-ipam",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.14.12"
},
{
"name": "github.com/miekg/dns",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.1.65"
},
{
"name": "github.com/mitchellh/mapstructure",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.5.0"
},
{
"name": "github.com/muesli/ansi",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20230316100256-276c6243b2f6"
},
{
"name": "github.com/opencontainers/go-digest",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.0.0"
},
{
"name": "github.com/opencontainers/image-spec",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.1.1"
},
{
"name": "github.com/opencontainers/runc",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.5"
},
{
"name": "github.com/opencontainers/runtime-spec",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.2.1"
},
{
"name": "github.com/phemmer/go-iptrie",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20240326174613-ba542f5282c9"
},
{
"name": "github.com/pkg/browser",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20240102092130-5ac0b6a4141c"
},
{
"name": "github.com/prometheus/client_golang",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.23.2"
},
{
"name": "github.com/prometheus/client_model",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.6.2"
},
{
"name": "github.com/prometheus/common",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.67.5"
},
{
"name": "github.com/quic-go/connect-ip-go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20241112091351-321f13c3d203"
},
{
"name": "github.com/quic-go/quic-go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.59.1"
},
{
"name": "github.com/shirou/gopsutil",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.21.11+incompatible"
},
{
"name": "github.com/sirupsen/logrus",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.9.4"
},
{
"name": "github.com/spf13/cobra",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.10.2"
},
{
"name": "github.com/stretchr/testify",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.11.1"
},
{
"name": "github.com/telepresenceio/watchable",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20220726211108-9bb86f92afa7"
},
{
"name": "github.com/temporalio/cli",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.12.0"
},
{
"name": "github.com/tetratelabs/wazero",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.8.2"
},
{
"name": "github.com/things-go/go-socks5",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.5"
},
{
"name": "github.com/vishvananda/netlink",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.3.1"
},
{
"name": "github.com/vishvananda/netns",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.5"
},
{
"name": "github.com/vmihailenco/msgpack",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v4.0.4+incompatible"
},
{
"name": "github.com/yosida95/uritemplate/v3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.0.2"
},
{
"name": "go.opentelemetry.io/proto/otlp",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.10.0"
},
{
"name": "go.temporal.io/api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.29.2"
},
{
"name": "go.temporal.io/sdk",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.26.0"
},
{
"name": "golang.org/x/crypto",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.51.0"
},
{
"name": "golang.org/x/exp",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20250911091902-df9299821621"
},
{
"name": "golang.org/x/net",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.54.0"
},
{
"name": "golang.org/x/sync",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.20.0"
},
{
"name": "golang.org/x/sys",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.45.0"
},
{
"name": "golang.org/x/term",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.43.0"
},
{
"name": "golang.org/x/time",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.14.0"
},
{
"name": "golang.org/x/tools",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.45.0"
},
{
"name": "golang.zx2c4.com/wireguard",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20231211153847-12269c276173"
},
{
"name": "google.golang.org/grpc",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.80.0"
},
{
"name": "google.golang.org/protobuf",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.36.11"
},
{
"name": "gopkg.in/yaml.v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.4.0"
},
{
"name": "gopkg.in/yaml.v3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.0.1"
},
{
"name": "gvisor.dev/gvisor",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20260421223920-580553b31b48"
},
{
"name": "k8s.io/api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.34.3"
},
{
"name": "k8s.io/apimachinery",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.34.3"
},
{
"name": "k8s.io/apiserver",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.34.3"
},
{
"name": "k8s.io/cli-runtime",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.34.3"
},
{
"name": "k8s.io/client-go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.34.3"
},
{
"name": "k8s.io/component-base",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.34.3"
},
{
"name": "k8s.io/klog/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.130.1"
},
{
"name": "k8s.io/kube-aggregator",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.34.3"
},
{
"name": "k8s.io/kube-openapi",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20250710124328-f3f2b991d03b"
},
{
"name": "k8s.io/kubernetes",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.34.4"
},
{
"name": "k8s.io/utils",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20251002143259-bc988d571ff4"
},
{
"name": "oras.land/oras-go/v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.6.0"
},
{
"name": "sigs.k8s.io/controller-runtime",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.22.5"
},
{
"name": "sigs.k8s.io/gateway-api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.3.0"
},
{
"name": "sigs.k8s.io/mcs-api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.1.0"
},
{
"name": "sigs.k8s.io/yaml",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.6.0"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "github.com/99designs/gqlgen",
"direct": true,
"version": "v0.17.81",
"ecosystem": "go"
},
{
"name": "github.com/adrg/xdg",
"direct": true,
"version": "v0.5.3",
"ecosystem": "go"
},
{
"name": "github.com/alphadose/haxmap",
"direct": true,
"version": "v1.4.1",
"ecosystem": "go"
},
{
"name": "github.com/anatol/vmtest",
"direct": true,
"version": "v0.0.0-20250318022921-2f32244e2f0f",
"ecosystem": "go"
},
{
"name": "github.com/apoxy-dev/icx",
"direct": true,
"version": "v0.19.0",
"ecosystem": "go"
},
{
"name": "github.com/avast/retry-go/v4",
"direct": true,
"version": "v4.6.1",
"ecosystem": "go"
},
{
"name": "github.com/bramvdbogaerde/go-scp",
"direct": true,
"version": "v1.5.0",
"ecosystem": "go"
},
{
"name": "github.com/buraksezer/olric",
"direct": true,
"version": "v0.5.6",
"ecosystem": "go"
},
{
"name": "github.com/charmbracelet/bubbles",
"direct": true,
"version": "v0.21.0",
"ecosystem": "go"
},
{
"name": "github.com/charmbracelet/bubbletea",
"direct": true,
"version": "v1.3.10",
"ecosystem": "go"
},
{
"name": "github.com/charmbracelet/lipgloss",
"direct": true,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/clickhouse/clickhouse-go/v2",
"direct": true,
"version": "v2.46.0",
"ecosystem": "go"
},
{
"name": "github.com/cncf/xds/go",
"direct": true,
"version": "v0.0.0-20251210132809-ee656c7534f5",
"ecosystem": "go"
},
{
"name": "github.com/coder/websocket",
"direct": true,
"version": "v1.8.12",
"ecosystem": "go"
},
{
"name": "github.com/containerd/platforms",
"direct": true,
"version": "v0.2.1",
"ecosystem": "go"
},
{
"name": "github.com/coredns/coredns",
"direct": true,
"version": "v1.11.3",
"ecosystem": "go"
},
{
"name": "github.com/coreos/go-iptables",
"direct": true,
"version": "v0.8.0",
"ecosystem": "go"
},
{
"name": "github.com/dgraph-io/badger/v4",
"direct": true,
"version": "v4.5.0",
"ecosystem": "go"
},
{
"name": "github.com/docker/docker",
"direct": true,
"version": "v28.5.2+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/dpeckett/contextio",
"direct": true,
"version": "v0.5.1",
"ecosystem": "go"
},
{
"name": "github.com/dpeckett/network",
"direct": true,
"version": "v0.5.0",
"ecosystem": "go"
},
{
"name": "github.com/envoyproxy/gateway",
"direct": true,
"version": "v1.4.0",
"ecosystem": "go"
},
{
"name": "github.com/envoyproxy/go-control-plane",
"direct": true,
"version": "v0.14.0",
"ecosystem": "go"
},
{
"name": "github.com/envoyproxy/go-control-plane/contrib",
"direct": true,
"version": "v1.32.5-0.20250408134212-157c26b62099",
"ecosystem": "go"
},
{
"name": "github.com/envoyproxy/go-control-plane/envoy",
"direct": true,
"version": "v1.37.0",
"ecosystem": "go"
},
{
"name": "github.com/envoyproxy/go-control-plane/ratelimit",
"direct": true,
"version": "v0.1.0",
"ecosystem": "go"
},
{
"name": "github.com/envoyproxy/ratelimit",
"direct": true,
"version": "v1.4.1-0.20230427142404-e2a87f41d3a7",
"ecosystem": "go"
},
{
"name": "github.com/evanw/esbuild",
"direct": true,
"version": "v0.28.1",
"ecosystem": "go"
},
{
"name": "github.com/extism/go-sdk",
"direct": true,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/fsnotify/fsnotify",
"direct": true,
"version": "v1.9.0",
"ecosystem": "go"
},
{
"name": "github.com/getsentry/sentry-go",
"direct": true,
"version": "v0.26.0",
"ecosystem": "go"
},
{
"name": "github.com/go-logr/logr",
"direct": true,
"version": "v1.4.3",
"ecosystem": "go"
},
{
"name": "github.com/go-logr/stdr",
"direct": true,
"version": "v1.2.2",
"ecosystem": "go"
},
{
"name": "github.com/goccy/go-json",
"direct": true,
"version": "v0.9.11",
"ecosystem": "go"
},
{
"name": "github.com/golang-jwt/jwt",
"direct": true,
"version": "v3.2.2+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/golang-jwt/jwt/v5",
"direct": true,
"version": "v5.3.0",
"ecosystem": "go"
},
{
"name": "github.com/golang-migrate/migrate/v4",
"direct": true,
"version": "v4.17.1",
"ecosystem": "go"
},
{
"name": "github.com/golang/protobuf",
"direct": true,
"version": "v1.5.4",
"ecosystem": "go"
},
{
"name": "github.com/google/go-cmp",
"direct": true,
"version": "v0.7.0",
"ecosystem": "go"
},
{
"name": "github.com/google/go-containerregistry",
"direct": true,
"version": "v0.21.6",
"ecosystem": "go"
},
{
"name": "github.com/google/go-github/v61",
"direct": true,
"version": "v61.0.0",
"ecosystem": "go"
},
{
"name": "github.com/google/gopacket",
"direct": true,
"version": "v1.1.19",
"ecosystem": "go"
},
{
"name": "github.com/google/uuid",
"direct": true,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/go-discover",
"direct": true,
"version": "v0.0.0-20240726212017-342faf50e5d4",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/go-version",
"direct": true,
"version": "v1.8.0",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/golang-lru/v2",
"direct": true,
"version": "v2.0.7",
"ecosystem": "go"
},
{
"name": "github.com/jedib0t/go-pretty/v6",
"direct": true,
"version": "v6.6.8",
"ecosystem": "go"
},
{
"name": "github.com/julienschmidt/httprouter",
"direct": true,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/k3s-io/kine",
"direct": true,
"version": "v0.14.11",
"ecosystem": "go"
},
{
"name": "github.com/kdomanski/iso9660",
"direct": true,
"version": "v0.4.0",
"ecosystem": "go"
},
{
"name": "github.com/khan/genqlient",
"direct": true,
"version": "v0.8.1",
"ecosystem": "go"
},
{
"name": "github.com/klauspost/cpuid/v2",
"direct": true,
"version": "v2.2.10",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-runewidth",
"direct": true,
"version": "v0.0.16",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-sqlite3",
"direct": true,
"version": "v1.14.42",
"ecosystem": "go"
},
{
"name": "github.com/metal-stack/go-ipam",
"direct": true,
"version": "v1.14.12",
"ecosystem": "go"
},
{
"name": "github.com/micahparks/jwkset",
"direct": true,
"version": "v0.9.6",
"ecosystem": "go"
},
{
"name": "github.com/micahparks/keyfunc/v3",
"direct": true,
"version": "v3.6.1",
"ecosystem": "go"
},
{
"name": "github.com/miekg/dns",
"direct": true,
"version": "v1.1.65",
"ecosystem": "go"
},
{
"name": "github.com/mitchellh/mapstructure",
"direct": true,
"version": "v1.5.0",
"ecosystem": "go"
},
{
"name": "github.com/muesli/ansi",
"direct": true,
"version": "v0.0.0-20230316100256-276c6243b2f6",
"ecosystem": "go"
},
{
"name": "github.com/opencontainers/go-digest",
"direct": true,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/opencontainers/image-spec",
"direct": true,
"version": "v1.1.0-rc5",
"ecosystem": "go"
},
{
"name": "github.com/opencontainers/image-spec",
"direct": true,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/opencontainers/runc",
"direct": true,
"version": "v1.2.5",
"ecosystem": "go"
},
{
"name": "github.com/opencontainers/runtime-spec",
"direct": true,
"version": "v1.2.1",
"ecosystem": "go"
},
{
"name": "github.com/phemmer/go-iptrie",
"direct": true,
"version": "v0.0.0-20240326174613-ba542f5282c9",
"ecosystem": "go"
},
{
"name": "github.com/pkg/browser",
"direct": true,
"version": "v0.0.0-20240102092130-5ac0b6a4141c",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/client_golang",
"direct": true,
"version": "v1.23.2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/client_model",
"direct": true,
"version": "v0.6.2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/common",
"direct": true,
"version": "v0.67.5",
"ecosystem": "go"
},
{
"name": "github.com/shirou/gopsutil",
"direct": true,
"version": "v3.21.11+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/sirupsen/logrus",
"direct": true,
"version": "v1.9.3",
"ecosystem": "go"
},
{
"name": "github.com/sirupsen/logrus",
"direct": true,
"version": "v1.9.4",
"ecosystem": "go"
},
{
"name": "github.com/spf13/cobra",
"direct": true,
"version": "v1.10.2",
"ecosystem": "go"
},
{
"name": "github.com/stretchr/testify",
"direct": true,
"version": "v1.11.1",
"ecosystem": "go"
},
{
"name": "github.com/telepresenceio/watchable",
"direct": true,
"version": "v0.0.0-20220726211108-9bb86f92afa7",
"ecosystem": "go"
},
{
"name": "github.com/temporalio/cli",
"direct": true,
"version": "v0.12.0",
"ecosystem": "go"
},
{
"name": "github.com/tetratelabs/wazero",
"direct": true,
"version": "v1.8.2",
"ecosystem": "go"
},
{
"name": "github.com/things-go/go-socks5",
"direct": true,
"version": "v0.0.5",
"ecosystem": "go"
},
{
"name": "github.com/vektah/gqlparser/v2",
"direct": true,
"version": "v2.5.30",
"ecosystem": "go"
},
{
"name": "github.com/vishvananda/netlink",
"direct": true,
"version": "v1.3.1",
"ecosystem": "go"
},
{
"name": "github.com/vishvananda/netns",
"direct": true,
"version": "v0.0.5",
"ecosystem": "go"
},
{
"name": "github.com/vmihailenco/msgpack",
"direct": true,
"version": "v4.0.4+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/yosida95/uritemplate/v3",
"direct": true,
"version": "v3.0.2",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel",
"direct": true,
"version": "v1.44.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc",
"direct": true,
"version": "v1.35.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetricgrpc",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlpmetric/otlpmetrichttp",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc",
"direct": true,
"version": "v1.37.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracegrpc",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace/otlptracehttp",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/metric",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/metric",
"direct": true,
"version": "v1.44.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/sdk",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/sdk",
"direct": true,
"version": "v1.44.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/sdk/metric",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/sdk/metric",
"direct": true,
"version": "v1.44.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/trace",
"direct": true,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/trace",
"direct": true,
"version": "v1.44.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/proto/otlp",
"direct": true,
"version": "v1.10.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/proto/otlp",
"direct": true,
"version": "v1.8.0",
"ecosystem": "go"
},
{
"name": "go.temporal.io/api",
"direct": true,
"version": "v1.29.2",
"ecosystem": "go"
},
{
"name": "go.temporal.io/sdk",
"direct": true,
"version": "v1.26.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/crypto",
"direct": true,
"version": "v0.51.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/exp",
"direct": true,
"version": "v0.0.0-20250911091902-df9299821621",
"ecosystem": "go"
},
{
"name": "golang.org/x/net",
"direct": true,
"version": "v0.44.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/net",
"direct": true,
"version": "v0.54.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sync",
"direct": true,
"version": "v0.17.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sync",
"direct": true,
"version": "v0.20.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sys",
"direct": true,
"version": "v0.36.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sys",
"direct": true,
"version": "v0.45.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/term",
"direct": true,
"version": "v0.43.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/time",
"direct": true,
"version": "v0.14.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/tools",
"direct": true,
"version": "v0.45.0",
"ecosystem": "go"
},
{
"name": "golang.zx2c4.com/wireguard",
"direct": true,
"version": "v0.0.0-20231211153847-12269c276173",
"ecosystem": "go"
},
{
"name": "google.golang.org/grpc",
"direct": true,
"version": "v1.76.0",
"ecosystem": "go"
},
{
"name": "google.golang.org/grpc",
"direct": true,
"version": "v1.80.0",
"ecosystem": "go"
},
{
"name": "google.golang.org/protobuf",
"direct": true,
"version": "v1.36.11",
"ecosystem": "go"
},
{
"name": "google.golang.org/protobuf",
"direct": true,
"version": "v1.36.9",
"ecosystem": "go"
},
{
"name": "gopkg.in/yaml.v2",
"direct": true,
"version": "v2.4.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/yaml.v3",
"direct": true,
"version": "v3.0.1",
"ecosystem": "go"
},
{
"name": "k8s.io/api",
"direct": true,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/apimachinery",
"direct": true,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/apiserver",
"direct": true,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/cli-runtime",
"direct": true,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/client-go",
"direct": true,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/component-base",
"direct": true,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/klog/v2",
"direct": true,
"version": "v2.130.1",
"ecosystem": "go"
},
{
"name": "k8s.io/kube-aggregator",
"direct": true,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/kube-openapi",
"direct": true,
"version": "v0.0.0-20250710124328-f3f2b991d03b",
"ecosystem": "go"
},
{
"name": "k8s.io/kubernetes",
"direct": true,
"version": "v1.34.4",
"ecosystem": "go"
},
{
"name": "k8s.io/utils",
"direct": true,
"version": "v0.0.0-20251002143259-bc988d571ff4",
"ecosystem": "go"
},
{
"name": "oras.land/oras-go/v2",
"direct": true,
"version": "v2.6.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/controller-runtime",
"direct": true,
"version": "v0.22.5",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/gateway-api",
"direct": true,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/mcs-api",
"direct": true,
"version": "v0.1.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/yaml",
"direct": true,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "cel.dev/expr",
"direct": false,
"version": "v0.25.1",
"ecosystem": "go"
},
{
"name": "cloud.google.com/go",
"direct": false,
"version": "v0.120.0",
"ecosystem": "go"
},
{
"name": "cloud.google.com/go/auth",
"direct": false,
"version": "v0.16.5",
"ecosystem": "go"
},
{
"name": "cloud.google.com/go/auth/oauth2adapt",
"direct": false,
"version": "v0.2.8",
"ecosystem": "go"
},
{
"name": "cloud.google.com/go/compute/metadata",
"direct": false,
"version": "v0.9.0",
"ecosystem": "go"
},
{
"name": "cloud.google.com/go/iam",
"direct": false,
"version": "v1.5.2",
"ecosystem": "go"
},
{
"name": "cloud.google.com/go/monitoring",
"direct": false,
"version": "v1.24.2",
"ecosystem": "go"
},
{
"name": "cloud.google.com/go/storage",
"direct": false,
"version": "v1.50.0",
"ecosystem": "go"
},
{
"name": "filippo.io/edwards25519",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/andybalholm/brotli",
"direct": false,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "github.com/antithesishq/antithesis-sdk-go",
"direct": false,
"version": "v0.5.0",
"ecosystem": "go"
},
{
"name": "github.com/antlr4-go/antlr/v4",
"direct": false,
"version": "v4.13.1",
"ecosystem": "go"
},
{
"name": "github.com/apache/thrift",
"direct": false,
"version": "v0.20.0",
"ecosystem": "go"
},
{
"name": "github.com/apparentlymart/go-cidr",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/armon/go-metrics",
"direct": false,
"version": "v0.0.0-20180917152333-f0300d1749da",
"ecosystem": "go"
},
{
"name": "github.com/atotto/clipboard",
"direct": false,
"version": "v0.1.4",
"ecosystem": "go"
},
{
"name": "github.com/aws/aws-sdk-go",
"direct": false,
"version": "v1.55.5",
"ecosystem": "go"
},
{
"name": "github.com/aymanbagabas/go-osc52/v2",
"direct": false,
"version": "v2.0.1",
"ecosystem": "go"
},
{
"name": "github.com/azure/azure-sdk-for-go",
"direct": false,
"version": "v68.0.0+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-ansiterm",
"direct": false,
"version": "v0.0.0-20250102033503-faa5f7b0171c",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest",
"direct": false,
"version": "v14.2.0+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/autorest",
"direct": false,
"version": "v0.11.29",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/autorest/adal",
"direct": false,
"version": "v0.9.22",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/autorest/azure/auth",
"direct": false,
"version": "v0.5.13",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/autorest/azure/cli",
"direct": false,
"version": "v0.4.6",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/autorest/date",
"direct": false,
"version": "v0.3.0",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/autorest/to",
"direct": false,
"version": "v0.4.0",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/autorest/validation",
"direct": false,
"version": "v0.3.0",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/logger",
"direct": false,
"version": "v0.2.1",
"ecosystem": "go"
},
{
"name": "github.com/azure/go-autorest/tracing",
"direct": false,
"version": "v0.6.0",
"ecosystem": "go"
},
{
"name": "github.com/benbjohnson/clock",
"direct": false,
"version": "v1.3.5",
"ecosystem": "go"
},
{
"name": "github.com/beorn7/perks",
"direct": false,
"version": "v1.0.1",
"ecosystem": "go"
},
{
"name": "github.com/bits-and-blooms/bitset",
"direct": false,
"version": "v1.22.0",
"ecosystem": "go"
},
{
"name": "github.com/blang/semver/v4",
"direct": false,
"version": "v4.0.0",
"ecosystem": "go"
},
{
"name": "github.com/buraksezer/consistent",
"direct": false,
"version": "v0.10.0",
"ecosystem": "go"
},
{
"name": "github.com/cactus/go-statsd-client/statsd",
"direct": false,
"version": "v0.0.0-20200423205355-cb0885a1018c",
"ecosystem": "go"
},
{
"name": "github.com/cactus/go-statsd-client/v5",
"direct": false,
"version": "v5.1.0",
"ecosystem": "go"
},
{
"name": "github.com/cenkalti/backoff",
"direct": false,
"version": "v2.2.1+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/cenkalti/backoff/v4",
"direct": false,
"version": "v4.3.0",
"ecosystem": "go"
},
{
"name": "github.com/cenkalti/backoff/v5",
"direct": false,
"version": "v5.0.3",
"ecosystem": "go"
},
{
"name": "github.com/cespare/xxhash/v2",
"direct": false,
"version": "v2.3.0",
"ecosystem": "go"
},
{
"name": "github.com/charmbracelet/colorprofile",
"direct": false,
"version": "v0.2.3-0.20250311203215-f60798e515dc",
"ecosystem": "go"
},
{
"name": "github.com/charmbracelet/x/ansi",
"direct": false,
"version": "v0.10.1",
"ecosystem": "go"
},
{
"name": "github.com/charmbracelet/x/cellbuf",
"direct": false,
"version": "v0.0.13-0.20250311204145-2c3ea96c31dd",
"ecosystem": "go"
},
{
"name": "github.com/charmbracelet/x/term",
"direct": false,
"version": "v0.2.1",
"ecosystem": "go"
},
{
"name": "github.com/checkpoint-restore/go-criu/v6",
"direct": false,
"version": "v6.3.0",
"ecosystem": "go"
},
{
"name": "github.com/cilium/ebpf",
"direct": false,
"version": "v0.18.0",
"ecosystem": "go"
},
{
"name": "github.com/clickhouse/ch-go",
"direct": false,
"version": "v0.72.0",
"ecosystem": "go"
},
{
"name": "github.com/containerd/console",
"direct": false,
"version": "v1.0.4",
"ecosystem": "go"
},
{
"name": "github.com/containerd/errdefs",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/containerd/log",
"direct": false,
"version": "v0.1.0",
"ecosystem": "go"
},
{
"name": "github.com/coredns/caddy",
"direct": false,
"version": "v1.1.2-0.20241029205200-8de985351a98",
"ecosystem": "go"
},
{
"name": "github.com/coreos/go-oidc/v3",
"direct": false,
"version": "v3.1.0",
"ecosystem": "go"
},
{
"name": "github.com/coreos/go-semver",
"direct": false,
"version": "v0.3.1",
"ecosystem": "go"
},
{
"name": "github.com/coreos/go-systemd/v22",
"direct": false,
"version": "v22.7.0",
"ecosystem": "go"
},
{
"name": "github.com/cpuguy83/go-md2man/v2",
"direct": false,
"version": "v2.0.7",
"ecosystem": "go"
},
{
"name": "github.com/creack/pty",
"direct": false,
"version": "v1.1.24",
"ecosystem": "go"
},
{
"name": "github.com/cyphar/filepath-securejoin",
"direct": false,
"version": "v0.4.1",
"ecosystem": "go"
},
{
"name": "github.com/davecgh/go-spew",
"direct": false,
"version": "v1.1.2-0.20180830191138-d8f796af33cc",
"ecosystem": "go"
},
{
"name": "github.com/denverdino/aliyungo",
"direct": false,
"version": "v0.0.0-20170926055100-d3308649c661",
"ecosystem": "go"
},
{
"name": "github.com/dgraph-io/ristretto/v2",
"direct": false,
"version": "v2.0.0",
"ecosystem": "go"
},
{
"name": "github.com/dgryski/go-farm",
"direct": false,
"version": "v0.0.0-20200201041132-a6ae2369ad13",
"ecosystem": "go"
},
{
"name": "github.com/dgryski/go-rendezvous",
"direct": false,
"version": "v0.0.0-20200823014737-9f7001d12a5f",
"ecosystem": "go"
},
{
"name": "github.com/digitalocean/godo",
"direct": false,
"version": "v1.7.5",
"ecosystem": "go"
},
{
"name": "github.com/dimchansky/utfbom",
"direct": false,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/docker/cli",
"direct": false,
"version": "v29.4.3+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/docker/docker-credential-helpers",
"direct": false,
"version": "v0.9.3",
"ecosystem": "go"
},
{
"name": "github.com/dunglas/httpsfv",
"direct": false,
"version": "v1.0.2",
"ecosystem": "go"
},
{
"name": "github.com/dustin/go-humanize",
"direct": false,
"version": "v1.0.1",
"ecosystem": "go"
},
{
"name": "github.com/emicklei/go-restful/v3",
"direct": false,
"version": "v3.13.0",
"ecosystem": "go"
},
{
"name": "github.com/envoyproxy/protoc-gen-validate",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/erikgeiser/coninput",
"direct": false,
"version": "v0.0.0-20211004153227-1c3628e74d0f",
"ecosystem": "go"
},
{
"name": "github.com/evanphx/json-patch",
"direct": false,
"version": "v5.9.11+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/evanphx/json-patch/v5",
"direct": false,
"version": "v5.9.11",
"ecosystem": "go"
},
{
"name": "github.com/expr-lang/expr",
"direct": false,
"version": "v1.17.6",
"ecosystem": "go"
},
{
"name": "github.com/facebookgo/clock",
"direct": false,
"version": "v0.0.0-20150410010913-600d898af40a",
"ecosystem": "go"
},
{
"name": "github.com/felixge/httpsnoop",
"direct": false,
"version": "v1.0.4",
"ecosystem": "go"
},
{
"name": "github.com/flynn/go-shlex",
"direct": false,
"version": "v0.0.0-20150515145356-3f9db97f8568",
"ecosystem": "go"
},
{
"name": "github.com/francoispqt/gojay",
"direct": false,
"version": "v1.2.13",
"ecosystem": "go"
},
{
"name": "github.com/fxamacker/cbor/v2",
"direct": false,
"version": "v2.9.0",
"ecosystem": "go"
},
{
"name": "github.com/go-faster/city",
"direct": false,
"version": "v1.0.1",
"ecosystem": "go"
},
{
"name": "github.com/go-faster/errors",
"direct": false,
"version": "v0.7.1",
"ecosystem": "go"
},
{
"name": "github.com/go-jose/go-jose/v4",
"direct": false,
"version": "v4.1.3",
"ecosystem": "go"
},
{
"name": "github.com/go-logr/zapr",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/go-ole/go-ole",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/jsonpointer",
"direct": false,
"version": "v0.22.4",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/jsonreference",
"direct": false,
"version": "v0.21.4",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/swag",
"direct": false,
"version": "v0.23.1",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/swag/jsonname",
"direct": false,
"version": "v0.25.4",
"ecosystem": "go"
},
{
"name": "github.com/go-redis/redis/v8",
"direct": false,
"version": "v8.11.5",
"ecosystem": "go"
},
{
"name": "github.com/go-sql-driver/mysql",
"direct": false,
"version": "v1.9.3",
"ecosystem": "go"
},
{
"name": "github.com/go-task/slim-sprig/v3",
"direct": false,
"version": "v3.0.0",
"ecosystem": "go"
},
{
"name": "github.com/gobwas/glob",
"direct": false,
"version": "v0.2.3",
"ecosystem": "go"
},
{
"name": "github.com/gocql/gocql",
"direct": false,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "github.com/godbus/dbus/v5",
"direct": false,
"version": "v5.2.2",
"ecosystem": "go"
},
{
"name": "github.com/gofrs/flock",
"direct": false,
"version": "v0.12.1",
"ecosystem": "go"
},
{
"name": "github.com/gogo/protobuf",
"direct": false,
"version": "v1.3.2",
"ecosystem": "go"
},
{
"name": "github.com/golang-jwt/jwt/v4",
"direct": false,
"version": "v4.5.2",
"ecosystem": "go"
},
{
"name": "github.com/golang/groupcache",
"direct": false,
"version": "v0.0.0-20241129210726-2c02b8208cf8",
"ecosystem": "go"
},
{
"name": "github.com/golang/mock",
"direct": false,
"version": "v1.7.0-rc.1",
"ecosystem": "go"
},
{
"name": "github.com/golang/snappy",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/google/btree",
"direct": false,
"version": "v1.1.3",
"ecosystem": "go"
},
{
"name": "github.com/google/cel-go",
"direct": false,
"version": "v0.26.0",
"ecosystem": "go"
},
{
"name": "github.com/google/flatbuffers",
"direct": false,
"version": "v24.3.25+incompatible",
"ecosystem": "go"
},
{
"name": "github.com/google/gnostic-models",
"direct": false,
"version": "v0.7.0",
"ecosystem": "go"
},
{
"name": "github.com/google/go-querystring",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/google/go-tpm",
"direct": false,
"version": "v0.9.6",
"ecosystem": "go"
},
{
"name": "github.com/google/pprof",
"direct": false,
"version": "v0.0.0-20250607225305-033d6d78b36a",
"ecosystem": "go"
},
{
"name": "github.com/google/s2a-go",
"direct": false,
"version": "v0.1.9",
"ecosystem": "go"
},
{
"name": "github.com/google/subcommands",
"direct": false,
"version": "v1.0.2-0.20190508160503-636abe8753b8",
"ecosystem": "go"
},
{
"name": "github.com/googleapis/enterprise-certificate-proxy",
"direct": false,
"version": "v0.3.6",
"ecosystem": "go"
},
{
"name": "github.com/googleapis/gax-go/v2",
"direct": false,
"version": "v2.15.0",
"ecosystem": "go"
},
{
"name": "github.com/googlecloudplatform/opentelemetry-operations-go/detectors/gcp",
"direct": false,
"version": "v1.31.0",
"ecosystem": "go"
},
{
"name": "github.com/googlecloudplatform/opentelemetry-operations-go/exporter/metric",
"direct": false,
"version": "v0.50.0",
"ecosystem": "go"
},
{
"name": "github.com/googlecloudplatform/opentelemetry-operations-go/internal/resourcemapping",
"direct": false,
"version": "v0.50.0",
"ecosystem": "go"
},
{
"name": "github.com/gophercloud/gophercloud",
"direct": false,
"version": "v0.1.0",
"ecosystem": "go"
},
{
"name": "github.com/gorilla/securecookie",
"direct": false,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/gorilla/websocket",
"direct": false,
"version": "v1.5.4-0.20250319132907-e064f32e3674",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/go-grpc-middleware",
"direct": false,
"version": "v1.4.0",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/go-grpc-middleware/providers/prometheus",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/go-grpc-middleware/v2",
"direct": false,
"version": "v2.3.2",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/go-grpc-prometheus",
"direct": false,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/grpc-gateway/v2",
"direct": false,
"version": "v2.27.2",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/grpc-gateway/v2",
"direct": false,
"version": "v2.28.0",
"ecosystem": "go"
},
{
"name": "github.com/grpc-ecosystem/grpc-opentracing",
"direct": false,
"version": "v0.0.0-20180507213350-8e809c8a8645",
"ecosystem": "go"
},
{
"name": "github.com/hailocab/go-hostpool",
"direct": false,
"version": "v0.0.0-20160125115350-e80d13ce29ed",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/errwrap",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/go-immutable-radix",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/go-msgpack",
"direct": false,
"version": "v0.5.3",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/go-multierror",
"direct": false,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/go-sockaddr",
"direct": false,
"version": "v1.0.2",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/golang-lru",
"direct": false,
"version": "v0.5.4",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/logutils",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/mdns",
"direct": false,
"version": "v1.0.1",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/memberlist",
"direct": false,
"version": "v0.5.0",
"ecosystem": "go"
},
{
"name": "github.com/hashicorp/vic",
"direct": false,
"version": "v1.5.1-0.20190403131502-bbfe86ec9443",
"ecosystem": "go"
},
{
"name": "github.com/iancoleman/strcase",
"direct": false,
"version": "v0.3.0",
"ecosystem": "go"
},
{
"name": "github.com/inconshreveable/mousetrap",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/ishidawataru/sctp",
"direct": false,
"version": "v0.0.0-20250521072954-ae8eb7fa7995",
"ecosystem": "go"
},
{
"name": "github.com/jackc/pgerrcode",
"direct": false,
"version": "v0.0.0-20240316143900-6e2875d9b438",
"ecosystem": "go"
},
{
"name": "github.com/jackc/pgpassfile",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/jackc/pgservicefile",
"direct": false,
"version": "v0.0.0-20240606120523-5a60cdf6a761",
"ecosystem": "go"
},
{
"name": "github.com/jackc/pgx/v5",
"direct": false,
"version": "v5.8.0",
"ecosystem": "go"
},
{
"name": "github.com/jackc/puddle/v2",
"direct": false,
"version": "v2.2.2",
"ecosystem": "go"
},
{
"name": "github.com/jmespath/go-jmespath",
"direct": false,
"version": "v0.4.0",
"ecosystem": "go"
},
{
"name": "github.com/jmoiron/sqlx",
"direct": false,
"version": "v1.4.0",
"ecosystem": "go"
},
{
"name": "github.com/jonboulle/clockwork",
"direct": false,
"version": "v0.5.0",
"ecosystem": "go"
},
{
"name": "github.com/josharian/intern",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/joyent/triton-go",
"direct": false,
"version": "v0.0.0-20180628001255-830d2b111e62",
"ecosystem": "go"
},
{
"name": "github.com/json-iterator/go",
"direct": false,
"version": "v1.1.12",
"ecosystem": "go"
},
{
"name": "github.com/kballard/go-shellquote",
"direct": false,
"version": "v0.0.0-20180428030007-95032a82bc51",
"ecosystem": "go"
},
{
"name": "github.com/kelseyhightower/envconfig",
"direct": false,
"version": "v1.4.0",
"ecosystem": "go"
},
{
"name": "github.com/klauspost/compress",
"direct": false,
"version": "v1.18.6",
"ecosystem": "go"
},
{
"name": "github.com/kr/pty",
"direct": false,
"version": "v1.1.8",
"ecosystem": "go"
},
{
"name": "github.com/kylelemons/godebug",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/labstack/echo/v4",
"direct": false,
"version": "v4.10.0",
"ecosystem": "go"
},
{
"name": "github.com/labstack/gommon",
"direct": false,
"version": "v0.4.0",
"ecosystem": "go"
},
{
"name": "github.com/lib/pq",
"direct": false,
"version": "v1.10.9",
"ecosystem": "go"
},
{
"name": "github.com/liggitt/tabwriter",
"direct": false,
"version": "v0.0.0-20181228230101-89fcab3d43de",
"ecosystem": "go"
},
{
"name": "github.com/linode/linodego",
"direct": false,
"version": "v0.7.1",
"ecosystem": "go"
},
{
"name": "github.com/lucasb-eyer/go-colorful",
"direct": false,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "github.com/lyft/gostats",
"direct": false,
"version": "v0.4.1",
"ecosystem": "go"
},
{
"name": "github.com/mailru/easyjson",
"direct": false,
"version": "v0.9.0",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-colorable",
"direct": false,
"version": "v0.1.14",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-isatty",
"direct": false,
"version": "v0.0.20",
"ecosystem": "go"
},
{
"name": "github.com/mattn/go-localereader",
"direct": false,
"version": "v0.0.1",
"ecosystem": "go"
},
{
"name": "github.com/matttproud/golang_protobuf_extensions",
"direct": false,
"version": "v1.0.4",
"ecosystem": "go"
},
{
"name": "github.com/minio/highwayhash",
"direct": false,
"version": "v1.0.4-0.20251030100505-070ab1a87a76",
"ecosystem": "go"
},
{
"name": "github.com/mitchellh/go-homedir",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "github.com/moby/sys/atomicwriter",
"direct": false,
"version": "v0.1.0",
"ecosystem": "go"
},
{
"name": "github.com/moby/sys/capability",
"direct": false,
"version": "v0.4.0",
"ecosystem": "go"
},
{
"name": "github.com/moby/sys/mountinfo",
"direct": false,
"version": "v0.7.2",
"ecosystem": "go"
},
{
"name": "github.com/moby/sys/sequential",
"direct": false,
"version": "v0.6.0",
"ecosystem": "go"
},
{
"name": "github.com/moby/sys/user",
"direct": false,
"version": "v0.4.0",
"ecosystem": "go"
},
{
"name": "github.com/moby/sys/userns",
"direct": false,
"version": "v0.1.0",
"ecosystem": "go"
},
{
"name": "github.com/moby/term",
"direct": false,
"version": "v0.5.2",
"ecosystem": "go"
},
{
"name": "github.com/modern-go/concurrent",
"direct": false,
"version": "v0.0.0-20180306012644-bacd9c7ef1dd",
"ecosystem": "go"
},
{
"name": "github.com/modern-go/reflect2",
"direct": false,
"version": "v1.0.3-0.20250322232337-35a7c28c31ee",
"ecosystem": "go"
},
{
"name": "github.com/mohae/deepcopy",
"direct": false,
"version": "v0.0.0-20170929034955-c48cc78d4826",
"ecosystem": "go"
},
{
"name": "github.com/montanaflynn/stats",
"direct": false,
"version": "v0.7.1",
"ecosystem": "go"
},
{
"name": "github.com/mrunalp/fileutils",
"direct": false,
"version": "v0.5.1",
"ecosystem": "go"
},
{
"name": "github.com/mschoch/smat",
"direct": false,
"version": "v0.2.0",
"ecosystem": "go"
},
{
"name": "github.com/muesli/cancelreader",
"direct": false,
"version": "v0.2.2",
"ecosystem": "go"
},
{
"name": "github.com/muesli/termenv",
"direct": false,
"version": "v0.16.0",
"ecosystem": "go"
},
{
"name": "github.com/munnerz/goautoneg",
"direct": false,
"version": "v0.0.0-20191010083416-a7dc8b61c822",
"ecosystem": "go"
},
{
"name": "github.com/nats-io/jsm.go",
"direct": false,
"version": "v0.3.0",
"ecosystem": "go"
},
{
"name": "github.com/nats-io/jwt/v2",
"direct": false,
"version": "v2.8.0",
"ecosystem": "go"
},
{
"name": "github.com/nats-io/nats-server/v2",
"direct": false,
"version": "v2.12.2",
"ecosystem": "go"
},
{
"name": "github.com/nats-io/nats.go",
"direct": false,
"version": "v1.48.0",
"ecosystem": "go"
},
{
"name": "github.com/nats-io/nkeys",
"direct": false,
"version": "v0.4.11",
"ecosystem": "go"
},
{
"name": "github.com/nats-io/nuid",
"direct": false,
"version": "v1.0.1",
"ecosystem": "go"
},
{
"name": "github.com/ncruces/go-strftime",
"direct": false,
"version": "v0.1.9",
"ecosystem": "go"
},
{
"name": "github.com/nicolai86/scaleway-sdk",
"direct": false,
"version": "v1.10.2-0.20180628010248-798f60e20bb2",
"ecosystem": "go"
},
{
"name": "github.com/nxadm/tail",
"direct": false,
"version": "v1.4.11",
"ecosystem": "go"
},
{
"name": "github.com/nytimes/gziphandler",
"direct": false,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/olivere/elastic/v7",
"direct": false,
"version": "v7.0.32",
"ecosystem": "go"
},
{
"name": "github.com/onsi/ginkgo/v2",
"direct": false,
"version": "v2.22.2",
"ecosystem": "go"
},
{
"name": "github.com/opencontainers/selinux",
"direct": false,
"version": "v1.11.1",
"ecosystem": "go"
},
{
"name": "github.com/opentracing/opentracing-go",
"direct": false,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "github.com/packethost/packngo",
"direct": false,
"version": "v0.1.1-0.20180711074735-b9cb5096f54c",
"ecosystem": "go"
},
{
"name": "github.com/paulmach/orb",
"direct": false,
"version": "v0.12.0",
"ecosystem": "go"
},
{
"name": "github.com/pborman/uuid",
"direct": false,
"version": "v1.2.1",
"ecosystem": "go"
},
{
"name": "github.com/pierrec/lz4/v4",
"direct": false,
"version": "v4.1.26",
"ecosystem": "go"
},
{
"name": "github.com/pkg/errors",
"direct": false,
"version": "v0.9.1",
"ecosystem": "go"
},
{
"name": "github.com/planetscale/vtprotobuf",
"direct": false,
"version": "v0.6.1-0.20240319094008-0393e58bdf10",
"ecosystem": "go"
},
{
"name": "github.com/pmezard/go-difflib",
"direct": false,
"version": "v1.0.1-0.20181226105442-5d4384ee4fb2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/procfs",
"direct": false,
"version": "v0.19.2",
"ecosystem": "go"
},
{
"name": "github.com/rcrowley/go-metrics",
"direct": false,
"version": "v0.0.0-20201227073835-cf1acfcdf475",
"ecosystem": "go"
},
{
"name": "github.com/redis/go-redis/v9",
"direct": false,
"version": "v9.10.0",
"ecosystem": "go"
},
{
"name": "github.com/remyoudompheng/bigfft",
"direct": false,
"version": "v0.0.0-20230129092748-24d4a6f8daec",
"ecosystem": "go"
},
{
"name": "github.com/renier/xmlrpc",
"direct": false,
"version": "v0.0.0-20170708154548-ce4a1a486c03",
"ecosystem": "go"
},
{
"name": "github.com/rican7/retry",
"direct": false,
"version": "v0.3.1",
"ecosystem": "go"
},
{
"name": "github.com/rivo/uniseg",
"direct": false,
"version": "v0.4.7",
"ecosystem": "go"
},
{
"name": "github.com/roaringbitmap/roaring",
"direct": false,
"version": "v1.2.1",
"ecosystem": "go"
},
{
"name": "github.com/robfig/cron",
"direct": false,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "github.com/robfig/cron/v3",
"direct": false,
"version": "v3.0.1",
"ecosystem": "go"
},
{
"name": "github.com/russross/blackfriday/v2",
"direct": false,
"version": "v2.1.0",
"ecosystem": "go"
},
{
"name": "github.com/safchain/ethtool",
"direct": false,
"version": "v0.6.1",
"ecosystem": "go"
},
{
"name": "github.com/sean-/seed",
"direct": false,
"version": "v0.0.0-20170313163322-e2103e2c3529",
"ecosystem": "go"
},
{
"name": "github.com/seccomp/libseccomp-golang",
"direct": false,
"version": "v0.10.0",
"ecosystem": "go"
},
{
"name": "github.com/segmentio/asm",
"direct": false,
"version": "v1.2.1",
"ecosystem": "go"
},
{
"name": "github.com/shengdoushi/base58",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/shopspring/decimal",
"direct": false,
"version": "v1.4.0",
"ecosystem": "go"
},
{
"name": "github.com/softlayer/softlayer-go",
"direct": false,
"version": "v0.0.0-20180806151055-260589d94c7d",
"ecosystem": "go"
},
{
"name": "github.com/soheilhy/cmux",
"direct": false,
"version": "v0.1.5",
"ecosystem": "go"
},
{
"name": "github.com/sosodev/duration",
"direct": false,
"version": "v1.3.1",
"ecosystem": "go"
},
{
"name": "github.com/spf13/pflag",
"direct": false,
"version": "v1.0.10",
"ecosystem": "go"
},
{
"name": "github.com/spiffe/go-spiffe/v2",
"direct": false,
"version": "v2.6.0",
"ecosystem": "go"
},
{
"name": "github.com/stoewer/go-strcase",
"direct": false,
"version": "v1.3.1",
"ecosystem": "go"
},
{
"name": "github.com/stretchr/objx",
"direct": false,
"version": "v0.5.2",
"ecosystem": "go"
},
{
"name": "github.com/syndtr/gocapability",
"direct": false,
"version": "v0.0.0-20200815063812-42c35b437635",
"ecosystem": "go"
},
{
"name": "github.com/temporalio/ringpop-go",
"direct": false,
"version": "v0.0.0-20231122191827-aece62eb7bc7",
"ecosystem": "go"
},
{
"name": "github.com/temporalio/sqlparser",
"direct": false,
"version": "v0.0.0-20231115171017-f4060bcfa6cb",
"ecosystem": "go"
},
{
"name": "github.com/temporalio/tchannel-go",
"direct": false,
"version": "v1.22.1-0.20231116015023-bd4fb7678499",
"ecosystem": "go"
},
{
"name": "github.com/temporalio/ui-server/v2",
"direct": false,
"version": "v2.26.2",
"ecosystem": "go"
},
{
"name": "github.com/tencentcloud/tencentcloud-sdk-go/tencentcloud/common",
"direct": false,
"version": "v1.0.480",
"ecosystem": "go"
},
{
"name": "github.com/tencentcloud/tencentcloud-sdk-go/tencentcloud/cvm",
"direct": false,
"version": "v1.0.480",
"ecosystem": "go"
},
{
"name": "github.com/tidwall/btree",
"direct": false,
"version": "v1.8.1",
"ecosystem": "go"
},
{
"name": "github.com/tidwall/match",
"direct": false,
"version": "v1.1.1",
"ecosystem": "go"
},
{
"name": "github.com/tidwall/redcon",
"direct": false,
"version": "v1.6.2",
"ecosystem": "go"
},
{
"name": "github.com/tklauser/go-sysconf",
"direct": false,
"version": "v0.3.15",
"ecosystem": "go"
},
{
"name": "github.com/tklauser/numcpus",
"direct": false,
"version": "v0.10.0",
"ecosystem": "go"
},
{
"name": "github.com/tmc/grpc-websocket-proxy",
"direct": false,
"version": "v0.0.0-20220101234140-673ab2c3ae75",
"ecosystem": "go"
},
{
"name": "github.com/twmb/murmur3",
"direct": false,
"version": "v1.1.8",
"ecosystem": "go"
},
{
"name": "github.com/uber-common/bark",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/uber-go/tally/v4",
"direct": false,
"version": "v4.1.17-0.20240412215630-22fe011f5ff0",
"ecosystem": "go"
},
{
"name": "github.com/valyala/bytebufferpool",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/valyala/fasttemplate",
"direct": false,
"version": "v1.2.2",
"ecosystem": "go"
},
{
"name": "github.com/vmihailenco/msgpack/v5",
"direct": false,
"version": "v5.3.5",
"ecosystem": "go"
},
{
"name": "github.com/vmihailenco/tagparser/v2",
"direct": false,
"version": "v2.0.0",
"ecosystem": "go"
},
{
"name": "github.com/vmware/govmomi",
"direct": false,
"version": "v0.18.0",
"ecosystem": "go"
},
{
"name": "github.com/x448/float16",
"direct": false,
"version": "v0.8.4",
"ecosystem": "go"
},
{
"name": "github.com/xdg-go/pbkdf2",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/xdg-go/scram",
"direct": false,
"version": "v1.1.2",
"ecosystem": "go"
},
{
"name": "github.com/xdg-go/stringprep",
"direct": false,
"version": "v1.0.4",
"ecosystem": "go"
},
{
"name": "github.com/xiang90/probing",
"direct": false,
"version": "v0.0.0-20221125231312-a49e3df8f510",
"ecosystem": "go"
},
{
"name": "github.com/xo/terminfo",
"direct": false,
"version": "v0.0.0-20220910002029-abceb7e1c41e",
"ecosystem": "go"
},
{
"name": "github.com/youmark/pkcs8",
"direct": false,
"version": "v0.0.0-20240726163527-a2c0da244d78",
"ecosystem": "go"
},
{
"name": "github.com/yusufpapurcu/wmi",
"direct": false,
"version": "v1.2.4",
"ecosystem": "go"
},
{
"name": "go.etcd.io/bbolt",
"direct": false,
"version": "v1.4.3",
"ecosystem": "go"
},
{
"name": "go.etcd.io/etcd/api/v3",
"direct": false,
"version": "v3.6.7",
"ecosystem": "go"
},
{
"name": "go.etcd.io/etcd/client/pkg/v3",
"direct": false,
"version": "v3.6.7",
"ecosystem": "go"
},
{
"name": "go.etcd.io/etcd/client/v3",
"direct": false,
"version": "v3.6.7",
"ecosystem": "go"
},
{
"name": "go.etcd.io/etcd/pkg/v3",
"direct": false,
"version": "v3.6.7",
"ecosystem": "go"
},
{
"name": "go.etcd.io/etcd/server/v3",
"direct": false,
"version": "v3.6.7",
"ecosystem": "go"
},
{
"name": "go.etcd.io/raft/v3",
"direct": false,
"version": "v3.6.0",
"ecosystem": "go"
},
{
"name": "go.mongodb.org/mongo-driver",
"direct": false,
"version": "v1.17.4",
"ecosystem": "go"
},
{
"name": "go.opencensus.io",
"direct": false,
"version": "v0.24.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/auto/sdk",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/auto/sdk",
"direct": false,
"version": "v1.2.1",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/contrib/detectors/gcp",
"direct": false,
"version": "v1.39.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/contrib/instrumentation/net/http/otelhttp",
"direct": false,
"version": "v0.62.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/otlp/otlptrace",
"direct": false,
"version": "v1.38.0",
"ecosystem": "go"
},
{
"name": "go.opentelemetry.io/otel/exporters/prometheus",
"direct": false,
"version": "v0.58.0",
"ecosystem": "go"
},
{
"name": "go.temporal.io/server",
"direct": false,
"version": "v1.23.0",
"ecosystem": "go"
},
{
"name": "go.temporal.io/version",
"direct": false,
"version": "v0.3.0",
"ecosystem": "go"
},
{
"name": "go.uber.org/atomic",
"direct": false,
"version": "v1.11.0",
"ecosystem": "go"
},
{
"name": "go.uber.org/dig",
"direct": false,
"version": "v1.17.1",
"ecosystem": "go"
},
{
"name": "go.uber.org/fx",
"direct": false,
"version": "v1.21.1",
"ecosystem": "go"
},
{
"name": "go.uber.org/mock",
"direct": false,
"version": "v0.5.0",
"ecosystem": "go"
},
{
"name": "go.uber.org/multierr",
"direct": false,
"version": "v1.11.0",
"ecosystem": "go"
},
{
"name": "go.uber.org/zap",
"direct": false,
"version": "v1.27.1",
"ecosystem": "go"
},
{
"name": "go.yaml.in/yaml/v2",
"direct": false,
"version": "v2.4.3",
"ecosystem": "go"
},
{
"name": "go.yaml.in/yaml/v3",
"direct": false,
"version": "v3.0.4",
"ecosystem": "go"
},
{
"name": "go4.org/netipx",
"direct": false,
"version": "v0.0.0-20231129151722-fdeea329fbba",
"ecosystem": "go"
},
{
"name": "golang.org/x/mod",
"direct": false,
"version": "v0.36.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/oauth2",
"direct": false,
"version": "v0.36.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.29.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.37.0",
"ecosystem": "go"
},
{
"name": "golang.zx2c4.com/wintun",
"direct": false,
"version": "v0.0.0-20230126152724-0fa3db229ce2",
"ecosystem": "go"
},
{
"name": "gomodules.xyz/jsonpatch/v2",
"direct": false,
"version": "v2.5.0",
"ecosystem": "go"
},
{
"name": "google.golang.org/api",
"direct": false,
"version": "v0.249.0",
"ecosystem": "go"
},
{
"name": "google.golang.org/appengine",
"direct": false,
"version": "v1.6.8",
"ecosystem": "go"
},
{
"name": "google.golang.org/genproto",
"direct": false,
"version": "v0.0.0-20250603155806-513f23925822",
"ecosystem": "go"
},
{
"name": "google.golang.org/genproto/googleapis/api",
"direct": false,
"version": "v0.0.0-20250825161204-c5933d9347a5",
"ecosystem": "go"
},
{
"name": "google.golang.org/genproto/googleapis/api",
"direct": false,
"version": "v0.0.0-20260401024825-9d38bb4040a9",
"ecosystem": "go"
},
{
"name": "google.golang.org/genproto/googleapis/rpc",
"direct": false,
"version": "v0.0.0-20250825161204-c5933d9347a5",
"ecosystem": "go"
},
{
"name": "google.golang.org/genproto/googleapis/rpc",
"direct": false,
"version": "v0.0.0-20260401024825-9d38bb4040a9",
"ecosystem": "go"
},
{
"name": "gopkg.in/evanphx/json-patch.v4",
"direct": false,
"version": "v4.13.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/inf.v0",
"direct": false,
"version": "v0.9.1",
"ecosystem": "go"
},
{
"name": "gopkg.in/natefinch/lumberjack.v2",
"direct": false,
"version": "v2.2.1",
"ecosystem": "go"
},
{
"name": "gopkg.in/resty.v1",
"direct": false,
"version": "v1.12.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/square/go-jose.v2",
"direct": false,
"version": "v2.6.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/validator.v2",
"direct": false,
"version": "v2.0.1",
"ecosystem": "go"
},
{
"name": "gotest.tools/v3",
"direct": false,
"version": "v3.5.2",
"ecosystem": "go"
},
{
"name": "k8s.io/apiextensions-apiserver",
"direct": false,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/component-helpers",
"direct": false,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/controller-manager",
"direct": false,
"version": "v0.34.3",
"ecosystem": "go"
},
{
"name": "k8s.io/kms",
"direct": false,
"version": "v0.35.4",
"ecosystem": "go"
},
{
"name": "lukechampine.com/uint128",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "modernc.org/cc/v3",
"direct": false,
"version": "v3.41.0",
"ecosystem": "go"
},
{
"name": "modernc.org/ccgo/v3",
"direct": false,
"version": "v3.17.0",
"ecosystem": "go"
},
{
"name": "modernc.org/libc",
"direct": false,
"version": "v1.50.2",
"ecosystem": "go"
},
{
"name": "modernc.org/mathutil",
"direct": false,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "modernc.org/memory",
"direct": false,
"version": "v1.8.0",
"ecosystem": "go"
},
{
"name": "modernc.org/opt",
"direct": false,
"version": "v0.1.3",
"ecosystem": "go"
},
{
"name": "modernc.org/sqlite",
"direct": false,
"version": "v1.23.1",
"ecosystem": "go"
},
{
"name": "modernc.org/strutil",
"direct": false,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "modernc.org/token",
"direct": false,
"version": "v1.1.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/apiserver-network-proxy/konnectivity-client",
"direct": false,
"version": "v0.31.2",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/json",
"direct": false,
"version": "v0.0.0-20250730193827-2d320260d730",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/randfill",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/structured-merge-diff/v6",
"direct": false,
"version": "v6.3.2-0.20260122202528-d9cc6641c482",
"ecosystem": "go"
},
{
"name": "@asamuzakjp/css-color",
"direct": false,
"version": "3.2.0",
"ecosystem": "npm"
},
{
"name": "@babel/code-frame",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/compat-data",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/core",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/generator",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-compilation-targets",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-globals",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-module-imports",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-module-transforms",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-plugin-utils",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-string-parser",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-validator-identifier",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helper-validator-option",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/helpers",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/parser",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/plugin-transform-react-jsx-self",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/plugin-transform-react-jsx-source",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/runtime",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/template",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/traverse",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@babel/types",
"direct": false,
"version": "7.29.7",
"ecosystem": "npm"
},
{
"name": "@carbon/icon-helpers",
"direct": false,
"version": "10.76.0",
"ecosystem": "npm"
},
{
"name": "@carbon/icons-react",
"direct": false,
"version": "11.82.0",
"ecosystem": "npm"
},
{
"name": "@carbon/icons-react",
"direct": false,
"version": "^11.48.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/autocomplete",
"direct": false,
"version": "6.20.3",
"ecosystem": "npm"
},
{
"name": "@codemirror/autocomplete",
"direct": false,
"version": "^6.18.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/commands",
"direct": false,
"version": "6.10.3",
"ecosystem": "npm"
},
{
"name": "@codemirror/commands",
"direct": false,
"version": "^6.7.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/lang-yaml",
"direct": false,
"version": "6.1.3",
"ecosystem": "npm"
},
{
"name": "@codemirror/lang-yaml",
"direct": false,
"version": "^6.1.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/language",
"direct": false,
"version": "6.12.3",
"ecosystem": "npm"
},
{
"name": "@codemirror/language",
"direct": false,
"version": "^6.12.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/lint",
"direct": false,
"version": "6.9.7",
"ecosystem": "npm"
},
{
"name": "@codemirror/lint",
"direct": false,
"version": "^6.8.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/state",
"direct": false,
"version": "6.6.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/state",
"direct": false,
"version": "^6.5.0",
"ecosystem": "npm"
},
{
"name": "@codemirror/view",
"direct": false,
"version": "6.43.1",
"ecosystem": "npm"
},
{
"name": "@codemirror/view",
"direct": false,
"version": "^6.36.0",
"ecosystem": "npm"
},
{
"name": "@csstools/color-helpers",
"direct": false,
"version": "5.1.0",
"ecosystem": "npm"
},
{
"name": "@csstools/css-calc",
"direct": false,
"version": "2.1.4",
"ecosystem": "npm"
},
{
"name": "@csstools/css-color-parser",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "@csstools/css-parser-algorithms",
"direct": false,
"version": "3.0.5",
"ecosystem": "npm"
},
{
"name": "@csstools/css-tokenizer",
"direct": false,
"version": "3.0.4",
"ecosystem": "npm"
},
{
"name": "@emnapi/core",
"direct": false,
"version": "1.10.0",
"ecosystem": "npm"
},
{
"name": "@emnapi/runtime",
"direct": false,
"version": "1.10.0",
"ecosystem": "npm"
},
{
"name": "@emnapi/wasi-threads",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/aix-ppc64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/android-arm",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/android-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/android-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/darwin-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/darwin-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/freebsd-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/freebsd-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-arm",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-ia32",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-loong64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-mips64el",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-ppc64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-riscv64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-s390x",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/netbsd-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/netbsd-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/openbsd-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/openbsd-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/openharmony-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/sunos-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/win32-arm64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/win32-ia32",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@esbuild/win32-x64",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "@ibm/telemetry-js",
"direct": false,
"version": "1.11.0",
"ecosystem": "npm"
},
{
"name": "@inquirer/ansi",
"direct": false,
"version": "2.0.7",
"ecosystem": "npm"
},
{
"name": "@inquirer/confirm",
"direct": false,
"version": "6.1.1",
"ecosystem": "npm"
},
{
"name": "@inquirer/core",
"direct": false,
"version": "11.2.1",
"ecosystem": "npm"
},
{
"name": "@inquirer/figures",
"direct": false,
"version": "2.0.7",
"ecosystem": "npm"
},
{
"name": "@inquirer/type",
"direct": false,
"version": "4.0.7",
"ecosystem": "npm"
},
{
"name": "@jridgewell/gen-mapping",
"direct": false,
"version": "0.3.13",
"ecosystem": "npm"
},
{
"name": "@jridgewell/remapping",
"direct": false,
"version": "2.3.5",
"ecosystem": "npm"
},
{
"name": "@jridgewell/resolve-uri",
"direct": false,
"version": "3.1.2",
"ecosystem": "npm"
},
{
"name": "@jridgewell/sourcemap-codec",
"direct": false,
"version": "1.5.5",
"ecosystem": "npm"
},
{
"name": "@jridgewell/trace-mapping",
"direct": false,
"version": "0.3.31",
"ecosystem": "npm"
},
{
"name": "@lezer/common",
"direct": false,
"version": "1.5.2",
"ecosystem": "npm"
},
{
"name": "@lezer/highlight",
"direct": false,
"version": "1.2.3",
"ecosystem": "npm"
},
{
"name": "@lezer/highlight",
"direct": false,
"version": "^1.2.0",
"ecosystem": "npm"
},
{
"name": "@lezer/lr",
"direct": false,
"version": "1.4.10",
"ecosystem": "npm"
},
{
"name": "@lezer/yaml",
"direct": false,
"version": "1.0.4",
"ecosystem": "npm"
},
{
"name": "@marijn/find-cluster-break",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "@mswjs/interceptors",
"direct": false,
"version": "0.41.9",
"ecosystem": "npm"
},
{
"name": "@napi-rs/wasm-runtime",
"direct": false,
"version": "1.1.5",
"ecosystem": "npm"
},
{
"name": "@open-draft/deferred-promise",
"direct": false,
"version": "2.2.0",
"ecosystem": "npm"
},
{
"name": "@open-draft/deferred-promise",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "@open-draft/logger",
"direct": false,
"version": "0.3.0",
"ecosystem": "npm"
},
{
"name": "@open-draft/until",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "@opentelemetry/api",
"direct": false,
"version": "1.9.1",
"ecosystem": "npm"
},
{
"name": "@oxc-project/types",
"direct": false,
"version": "0.133.0",
"ecosystem": "npm"
},
{
"name": "@posthog/core",
"direct": false,
"version": "1.40.1",
"ecosystem": "npm"
},
{
"name": "@posthog/types",
"direct": false,
"version": "1.393.0",
"ecosystem": "npm"
},
{
"name": "@redocly/ajv",
"direct": false,
"version": "8.11.2",
"ecosystem": "npm"
},
{
"name": "@redocly/config",
"direct": false,
"version": "0.22.0",
"ecosystem": "npm"
},
{
"name": "@redocly/openapi-core",
"direct": false,
"version": "1.34.15",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-android-arm64",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-darwin-arm64",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-darwin-x64",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-freebsd-x64",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-arm-gnueabihf",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-arm64-gnu",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-arm64-musl",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-ppc64-gnu",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-s390x-gnu",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-x64-gnu",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-linux-x64-musl",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-openharmony-arm64",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-wasm32-wasi",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-win32-arm64-msvc",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/binding-win32-x64-msvc",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/pluginutils",
"direct": false,
"version": "1.0.0-rc.3",
"ecosystem": "npm"
},
{
"name": "@rolldown/pluginutils",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "@standard-schema/spec",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/node",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-android-arm64",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-darwin-arm64",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-darwin-x64",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-freebsd-x64",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-linux-arm-gnueabihf",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-linux-arm64-gnu",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-linux-arm64-musl",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-linux-x64-gnu",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-linux-x64-musl",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-wasm32-wasi",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-win32-arm64-msvc",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/oxide-win32-x64-msvc",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/vite",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "@tailwindcss/vite",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/history",
"direct": false,
"version": "1.162.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/query-core",
"direct": false,
"version": "5.101.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/react-query",
"direct": false,
"version": "5.101.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/react-query",
"direct": false,
"version": "^5.101.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/react-router",
"direct": false,
"version": "1.170.15",
"ecosystem": "npm"
},
{
"name": "@tanstack/react-router",
"direct": false,
"version": "^1.95.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/react-store",
"direct": false,
"version": "0.9.3",
"ecosystem": "npm"
},
{
"name": "@tanstack/router-cli",
"direct": false,
"version": "1.167.17",
"ecosystem": "npm"
},
{
"name": "@tanstack/router-cli",
"direct": false,
"version": "^1.95.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/router-core",
"direct": false,
"version": "1.171.13",
"ecosystem": "npm"
},
{
"name": "@tanstack/router-generator",
"direct": false,
"version": "1.167.17",
"ecosystem": "npm"
},
{
"name": "@tanstack/router-plugin",
"direct": false,
"version": "1.168.18",
"ecosystem": "npm"
},
{
"name": "@tanstack/router-plugin",
"direct": false,
"version": "^1.95.0",
"ecosystem": "npm"
},
{
"name": "@tanstack/router-utils",
"direct": false,
"version": "1.162.2",
"ecosystem": "npm"
},
{
"name": "@tanstack/store",
"direct": false,
"version": "0.9.3",
"ecosystem": "npm"
},
{
"name": "@tanstack/virtual-file-routes",
"direct": false,
"version": "1.162.0",
"ecosystem": "npm"
},
{
"name": "@testing-library/dom",
"direct": false,
"version": "10.4.1",
"ecosystem": "npm"
},
{
"name": "@testing-library/dom",
"direct": false,
"version": "^10.4.0",
"ecosystem": "npm"
},
{
"name": "@testing-library/react",
"direct": false,
"version": "16.3.2",
"ecosystem": "npm"
},
{
"name": "@testing-library/react",
"direct": false,
"version": "^16.1.0",
"ecosystem": "npm"
},
{
"name": "@tybys/wasm-util",
"direct": false,
"version": "0.10.2",
"ecosystem": "npm"
},
{
"name": "@types/aria-query",
"direct": false,
"version": "5.0.4",
"ecosystem": "npm"
},
{
"name": "@types/babel__core",
"direct": false,
"version": "7.20.5",
"ecosystem": "npm"
},
{
"name": "@types/babel__generator",
"direct": false,
"version": "7.27.0",
"ecosystem": "npm"
},
{
"name": "@types/babel__template",
"direct": false,
"version": "7.4.4",
"ecosystem": "npm"
},
{
"name": "@types/babel__traverse",
"direct": false,
"version": "7.28.0",
"ecosystem": "npm"
},
{
"name": "@types/chai",
"direct": false,
"version": "5.2.3",
"ecosystem": "npm"
},
{
"name": "@types/d3-array",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "@types/d3-color",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "@types/d3-delaunay",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "@types/d3-format",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "@types/d3-geo",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "@types/d3-interpolate",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "@types/d3-path",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "@types/d3-scale",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "@types/d3-shape",
"direct": false,
"version": "3.1.7",
"ecosystem": "npm"
},
{
"name": "@types/d3-time",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "@types/d3-time-format",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "@types/deep-eql",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "@types/estree",
"direct": false,
"version": "1.0.9",
"ecosystem": "npm"
},
{
"name": "@types/geojson",
"direct": false,
"version": "7946.0.16",
"ecosystem": "npm"
},
{
"name": "@types/node",
"direct": false,
"version": "22.19.21",
"ecosystem": "npm"
},
{
"name": "@types/react",
"direct": false,
"version": "19.2.17",
"ecosystem": "npm"
},
{
"name": "@types/react",
"direct": false,
"version": "^19.0.0",
"ecosystem": "npm"
},
{
"name": "@types/react-dom",
"direct": false,
"version": "19.2.3",
"ecosystem": "npm"
},
{
"name": "@types/react-dom",
"direct": false,
"version": "^19.0.0",
"ecosystem": "npm"
},
{
"name": "@types/set-cookie-parser",
"direct": false,
"version": "2.4.10",
"ecosystem": "npm"
},
{
"name": "@types/statuses",
"direct": false,
"version": "2.0.6",
"ecosystem": "npm"
},
{
"name": "@types/trusted-types",
"direct": false,
"version": "2.0.7",
"ecosystem": "npm"
},
{
"name": "@visx/bounds",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/curve",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/event",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/event",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/group",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/group",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/point",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/responsive",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/responsive",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/scale",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/scale",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/shape",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/shape",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/tooltip",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/tooltip",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "@visx/vendor",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "@vitejs/plugin-react",
"direct": false,
"version": "5.2.0",
"ecosystem": "npm"
},
{
"name": "@vitejs/plugin-react",
"direct": false,
"version": "^5.0.0",
"ecosystem": "npm"
},
{
"name": "@vitest/expect",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/mocker",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/pretty-format",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/runner",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/snapshot",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/spy",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "@vitest/utils",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "agent-base",
"direct": false,
"version": "7.1.4",
"ecosystem": "npm"
},
{
"name": "ansi-colors",
"direct": false,
"version": "4.1.3",
"ecosystem": "npm"
},
{
"name": "ansi-regex",
"direct": false,
"version": "5.0.1",
"ecosystem": "npm"
},
{
"name": "ansi-styles",
"direct": false,
"version": "4.3.0",
"ecosystem": "npm"
},
{
"name": "ansi-styles",
"direct": false,
"version": "5.2.0",
"ecosystem": "npm"
},
{
"name": "ansis",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "argparse",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "aria-query",
"direct": false,
"version": "5.3.0",
"ecosystem": "npm"
},
{
"name": "assertion-error",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "asynckit",
"direct": false,
"version": "0.4.0",
"ecosystem": "npm"
},
{
"name": "babel-dead-code-elimination",
"direct": false,
"version": "1.0.12",
"ecosystem": "npm"
},
{
"name": "balanced-match",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "baseline-browser-mapping",
"direct": false,
"version": "2.10.37",
"ecosystem": "npm"
},
{
"name": "brace-expansion",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "browserslist",
"direct": false,
"version": "4.28.2",
"ecosystem": "npm"
},
{
"name": "call-bind-apply-helpers",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "caniuse-lite",
"direct": false,
"version": "1.0.30001799",
"ecosystem": "npm"
},
{
"name": "chai",
"direct": false,
"version": "6.2.2",
"ecosystem": "npm"
},
{
"name": "change-case",
"direct": false,
"version": "5.4.4",
"ecosystem": "npm"
},
{
"name": "chokidar",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "classnames",
"direct": false,
"version": "2.5.1",
"ecosystem": "npm"
},
{
"name": "cli-width",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "cliui",
"direct": false,
"version": "8.0.1",
"ecosystem": "npm"
},
{
"name": "clsx",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "clsx",
"direct": false,
"version": "^2.1.1",
"ecosystem": "npm"
},
{
"name": "color-convert",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "color-name",
"direct": false,
"version": "1.1.4",
"ecosystem": "npm"
},
{
"name": "colorette",
"direct": false,
"version": "1.4.0",
"ecosystem": "npm"
},
{
"name": "combined-stream",
"direct": false,
"version": "1.0.8",
"ecosystem": "npm"
},
{
"name": "convert-source-map",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "cookie",
"direct": false,
"version": "1.1.1",
"ecosystem": "npm"
},
{
"name": "cookie-es",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "core-js",
"direct": false,
"version": "3.49.0",
"ecosystem": "npm"
},
{
"name": "crelt",
"direct": false,
"version": "1.0.6",
"ecosystem": "npm"
},
{
"name": "cssstyle",
"direct": false,
"version": "4.6.0",
"ecosystem": "npm"
},
{
"name": "csstype",
"direct": false,
"version": "3.2.3",
"ecosystem": "npm"
},
{
"name": "d3-array",
"direct": false,
"version": "3.2.1",
"ecosystem": "npm"
},
{
"name": "d3-color",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-delaunay",
"direct": false,
"version": "6.0.2",
"ecosystem": "npm"
},
{
"name": "d3-format",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-geo",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-interpolate",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-path",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-scale",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "d3-shape",
"direct": false,
"version": "3.2.0",
"ecosystem": "npm"
},
{
"name": "d3-time",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-time-format",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "data-urls",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "debug",
"direct": false,
"version": "4.4.3",
"ecosystem": "npm"
},
{
"name": "decimal.js",
"direct": false,
"version": "10.6.0",
"ecosystem": "npm"
},
{
"name": "delaunator",
"direct": false,
"version": "5.1.0",
"ecosystem": "npm"
},
{
"name": "delayed-stream",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "dequal",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "detect-libc",
"direct": false,
"version": "2.1.2",
"ecosystem": "npm"
},
{
"name": "diff",
"direct": false,
"version": "8.0.4",
"ecosystem": "npm"
},
{
"name": "dom-accessibility-api",
"direct": false,
"version": "0.5.16",
"ecosystem": "npm"
},
{
"name": "dompurify",
"direct": false,
"version": "3.4.11",
"ecosystem": "npm"
},
{
"name": "dunder-proto",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "electron-to-chromium",
"direct": false,
"version": "1.5.374",
"ecosystem": "npm"
},
{
"name": "emoji-regex",
"direct": false,
"version": "8.0.0",
"ecosystem": "npm"
},
{
"name": "enhanced-resolve",
"direct": false,
"version": "5.21.6",
"ecosystem": "npm"
},
{
"name": "entities",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "es-define-property",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "es-errors",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "es-module-lexer",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "es-object-atoms",
"direct": false,
"version": "1.1.2",
"ecosystem": "npm"
},
{
"name": "es-set-tostringtag",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "esbuild",
"direct": false,
"version": "0.28.1",
"ecosystem": "npm"
},
{
"name": "escalade",
"direct": false,
"version": "3.2.0",
"ecosystem": "npm"
},
{
"name": "estree-walker",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "expect-type",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "fast-deep-equal",
"direct": false,
"version": "3.1.3",
"ecosystem": "npm"
},
{
"name": "fast-string-truncated-width",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "fast-string-width",
"direct": false,
"version": "3.0.2",
"ecosystem": "npm"
},
{
"name": "fast-wrap-ansi",
"direct": false,
"version": "0.2.2",
"ecosystem": "npm"
},
{
"name": "fdir",
"direct": false,
"version": "6.5.0",
"ecosystem": "npm"
},
{
"name": "fflate",
"direct": false,
"version": "0.4.8",
"ecosystem": "npm"
},
{
"name": "form-data",
"direct": false,
"version": "4.0.6",
"ecosystem": "npm"
},
{
"name": "fsevents",
"direct": false,
"version": "2.3.3",
"ecosystem": "npm"
},
{
"name": "function-bind",
"direct": false,
"version": "1.1.2",
"ecosystem": "npm"
},
{
"name": "gensync",
"direct": false,
"version": "1.0.0-beta.2",
"ecosystem": "npm"
},
{
"name": "get-caller-file",
"direct": false,
"version": "2.0.5",
"ecosystem": "npm"
},
{
"name": "get-intrinsic",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "get-proto",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "gopd",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "graceful-fs",
"direct": false,
"version": "4.2.11",
"ecosystem": "npm"
},
{
"name": "graphql",
"direct": false,
"version": "16.14.2",
"ecosystem": "npm"
},
{
"name": "has-symbols",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "has-tostringtag",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "hasown",
"direct": false,
"version": "2.0.4",
"ecosystem": "npm"
},
{
"name": "headers-polyfill",
"direct": false,
"version": "5.0.1",
"ecosystem": "npm"
},
{
"name": "html-encoding-sniffer",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "http-proxy-agent",
"direct": false,
"version": "7.0.2",
"ecosystem": "npm"
},
{
"name": "https-proxy-agent",
"direct": false,
"version": "7.0.6",
"ecosystem": "npm"
},
{
"name": "iconv-lite",
"direct": false,
"version": "0.6.3",
"ecosystem": "npm"
},
{
"name": "index-to-position",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "internmap",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "is-fullwidth-code-point",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "is-node-process",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "is-potential-custom-element-name",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "isbot",
"direct": false,
"version": "5.1.43",
"ecosystem": "npm"
},
{
"name": "jiti",
"direct": false,
"version": "2.7.0",
"ecosystem": "npm"
},
{
"name": "js-levenshtein",
"direct": false,
"version": "1.1.6",
"ecosystem": "npm"
},
{
"name": "js-tokens",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "js-yaml",
"direct": false,
"version": "4.1.1",
"ecosystem": "npm"
},
{
"name": "jsdom",
"direct": false,
"version": "25.0.1",
"ecosystem": "npm"
},
{
"name": "jsdom",
"direct": false,
"version": "^25.0.0",
"ecosystem": "npm"
},
{
"name": "jsesc",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "json-schema-traverse",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "json5",
"direct": false,
"version": "2.2.3",
"ecosystem": "npm"
},
{
"name": "lightningcss",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-android-arm64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-darwin-arm64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-darwin-x64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-freebsd-x64",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-arm-gnueabihf",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-arm64-gnu",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-arm64-musl",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-x64-gnu",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-linux-x64-musl",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-win32-arm64-msvc",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "lightningcss-win32-x64-msvc",
"direct": false,
"version": "1.32.0",
"ecosystem": "npm"
},
{
"name": "loose-envify",
"direct": false,
"version": "1.4.0",
"ecosystem": "npm"
},
{
"name": "lru-cache",
"direct": false,
"version": "10.4.3",
"ecosystem": "npm"
},
{
"name": "lru-cache",
"direct": false,
"version": "5.1.1",
"ecosystem": "npm"
},
{
"name": "lz-string",
"direct": false,
"version": "1.5.0",
"ecosystem": "npm"
},
{
"name": "magic-string",
"direct": false,
"version": "0.30.21",
"ecosystem": "npm"
},
{
"name": "math-intrinsics",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "mime-db",
"direct": false,
"version": "1.52.0",
"ecosystem": "npm"
},
{
"name": "mime-types",
"direct": false,
"version": "2.1.35",
"ecosystem": "npm"
},
{
"name": "minimatch",
"direct": false,
"version": "5.1.9",
"ecosystem": "npm"
},
{
"name": "ms",
"direct": false,
"version": "2.1.3",
"ecosystem": "npm"
},
{
"name": "msw",
"direct": false,
"version": "2.14.6",
"ecosystem": "npm"
},
{
"name": "msw",
"direct": false,
"version": "^2.11.0",
"ecosystem": "npm"
},
{
"name": "mute-stream",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "nanoid",
"direct": false,
"version": "3.3.12",
"ecosystem": "npm"
},
{
"name": "node-releases",
"direct": false,
"version": "2.0.47",
"ecosystem": "npm"
},
{
"name": "nwsapi",
"direct": false,
"version": "2.2.24",
"ecosystem": "npm"
},
{
"name": "object-assign",
"direct": false,
"version": "4.1.1",
"ecosystem": "npm"
},
{
"name": "obug",
"direct": false,
"version": "2.1.3",
"ecosystem": "npm"
},
{
"name": "openapi-typescript",
"direct": false,
"version": "7.13.0",
"ecosystem": "npm"
},
{
"name": "outvariant",
"direct": false,
"version": "1.4.3",
"ecosystem": "npm"
},
{
"name": "parse-json",
"direct": false,
"version": "8.3.0",
"ecosystem": "npm"
},
{
"name": "parse5",
"direct": false,
"version": "7.3.0",
"ecosystem": "npm"
},
{
"name": "path-to-regexp",
"direct": false,
"version": "6.3.0",
"ecosystem": "npm"
},
{
"name": "pathe",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "picocolors",
"direct": false,
"version": "1.1.1",
"ecosystem": "npm"
},
{
"name": "picomatch",
"direct": false,
"version": "4.0.4",
"ecosystem": "npm"
},
{
"name": "pluralize",
"direct": false,
"version": "8.0.0",
"ecosystem": "npm"
},
{
"name": "postcss",
"direct": false,
"version": "8.5.15",
"ecosystem": "npm"
},
{
"name": "posthog-js",
"direct": false,
"version": "1.399.0",
"ecosystem": "npm"
},
{
"name": "preact",
"direct": false,
"version": "10.29.5",
"ecosystem": "npm"
},
{
"name": "prettier",
"direct": false,
"version": "3.8.4",
"ecosystem": "npm"
},
{
"name": "pretty-format",
"direct": false,
"version": "27.5.1",
"ecosystem": "npm"
},
{
"name": "prop-types",
"direct": false,
"version": "15.8.1",
"ecosystem": "npm"
},
{
"name": "punycode",
"direct": false,
"version": "2.3.1",
"ecosystem": "npm"
},
{
"name": "query-selector-shadow-dom",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "react",
"direct": false,
"version": "19.2.7",
"ecosystem": "npm"
},
{
"name": "react",
"direct": false,
"version": "^19.0.0",
"ecosystem": "npm"
},
{
"name": "react-dom",
"direct": false,
"version": "19.2.7",
"ecosystem": "npm"
},
{
"name": "react-dom",
"direct": false,
"version": "^19.0.0",
"ecosystem": "npm"
},
{
"name": "react-is",
"direct": false,
"version": "16.13.1",
"ecosystem": "npm"
},
{
"name": "react-is",
"direct": false,
"version": "17.0.2",
"ecosystem": "npm"
},
{
"name": "react-refresh",
"direct": false,
"version": "0.18.0",
"ecosystem": "npm"
},
{
"name": "react-use-measure",
"direct": false,
"version": "2.1.7",
"ecosystem": "npm"
},
{
"name": "readdirp",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "require-directory",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "require-from-string",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "rettime",
"direct": false,
"version": "0.11.11",
"ecosystem": "npm"
},
{
"name": "robust-predicates",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "rolldown",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "rrweb-cssom",
"direct": false,
"version": "0.7.1",
"ecosystem": "npm"
},
{
"name": "rrweb-cssom",
"direct": false,
"version": "0.8.0",
"ecosystem": "npm"
},
{
"name": "safer-buffer",
"direct": false,
"version": "2.1.2",
"ecosystem": "npm"
},
{
"name": "saxes",
"direct": false,
"version": "6.0.0",
"ecosystem": "npm"
},
{
"name": "scheduler",
"direct": false,
"version": "0.27.0",
"ecosystem": "npm"
},
{
"name": "semver",
"direct": false,
"version": "6.3.1",
"ecosystem": "npm"
},
{
"name": "seroval",
"direct": false,
"version": "1.5.4",
"ecosystem": "npm"
},
{
"name": "seroval-plugins",
"direct": false,
"version": "1.5.4",
"ecosystem": "npm"
},
{
"name": "set-cookie-parser",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "siginfo",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "signal-exit",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "source-map-js",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "stackback",
"direct": false,
"version": "0.0.2",
"ecosystem": "npm"
},
{
"name": "statuses",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "std-env",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "strict-event-emitter",
"direct": false,
"version": "0.5.1",
"ecosystem": "npm"
},
{
"name": "string-width",
"direct": false,
"version": "4.2.3",
"ecosystem": "npm"
},
{
"name": "strip-ansi",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "style-mod",
"direct": false,
"version": "4.1.3",
"ecosystem": "npm"
},
{
"name": "supports-color",
"direct": false,
"version": "10.2.2",
"ecosystem": "npm"
},
{
"name": "symbol-tree",
"direct": false,
"version": "3.2.4",
"ecosystem": "npm"
},
{
"name": "tagged-tag",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "tailwind-merge",
"direct": false,
"version": "2.6.1",
"ecosystem": "npm"
},
{
"name": "tailwind-merge",
"direct": false,
"version": "^2.5.5",
"ecosystem": "npm"
},
{
"name": "tailwindcss",
"direct": false,
"version": "4.3.1",
"ecosystem": "npm"
},
{
"name": "tailwindcss",
"direct": false,
"version": "^4.0.0",
"ecosystem": "npm"
},
{
"name": "tapable",
"direct": false,
"version": "2.3.3",
"ecosystem": "npm"
},
{
"name": "tinybench",
"direct": false,
"version": "2.9.0",
"ecosystem": "npm"
},
{
"name": "tinyexec",
"direct": false,
"version": "1.2.4",
"ecosystem": "npm"
},
{
"name": "tinyglobby",
"direct": false,
"version": "0.2.17",
"ecosystem": "npm"
},
{
"name": "tinyrainbow",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "tldts",
"direct": false,
"version": "6.1.86",
"ecosystem": "npm"
},
{
"name": "tldts",
"direct": false,
"version": "7.4.3",
"ecosystem": "npm"
},
{
"name": "tldts-core",
"direct": false,
"version": "6.1.86",
"ecosystem": "npm"
},
{
"name": "tldts-core",
"direct": false,
"version": "7.4.3",
"ecosystem": "npm"
},
{
"name": "tough-cookie",
"direct": false,
"version": "5.1.2",
"ecosystem": "npm"
},
{
"name": "tough-cookie",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "tr46",
"direct": false,
"version": "5.1.1",
"ecosystem": "npm"
},
{
"name": "tslib",
"direct": false,
"version": "2.8.1",
"ecosystem": "npm"
},
{
"name": "tsx",
"direct": false,
"version": "4.22.4",
"ecosystem": "npm"
},
{
"name": "type-fest",
"direct": false,
"version": "4.41.0",
"ecosystem": "npm"
},
{
"name": "type-fest",
"direct": false,
"version": "5.7.0",
"ecosystem": "npm"
},
{
"name": "typescript",
"direct": false,
"version": "5.9.3",
"ecosystem": "npm"
},
{
"name": "typescript",
"direct": false,
"version": "^5.7.0",
"ecosystem": "npm"
},
{
"name": "undici-types",
"direct": false,
"version": "6.21.0",
"ecosystem": "npm"
},
{
"name": "unplugin",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "until-async",
"direct": false,
"version": "3.0.2",
"ecosystem": "npm"
},
{
"name": "update-browserslist-db",
"direct": false,
"version": "1.2.3",
"ecosystem": "npm"
},
{
"name": "uri-js-replace",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "use-sync-external-store",
"direct": false,
"version": "1.6.0",
"ecosystem": "npm"
},
{
"name": "vite",
"direct": false,
"version": "8.0.16",
"ecosystem": "npm"
},
{
"name": "vite",
"direct": false,
"version": "^8.0.0",
"ecosystem": "npm"
},
{
"name": "vitest",
"direct": false,
"version": "4.1.9",
"ecosystem": "npm"
},
{
"name": "vitest",
"direct": false,
"version": "^4.1.0",
"ecosystem": "npm"
},
{
"name": "w3c-keyname",
"direct": false,
"version": "2.2.8",
"ecosystem": "npm"
},
{
"name": "w3c-xmlserializer",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "web-vitals",
"direct": false,
"version": "5.3.0",
"ecosystem": "npm"
},
{
"name": "webidl-conversions",
"direct": false,
"version": "7.0.0",
"ecosystem": "npm"
},
{
"name": "webpack-virtual-modules",
"direct": false,
"version": "0.6.2",
"ecosystem": "npm"
},
{
"name": "whatwg-encoding",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "whatwg-mimetype",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "whatwg-url",
"direct": false,
"version": "14.2.0",
"ecosystem": "npm"
},
{
"name": "why-is-node-running",
"direct": false,
"version": "2.3.0",
"ecosystem": "npm"
},
{
"name": "wrap-ansi",
"direct": false,
"version": "7.0.0",
"ecosystem": "npm"
},
{
"name": "ws",
"direct": false,
"version": "8.21.0",
"ecosystem": "npm"
},
{
"name": "xml-name-validator",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "xmlchars",
"direct": false,
"version": "2.2.0",
"ecosystem": "npm"
},
{
"name": "y18n",
"direct": false,
"version": "5.0.8",
"ecosystem": "npm"
},
{
"name": "yallist",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "yaml",
"direct": false,
"version": "2.9.0",
"ecosystem": "npm"
},
{
"name": "yaml",
"direct": false,
"version": "^2.9.0",
"ecosystem": "npm"
},
{
"name": "yaml-ast-parser",
"direct": false,
"version": "0.0.43",
"ecosystem": "npm"
},
{
"name": "yargs",
"direct": false,
"version": "17.7.2",
"ecosystem": "npm"
},
{
"name": "yargs-parser",
"direct": false,
"version": "21.1.1",
"ecosystem": "npm"
},
{
"name": "zod",
"direct": false,
"version": "4.4.3",
"ecosystem": "npm"
}
],
"collected": true,
"truncated": false,
"total_count": 917,
"direct_count": 138,
"indirect_count": 779
}
},
"maintainership": {
"issues": {
"open_prs": 1,
"merged_prs": 81,
"open_issues": 0,
"closed_ratio": null,
"closed_issues": 0,
"closed_unmerged_prs": 9
},
"bus_factor": 1,
"bot_contributors": 0,
"top_contributors": [
{
"type": "User",
"login": "dilyevsky",
"commits": 913,
"avatar_url": "https://avatars.githubusercontent.com/u/767232?v=4"
},
{
"type": "User",
"login": "theRealWardo",
"commits": 139,
"avatar_url": "https://avatars.githubusercontent.com/u/284347?v=4"
},
{
"type": "User",
"login": "dpeckett",
"commits": 48,
"avatar_url": "https://avatars.githubusercontent.com/u/3140685?v=4"
},
{
"type": "User",
"login": "bryantanderson",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/118069017?v=4"
}
],
"contributors_sampled": 4,
"top_contributor_share": 0.829
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"dev.yaml",
"main.yaml",
"release.yaml"
],
"has_docs_dir": true,
"linter_configs": [],
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"go.sum",
"pnpm-lock.yaml"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 0,
"reason": "branch protection not enabled on development/release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 10,
"reason": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 0/30 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 10,
"reason": "project has 3 contributing companies or organizations -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 0,
"reason": "no update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "SAST tool is not run on all commits -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": 0,
"reason": "Project has not signed or included provenance with any releases.",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 0,
"reason": "101 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "e4d7dc78f1a7f0b732477bc541d777ab210ebba1",
"ran_at": "2026-07-23T04:28:04Z",
"aggregate_score": 3.2,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-23T03:45:58Z",
"oldest_open_prs": [
{
"number": 78,
"created_at": "2025-10-31T17:43:03Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2026-07-16T06:06:46Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": []
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/apoxy-dev/apoxy",
"host": "github.com",
"name": "apoxy",
"owner": "apoxy-dev"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 56,
"inputs": {
"security": 30,
"vitality": 95,
"community": 20,
"governance": 59,
"engineering": 61
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "excellent",
"name": "Vitality",
"value": 95,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "excellent",
"name": "Development activity",
"note": null,
"notes": [],
"value": 98,
"inputs": {
"commits_last_year": 495,
"human_commit_share": 1,
"days_since_last_push": 0,
"active_weeks_last_year": 49
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 0 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 0
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "49/52 weeks with commits",
"points": 33.9,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 49
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "495 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 495
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": null,
"notes": [],
"value": 90,
"inputs": {
"releases_count": 83,
"latest_release_tag": "v0.11.25",
"releases_from_tags": false,
"days_since_latest_release": 6,
"mean_days_between_releases": 11.9
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "83 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 83
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 6 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 6
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~11.9 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 11.9
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 0,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 0 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 0
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "critical",
"name": "Community & Adoption",
"value": 20,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 16,
"inputs": {
"forks": 2,
"stars": 11,
"watchers": 2,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "11 stars",
"points": 16.2,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 11
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "2 forks",
"points": 0,
"status": "missed",
"details": [
{
"code": "forks",
"params": {
"count": 2
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "2 watchers",
"points": 0,
"status": "missed",
"details": [
{
"code": "watchers",
"params": {
"count": 2
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "critical",
"name": "Community health",
"note": null,
"notes": [],
"value": 25,
"inputs": {
"has_readme": false,
"has_license": true,
"has_contributing": false,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (AGPL-3.0)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "AGPL-3.0"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 59,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "critical",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 28,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 4,
"top_contributor_share": 0.829
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 83% of commits",
"points": 3.8,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 83
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "4 contributors",
"points": 5.4,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 4
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 3 contributing companies or organizations -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "moderate",
"name": "Issue & PR responsiveness",
"note": "Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"issue_resolution"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 65,
"inputs": {
"merged_prs": 81,
"open_issues": 0,
"closed_issues": 0,
"issue_closed_ratio": null,
"closed_unmerged_prs": 9
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "no issues or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_issues_or_data",
"params": {}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "81/90 decided PRs merged",
"points": 34.4,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 81,
"decided": 90
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "moderate",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 56,
"inputs": {
"followers": 6,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "apoxy-dev",
"public_repos": 34,
"account_age_days": 1501
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "6 followers of apoxy-dev",
"points": 6.1,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 6,
"login": "apoxy-dev"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "34 public repos, account ~4 yr old",
"points": 19.5,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 34
}
},
{
"code": "account_age_years",
"params": {
"years": 4
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"github.com/apoxy-dev/apoxy"
],
"ecosystems": "go",
"any_deprecated": false,
"min_days_since_publish": 70
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on go",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "go"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 70 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 70
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "128 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 128
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "moderate",
"name": "Engineering Quality",
"value": 61,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "moderate",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 68,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "3 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 3
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
"points": 20,
"status": "met",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "moderate",
"name": "Documentation",
"note": null,
"notes": [],
"value": 50,
"inputs": {
"topics": [],
"has_wiki": false,
"homepage": "https://apoxy.dev",
"has_readme": false,
"has_docs_dir": true,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 25,
"status": "met",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://apoxy.dev",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "at_risk",
"name": "Security",
"value": 30,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "at_risk",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Packaging. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"packaging"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 32,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 17,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 1,
"scorecard_aggregate": 3.2
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection not enabled on development/release branches",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 3 contributing companies or organizations -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "no update tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "101 existing vulnerabilities detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "critical",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 881 resolved dependencies against OSV; 36 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 881
}
},
{
"code": "advisories_unassessed",
"params": {
"count": 36
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 20,
"inputs": {
"source": "osv",
"advisories": 186,
"affected_packages": 34,
"assessed_packages": 881,
"unassessed_packages": 36,
"affected_by_severity": "critical 4, high 9, moderate 4, low 3, unknown 14",
"direct_affected_packages": 18
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "18 affected: github.com/envoyproxy/gateway v1.4.0 (critical 9.1), golang.org/x/crypto v0.51.0 (critical 10.0), google.golang.org/grpc v1.76.0 (critical 9.1), +15 more",
"points": 1.9,
"status": "partial",
"details": [
{
"code": "advisories_affected",
"params": {
"count": 18,
"packages": "github.com/envoyproxy/gateway v1.4.0 (critical 9.1), golang.org/x/crypto v0.51.0 (critical 10.0), google.golang.org/grpc v1.76.0 (critical 9.1)"
}
},
{
"code": "advisories_affected_more",
"params": {
"count": 15
}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "13 advisory-carrying package(s) unaddressed past 90 days; oldest published 526 days ago",
"points": 13,
"status": "partial",
"details": [
{
"code": "advisories_stale",
"params": {
"days": 90,
"count": 13,
"oldest": 526
}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 881,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 4
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "moderate",
"name": "AI Readiness",
"value": 69,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "good",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 82,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.69,
"agent_instruction_files": [
"CLAUDE.md"
],
"agent_instruction_max_bytes": 7921
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "CLAUDE.md",
"points": 45,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "CLAUDE.md"
}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "69 of 100 human commits state their intent (structured subject or explanatory body)",
"points": 36.8,
"status": "partial",
"details": [
{
"code": "legible_history",
"params": {
"legible": 69,
"sampled": 100
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "moderate",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 58,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"go.sum",
"pnpm-lock.yaml"
],
"has_dockerfile": false,
"typed_language": true,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": false,
"typecheck_configs": [
"console/apps/apoxy-console/tsconfig.json",
"console/packages/core/tsconfig.json"
],
"agent_commit_share": 0.01,
"toolchain_manifests": [
"ci/go.mod",
"go.mod"
],
"dependency_bot_commit_share": 0
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": "ci/go.mod, go.mod (toolchain convention, no task runner)",
"points": 12.6,
"status": "partial",
"details": [
{
"code": "toolchain_convention",
"params": {
"files": "ci/go.mod, go.mod"
}
}
],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "console/apps/apoxy-console/tsconfig.json, console/packages/core/tsconfig.json",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "console/apps/apoxy-console/tsconfig.json, console/packages/core/tsconfig.json"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "1 of the last 100 commits agent-authored or agent-credited",
"points": 2,
"status": "partial",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 1,
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "no automated dependency updates observed",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_dependency_automation",
"params": {}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "excellent",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"primary_language": "Go",
"largest_source_bytes": 982171,
"source_files_sampled": 1075,
"oversized_source_files": 5
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "Go (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "5/1075 source files over 60KB",
"points": 54.7,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 1075,
"oversized": 5
}
}
],
"max_points": 55
}
]
},
{
"key": "ai_interfaces",
"band": "at_risk",
"name": "Machine-readable interfaces",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"example_dirs": [],
"has_mcp_signal": false,
"api_schema_files": [
"api/workerd/v1/egress.proto",
"api/workerd/v1/vpcdns.proto",
"console/openapi.json"
]
},
"components": [
{
"key": "api_schema_openapi_graphql_proto",
"name": "API schema (OpenAPI/GraphQL/proto)",
"detail": "api/workerd/v1/egress.proto, api/workerd/v1/vpcdns.proto, console/openapi.json",
"points": 40,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "api/workerd/v1/egress.proto, api/workerd/v1/vpcdns.proto, console/openapi.json"
}
}
],
"max_points": 40
},
{
"key": "mcp_server",
"name": "MCP server",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "runnable_examples",
"name": "Runnable examples",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 40
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
"Advisory severity resolved for 120 of 172 advisories (lookup cap); the remainder are reported as unknown severity"
],
"report_type": "repository",
"generated_at": "2026-07-23T04:28:12.239889Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/a/apoxy-dev/apoxy.svg",
"full_name": "apoxy-dev/apoxy",
"license_state": "standard",
"license_spdx": "AGPL-3.0"
}