Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-27 04:38 UTC

aspect-build / rules_ts

Bazel rules for the `tsc` compiler from http://typescriptlang.org

Starlark · ShellApache-2.0★ 136 stars⑂ 86 forkssince Apr 2022View on GitHub ↗

aspect-build/rules_ts holds a health index of 79 out of 100, placing it in the Good band. It scores highest on Vitality (92/100) and lowest on AI Readiness (64/100). It was last updated 1 day ago. 2 contributors account for most of its recent work.

79
overall / 100
Good

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

79
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

Aspect BuildOrganization
173 followers31 public repossince Feb 2020

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

92Excellent · 22% of overall
How it's scored
36/36Push recency — last push 1 days ago
22.8/36Commit cadence — 33/52 weeks with commits
18/18Commit volume — 113 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 6 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year113
human_commit_share0.98
days_since_last_push1
active_weeks_last_year33

Release discipline

100Excellent
How it's scored
27/27Ships releases — 96 releases published
36/36Release recency — latest release 9 days ago
27/27Release cadence — a release every ~16.9 days
10/10OpenSSF Scorecard: Signed-Releases — 5 out of the last 5 releases have a total of 5 signed artifacts.
Inputs used
releases_count96
latest_release_tagv3.9.2
releases_from_tagsno
days_since_latest_release9
mean_days_between_releases16.9

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

72Good · 18% of overall
How it's scored
34.6/60Stars — 136 stars
16.1/25Forks — 86 forks
3.3/15Watchers — 5 watchers
Inputs used
forks86
stars136
watchers5
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

Community health

92Excellent
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (Apache-2.0)
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateyes

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

69Moderate · 24% of overall
How it's scored
25.2/54Bus factor — 2 contributor(s) cover half of all commits
15.7/22.5Commit distribution — top contributor authored 30% of commits
13.5/13.5Contributor breadth — 45 contributors
10/10OpenSSF Scorecard: Contributors — project has 13 contributing companies or organizations
Inputs used
bus_factor2
contributors_sampled45
top_contributor_share0.304
How it's scored
35.4/46.8Issue resolution — 76% of issues closed
32/38.3PR acceptance — 622/744 decided PRs merged
7.5/15OpenSSF Scorecard: Code-Review — Found 17/30 approved changesets -- score normalized to 5
Inputs used
merged_prs622
open_issues51
closed_issues159
issue_closed_ratio0.757
closed_unmerged_prs122
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
16.1/25Owner reach — 173 followers of aspect-build
23/25Track record — 31 public repos, account ~6 yr old
Inputs used
followers173
owner_typeOrganization
is_verified
owner_loginaspect-build
public_repos31
account_age_days2,357

Engineering Quality

Are baseline engineering and documentation practices in place?

86Excellent · 20% of overall
How it's scored
24/24CI workflows — 6 workflow(s)
24/24Tests present
16/16Linter config
9.6/9.6Pre-commit hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 24 out of 24 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configyes
How it's scored
30/30README
25/25Documentation directory
0/15Documentation / homepage site
10/10Repository description
10/10Topics — 3 topics
0/10Wiki
Inputs used
topicsbazel, bazel-rules, typescript
has_wikino
homepage
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

74Good · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
2.5/2.5CI-Tests — 24 out of 24 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
3.8/7.5Code-Review — Found 17/30 approved changesets -- score normalized to 5
2.5/2.5Contributors — project has 13 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 6 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
3/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
7.5/7.5Signed-Releases — 5 out of the last 5 releases have a total of 5 signed artifacts.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate6.7
Excluded from scoring (no data or not applicable): branch_protection, packaging. Remaining weights renormalized.
How it's scored
35/35Direct dependencies free of known advisories — no direct dependency carries a known advisory
0/25Indirect dependencies free of known advisories — transitive set not separable from development and test dependencies in this scope
0/40No advisories left outstanding — no advisory carries a publication date
Inputs used
sourceosv
advisories34
affected_packages13
assessed_packages239
unassessed_packages9
affected_by_severitycritical 2, high 6, moderate 3, low 2
direct_affected_packages0
Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 239 resolved dependencies against OSV. 9 could not be assessed — no resolved version, an unsupported ecosystem, or beyond the reported package list. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

64Moderate · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 93 of 98 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.949
agent_instruction_files
agent_instruction_max_bytes
How it's scored
0/18One-command bootstrap
22/22Automated tests
11/11Lint / format config
11/11Static type checking — e2e/bzlmodules/module_a/tsconfig.json, e2e/bzlmodules/module_b/tsconfig.json, e2e/external_dep/sub_external/subdir/tsconfig.json, e2e/external_dep/sub_external/tsconfig.json, e2e/external_dep/tsconfig.json, e2e/nested_repos/module_a/tsconfig.json, e2e/nested_repos/module_b/tsconfig.json, e2e/smoke/tsconfig.json, examples/assets/tsconfig.json, examples/connect_node/tsconfig.json, examples/custom_compiler/tsconfig.json, examples/declaration_dir/tsconfig.json, examples/deps_pkg/tsconfig.json, examples/deps_pkg_transpiler/tsconfig.json, examples/dts_pkg-outDir/tsconfig.json, examples/dts_pkg/tsconfig.json, examples/emit_declaration_only/tsconfig.json, examples/extends_chain/main/tsconfig.json, examples/extends_chain/tsconfig.json, examples/generate_trace/tsconfig.json, examples/isolated_declarations/tsconfig.json, examples/isolated_typecheck/backend/tsconfig.json, examples/isolated_typecheck/tsconfig.json, examples/jsx/tsconfig.json, examples/lib_nocompile/tsconfig.json, examples/lib_nocompile_linked/tsconfig.json, examples/linked_empty_node_modules/tsconfig.json, examples/linked_lib/tsconfig.json, examples/linked_pkg/tsconfig.json, examples/linked_tsconfig/tsconfig.json, examples/linked_tsconfig_consumer/tsconfig.json, examples/module_ext/tsconfig.json, examples/no_emit/tsconfig.json, examples/output_group/tsconfig.json, examples/package_json_usage/colocated/tsconfig.json, examples/package_json_usage/tsconfig.json, examples/path_mappings/tsconfig.json, examples/project_references/app/tsconfig.json, examples/project_references/lib_a/tsconfig.json, examples/project_references/lib_b/tsconfig.json, examples/proto_grpc/tsconfig.json, examples/resolve_json_module/tsconfig.json, examples/resolve_json_module_esm/tsconfig.json, examples/resolve_json_module_out_dir/tsconfig.json, examples/resolve_json_module_transpiler/tsconfig.json, examples/root_dir/tsconfig.json, examples/simple/tsconfig.json, examples/srcs/tsconfig.json, examples/targets/tsconfig.json, examples/transpiler/tsconfig.json, examples/ts_project_dep/a/tsconfig.json, examples/ts_project_dep/b/tsconfig.json, examples/tsbuildinfo/tsconfig.json, examples/tsconfig_external/tsconfig.json, examples/tsconfig_locations/config/tsconfig.json, examples/tsconfig_types/tsconfig.json
10/10Reproducible environment — lockfile
10/10Demonstrated agent practice — 8 of the last 100 commits agent-authored or agent-credited
0/8Automated maintenance — no automated dependency updates observed
6/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
Inputs used
has_nixno
has_testsyes
lockfilespnpm-lock.yaml
has_dockerfileno
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_configyes
typecheck_configse2e/bzlmodules/module_a/tsconfig.json, e2e/bzlmodules/module_b/tsconfig.json, e2e/external_dep/sub_external/subdir/tsconfig.json, e2e/external_dep/sub_external/tsconfig.json, e2e/external_dep/tsconfig.json, e2e/nested_repos/module_a/tsconfig.json, e2e/nested_repos/module_b/tsconfig.json, e2e/smoke/tsconfig.json, examples/assets/tsconfig.json, examples/connect_node/tsconfig.json, examples/custom_compiler/tsconfig.json, examples/declaration_dir/tsconfig.json, examples/deps_pkg/tsconfig.json, examples/deps_pkg_transpiler/tsconfig.json, examples/dts_pkg-outDir/tsconfig.json, examples/dts_pkg/tsconfig.json, examples/emit_declaration_only/tsconfig.json, examples/extends_chain/main/tsconfig.json, examples/extends_chain/tsconfig.json, examples/generate_trace/tsconfig.json, examples/isolated_declarations/tsconfig.json, examples/isolated_typecheck/backend/tsconfig.json, examples/isolated_typecheck/tsconfig.json, examples/jsx/tsconfig.json, examples/lib_nocompile/tsconfig.json, examples/lib_nocompile_linked/tsconfig.json, examples/linked_empty_node_modules/tsconfig.json, examples/linked_lib/tsconfig.json, examples/linked_pkg/tsconfig.json, examples/linked_tsconfig/tsconfig.json, examples/linked_tsconfig_consumer/tsconfig.json, examples/module_ext/tsconfig.json, examples/no_emit/tsconfig.json, examples/output_group/tsconfig.json, examples/package_json_usage/colocated/tsconfig.json, examples/package_json_usage/tsconfig.json, examples/path_mappings/tsconfig.json, examples/project_references/app/tsconfig.json, examples/project_references/lib_a/tsconfig.json, examples/project_references/lib_b/tsconfig.json, examples/proto_grpc/tsconfig.json, examples/resolve_json_module/tsconfig.json, examples/resolve_json_module_esm/tsconfig.json, examples/resolve_json_module_out_dir/tsconfig.json, examples/resolve_json_module_transpiler/tsconfig.json, examples/root_dir/tsconfig.json, examples/simple/tsconfig.json, examples/srcs/tsconfig.json, examples/targets/tsconfig.json, examples/transpiler/tsconfig.json, examples/ts_project_dep/a/tsconfig.json, examples/ts_project_dep/b/tsconfig.json, examples/tsbuildinfo/tsconfig.json, examples/tsconfig_external/tsconfig.json, examples/tsconfig_locations/config/tsconfig.json, examples/tsconfig_types/tsconfig.json
agent_commit_share0.08
toolchain_manifests
dependency_bot_commit_share0
How it's scored
27/45Type-checkable code — Starlark with type-check config (e2e/bzlmodules/module_a/tsconfig.json, e2e/bzlmodules/module_b/tsconfig.json, e2e/external_dep/sub_external/subdir/tsconfig.json, e2e/external_dep/sub_external/tsconfig.json, e2e/external_dep/tsconfig.json, e2e/nested_repos/module_a/tsconfig.json, e2e/nested_repos/module_b/tsconfig.json, e2e/smoke/tsconfig.json, examples/assets/tsconfig.json, examples/connect_node/tsconfig.json, examples/custom_compiler/tsconfig.json, examples/declaration_dir/tsconfig.json, examples/deps_pkg/tsconfig.json, examples/deps_pkg_transpiler/tsconfig.json, examples/dts_pkg-outDir/tsconfig.json, examples/dts_pkg/tsconfig.json, examples/emit_declaration_only/tsconfig.json, examples/extends_chain/main/tsconfig.json, examples/extends_chain/tsconfig.json, examples/generate_trace/tsconfig.json, examples/isolated_declarations/tsconfig.json, examples/isolated_typecheck/backend/tsconfig.json, examples/isolated_typecheck/tsconfig.json, examples/jsx/tsconfig.json, examples/lib_nocompile/tsconfig.json, examples/lib_nocompile_linked/tsconfig.json, examples/linked_empty_node_modules/tsconfig.json, examples/linked_lib/tsconfig.json, examples/linked_pkg/tsconfig.json, examples/linked_tsconfig/tsconfig.json, examples/linked_tsconfig_consumer/tsconfig.json, examples/module_ext/tsconfig.json, examples/no_emit/tsconfig.json, examples/output_group/tsconfig.json, examples/package_json_usage/colocated/tsconfig.json, examples/package_json_usage/tsconfig.json, examples/path_mappings/tsconfig.json, examples/project_references/app/tsconfig.json, examples/project_references/lib_a/tsconfig.json, examples/project_references/lib_b/tsconfig.json, examples/proto_grpc/tsconfig.json, examples/resolve_json_module/tsconfig.json, examples/resolve_json_module_esm/tsconfig.json, examples/resolve_json_module_out_dir/tsconfig.json, examples/resolve_json_module_transpiler/tsconfig.json, examples/root_dir/tsconfig.json, examples/simple/tsconfig.json, examples/srcs/tsconfig.json, examples/targets/tsconfig.json, examples/transpiler/tsconfig.json, examples/ts_project_dep/a/tsconfig.json, examples/ts_project_dep/b/tsconfig.json, examples/tsbuildinfo/tsconfig.json, examples/tsconfig_external/tsconfig.json, examples/tsconfig_locations/config/tsconfig.json, examples/tsconfig_types/tsconfig.json)
55/55Manageable file sizes — 0/109 source files over 60KB
Inputs used
primary_languageStarlark
largest_source_bytes14,886
source_files_sampled109
oversized_source_files0
How it's scored
40/40API schema (OpenAPI/GraphQL/proto) — e2e/smoke/foo.proto, examples/connect_node/proto/eliza.proto, examples/proto_grpc/logger.proto, examples/proto_grpc/status.proto, examples/proto_grpc/stripping/s.proto, ts/test/ts_proto_library/bar.proto, ts/test/ts_proto_library/foo.proto
0/20MCP server
40/40Runnable examples — examples
Inputs used
example_dirsexamples
has_mcp_signalno
api_schema_filese2e/smoke/foo.proto, examples/connect_node/proto/eliza.proto, examples/proto_grpc/logger.proto, examples/proto_grpc/status.proto, examples/proto_grpc/stripping/s.proto, ts/test/ts_proto_library/bar.proto, ts/test/ts_proto_library/foo.proto

Key facts

136GitHub stars
45contributors
113commits, last 12 months
1days since last push
96releases
2bus factor
51open issues
npmpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token

More detail

Star and fork history 0 ★ / 86 ⇿
0Stars
86Forks
94Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

0204060801008422022-042024-062026-07
Major 3Minor 28Patch 45

Each point covers 4 days.

OpenSSF Scorecard 6.7 / 10
6.7aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-27 04:37 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
10CI-Tests24 out of 24 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
5Code-ReviewFound 17/30 approved changesets -- score normalized to 5
10Contributorsproject has 13 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 6 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
6Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 6
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
10Signed-Releases5 out of the last 5 releases have a total of 5 signed artifacts.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 1
RegistryPackageVersion constraintManifest
npm@bufbuild/protobuf1.8.0e2e/smoke/package.json
All dependencies 248

Full resolved dependency set from the GitHub dependency graph: 4 direct and 244 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
npm@bufbuild/protobuf1.8.0direct
npm@bufbuild/protobuf2.2.4direct
npm@bufbuild/protobuf^2.2.4direct
npm@bufbuild/protobuf~2.2.4direct
npm@ampproject/remapping2.3.0indirect
npm@angular/compiler19.0.0-next.2indirect
npm@angular/compiler-cli19.0.0-next.2indirect
npm@angular/core19.0.0-next.2indirect
npm@aspect-test/e1.0.0indirect
npm@aspect-test/f1.0.0indirect
npm@babel/cli7.23.9indirect
npm@babel/code-frame7.24.7indirect
npm@babel/code-frame7.26.2indirect
npm@babel/compat-data7.24.9indirect
npm@babel/compat-data7.25.4indirect
npm@babel/core7.23.9indirect
npm@babel/core7.25.2indirect
npm@babel/generator7.24.10indirect
npm@babel/generator7.25.6indirect
npm@babel/generator7.26.3indirect
npm@babel/helper-annotate-as-pure7.24.7indirect
npm@babel/helper-compilation-targets7.24.8indirect
npm@babel/helper-compilation-targets7.25.2indirect
npm@babel/helper-create-class-features-plugin7.24.8indirect
npm@babel/helper-environment-visitor7.24.7indirect
npm@babel/helper-function-name7.24.7indirect
npm@babel/helper-hoist-variables7.24.7indirect
npm@babel/helper-member-expression-to-functions7.24.8indirect
npm@babel/helper-module-imports7.24.7indirect
npm@babel/helper-module-imports7.25.9indirect
npm@babel/helper-module-transforms7.24.9indirect
npm@babel/helper-module-transforms7.25.2indirect
npm@babel/helper-module-transforms7.26.0indirect
npm@babel/helper-optimise-call-expression7.24.7indirect
npm@babel/helper-plugin-utils7.24.8indirect
npm@babel/helper-plugin-utils7.25.9indirect
npm@babel/helper-replace-supers7.24.7indirect
npm@babel/helper-simple-access7.24.7indirect
npm@babel/helper-skip-transparent-expression-wrappers7.24.7indirect
npm@babel/helper-split-export-declaration7.24.7indirect
npm@babel/helper-string-parser7.24.8indirect
npm@babel/helper-string-parser7.25.9indirect
npm@babel/helper-validator-identifier7.24.7indirect
npm@babel/helper-validator-identifier7.25.9indirect
npm@babel/helper-validator-option7.24.8indirect
npm@babel/helpers7.24.8indirect
npm@babel/helpers7.25.6indirect
npm@babel/highlight7.24.7indirect
npm@babel/parser7.23.9indirect
npm@babel/parser7.24.8indirect
npm@babel/parser7.25.6indirect
npm@babel/parser7.26.3indirect
npm@babel/plugin-syntax-jsx7.24.7indirect
npm@babel/plugin-syntax-typescript7.24.7indirect
npm@babel/plugin-transform-modules-commonjs7.26.3indirect
npm@babel/plugin-transform-typescript7.24.8indirect
npm@babel/preset-typescript7.24.7indirect
npm@babel/template7.24.7indirect
npm@babel/template7.25.0indirect
npm@babel/template7.25.9indirect
npm@babel/traverse7.24.8indirect
npm@babel/traverse7.25.6indirect
npm@babel/traverse7.26.4indirect
npm@babel/types7.23.9indirect
npm@babel/types7.24.9indirect
npm@babel/types7.25.6indirect
npm@babel/types7.26.3indirect
npm@bufbuild/buf1.50.1indirect
npm@bufbuild/buf^1.50.1indirect
npm@bufbuild/buf-darwin-arm641.50.1indirect
npm@bufbuild/buf-darwin-x641.50.1indirect
npm@bufbuild/buf-linux-aarch641.50.1indirect
npm@bufbuild/buf-linux-armv71.50.1indirect
npm@bufbuild/buf-linux-x641.50.1indirect
npm@bufbuild/buf-win32-arm641.50.1indirect
npm@bufbuild/buf-win32-x641.50.1indirect
npm@bufbuild/protoc-gen-es1.8.0indirect
npm@bufbuild/protoc-gen-es2.2.4indirect
npm@bufbuild/protoc-gen-es~2.2.4indirect
npm@bufbuild/protoplugin1.8.0indirect
npm@bufbuild/protoplugin2.2.4indirect
npm@connectrpc/connect2.0.2indirect
npm@connectrpc/connect^2.0.2indirect
npm@connectrpc/connect-fastify2.0.2indirect
npm@connectrpc/connect-fastify^2.0.2indirect
npm@connectrpc/connect-node2.0.2indirect
npm@connectrpc/protoc-gen-connect-query2.0.1indirect
npm@connectrpc/protoc-gen-connect-query^2.0.1indirect
npm@fastify/ajv-compiler4.0.2indirect
npm@fastify/error4.1.0indirect
npm@fastify/fast-json-stringify-compiler5.0.2indirect
npm@fastify/forwarded3.0.0indirect
npm@fastify/merge-json-schemas0.2.1indirect
npm@fastify/proxy-addr5.0.0indirect
npm@jridgewell/gen-mapping0.3.5indirect
npm@jridgewell/resolve-uri3.1.2indirect
npm@jridgewell/set-array1.2.1indirect
npm@jridgewell/sourcemap-codec1.5.0indirect
npm@jridgewell/trace-mapping0.3.25indirect
npm@nicolo-ribaudo/chokidar-22.1.8-no-fsevents.3indirect
npm@tsconfig/node181.0.1indirect
npm@tsconfig/strictest2.0.5indirect
npm@types/node20.19.11indirect
npm@types/node^20.19.11indirect
npm@typescript/vfs1.5.0indirect
npm@typescript/vfs1.6.0indirect
npmabort-controller3.0.0indirect
npmabstract-logging2.0.1indirect
npmajv8.17.1indirect
npmajv-formats3.0.1indirect
npmansi-regex5.0.1indirect
npmansi-styles3.2.1indirect
npmansi-styles4.3.0indirect
npmanymatch3.1.3indirect
npmatomic-sleep1.0.0indirect
npmavvio9.1.0indirect
npmbalanced-match1.0.2indirect
npmbase64-js1.5.1indirect
npmbinary-extensions2.3.0indirect
npmbrace-expansion1.1.11indirect
npmbraces3.0.3indirect
npmbrowserslist4.23.2indirect
npmbuffer6.0.3indirect
npmbuffer-from1.1.2indirect
npmcaniuse-lite1.0.30001642indirect
npmchalk2.4.2indirect
npmchokidar3.6.0indirect
npmcliui8.0.1indirect
npmcolor-convert1.9.3indirect
npmcolor-convert2.0.1indirect
npmcolor-name1.1.3indirect
npmcolor-name1.1.4indirect
npmcommander4.1.1indirect
npmconcat-map0.0.1indirect
npmconvert-source-map1.9.0indirect
npmconvert-source-map2.0.0indirect
npmcookie1.0.2indirect
npmdate-fns2.29.3indirect
npmdebug4.3.4indirect
npmdebug4.3.5indirect
npmdequal2.0.3indirect
npmelectron-to-chromium1.4.830indirect
npmemoji-regex8.0.0indirect
npmescalade3.1.2indirect
npmescape-string-regexp1.0.5indirect
npmevent-target-shim5.0.1indirect
npmevents3.3.0indirect
npmfast-decode-uri-component1.0.1indirect
npmfast-deep-equal3.1.3indirect
npmfast-json-stringify6.0.1indirect
npmfast-querystring1.1.2indirect
npmfast-redact3.5.0indirect
npmfast-uri3.0.1indirect
npmfastify5.2.1indirect
npmfastify^5.2.1indirect
npmfastq1.17.1indirect
npmfill-range7.1.1indirect
npmfind-my-way9.2.0indirect
npmfs-readdir-recursive1.1.0indirect
npmfs.realpath1.0.0indirect
npmfsevents2.3.3indirect
npmgensync1.0.0-beta.2indirect
npmget-caller-file2.0.5indirect
npmglob7.2.3indirect
npmglob-parent5.1.2indirect
npmglobals11.12.0indirect
npmhas-flag3.0.0indirect
npmieee7541.2.1indirect
npminflight1.0.6indirect
npminherits2.0.4indirect
npmipaddr.js2.2.0indirect
npmis-binary-path2.1.0indirect
npmis-extglob2.1.1indirect
npmis-fullwidth-code-point3.0.0indirect
npmis-glob4.0.3indirect
npmis-number7.0.0indirect
npmjs-tokens4.0.0indirect
npmjsesc2.5.2indirect
npmjsesc3.0.2indirect
npmjson-schema-ref-resolver2.0.1indirect
npmjson-schema-traverse1.0.0indirect
npmjson52.2.3indirect
npmlight-my-request6.6.0indirect
npmlru-cache5.1.1indirect
npmmake-dir2.1.0indirect
npmminimatch3.1.2indirect
npmms2.1.2indirect
npmnode-releases2.0.17indirect
npmnormalize-path3.0.0indirect
npmon-exit-leak-free2.1.2indirect
npmonce1.4.0indirect
npmpath-is-absolute1.0.1indirect
npmpicocolors1.0.1indirect
npmpicomatch2.3.1indirect
npmpify4.0.1indirect
npmpino9.3.1indirect
npmpino-abstract-transport1.2.0indirect
npmpino-std-serializers7.0.0indirect
npmprocess0.11.10indirect
npmprocess-warning3.0.0indirect
npmprocess-warning4.0.1indirect
npmquick-format-unescaped4.0.4indirect
npmreadable-stream4.5.2indirect
npmreaddirp3.6.0indirect
npmreal-require0.2.0indirect
npmreflect-metadata0.2.2indirect
npmrequire-directory2.1.1indirect
npmrequire-from-string2.0.2indirect
npmret0.5.0indirect
npmreusify1.0.4indirect
npmrfdc1.4.1indirect
npmrxjs7.5.7indirect
npmsafe-buffer5.2.1indirect
npmsafe-regex24.0.1indirect
npmsafe-stable-stringify2.4.3indirect
npmsecure-json-parse3.0.2indirect
npmsemver5.7.2indirect
npmsemver6.3.1indirect
npmsemver7.6.3indirect
npmset-cookie-parser2.6.0indirect
npmslash2.0.0indirect
npmsonic-boom4.0.1indirect
npmsource-map0.6.1indirect
npmsource-map-support0.5.21indirect
npmsplit24.2.0indirect
npmstring-width4.2.3indirect
npmstring_decoder1.3.0indirect
npmstrip-ansi6.0.1indirect
npmsupports-color5.5.0indirect
npmthread-stream3.1.0indirect
npmto-fast-properties2.0.0indirect
npmto-regex-range5.0.1indirect
npmtoad-cache3.7.0indirect
npmtslib2.6.3indirect
npmtypescript4.5.2indirect
npmtypescript5.4.5indirect
npmtypescript5.6.2indirect
npmtypescript5.8.3indirect
npmtypescript5.9.2indirect
npmundici-types6.21.0indirect
npmupdate-browserslist-db1.1.0indirect
npmwrap-ansi7.0.0indirect
npmwrappy1.0.2indirect
npmy18n5.0.8indirect
npmyallist3.1.1indirect
npmyargs17.7.2indirect
npmyargs-parser21.1.1indirect
npmzone.js0.12.0indirect
Dependency advisories 13

This repository publishes no package the index resolves, so its own dependency graph was assessed — 239 packages, which also include development and test pins that never ship: 13 carry known advisories, of which 0 are direct. 9 could not be assessed — no resolved version, an unsupported ecosystem, or beyond the reported package list.

PackageVersionRelationSeverityAdvisoriesFixed in
@angular/compiler19.0.0-next.2indirectcritical522.0.1
@angular/core19.0.0-next.2indirectcritical622.0.1
brace-expansion1.1.11indirecthigh45.0.8
fast-uri3.0.1indirecthigh44.1.1
fastify5.2.1indirecthigh45.8.3
find-my-way9.2.0indirecthigh19.7.0
minimatch3.1.2indirecthigh310.2.3
picomatch2.3.1indirecthigh24.0.4
@babel/helpers7.24.8indirectmoderate18.0.0-alpha.17
@babel/helpers7.25.6indirectmoderate18.0.0-alpha.17
ajv8.17.1indirectmoderate18.18.0
@babel/core7.23.9indirectlow18.0.0-rc.6
@babel/core7.25.2indirectlow18.0.0-rc.6

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "bazel",
        "bazel-rules",
        "typescript"
      ],
      "is_fork": false,
      "size_kb": 1838,
      "has_wiki": false,
      "homepage": null,
      "languages": {
        "Shell": 47509,
        "Starlark": 187215,
        "JavaScript": 14886,
        "TypeScript": 295
      },
      "pushed_at": "2026-07-25T09:26:42Z",
      "created_at": "2022-04-22T21:28:31Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-25T09:27:11Z",
      "description": "Bazel rules for the `tsc` compiler from http://typescriptlang.org",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Starlark",
      "significant_languages": [
        "Starlark",
        "Shell"
      ]
    },
    "owner": {
      "blog": "https://aspect.build",
      "name": "Aspect Build",
      "type": "Organization",
      "login": "aspect-build",
      "company": null,
      "location": null,
      "followers": 173,
      "avatar_url": "https://avatars.githubusercontent.com/u/60951090?v=4",
      "created_at": "2020-02-12T01:37:23Z",
      "is_verified": null,
      "public_repos": 31,
      "account_age_days": 2357
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v3.9.2",
          "kind": "patch",
          "published_at": "2026-07-18T01:49:22Z"
        },
        {
          "tag": "v3.9.1",
          "kind": "patch",
          "published_at": "2026-07-11T01:45:02Z"
        },
        {
          "tag": "v3.9.0",
          "kind": "minor",
          "published_at": "2026-07-08T22:38:06Z"
        },
        {
          "tag": "v3.8.11",
          "kind": "patch",
          "published_at": "2026-06-11T17:16:57Z"
        },
        {
          "tag": "v3.8.10",
          "kind": "patch",
          "published_at": "2026-05-15T15:50:21Z"
        },
        {
          "tag": "v3.8.9",
          "kind": "patch",
          "published_at": "2026-05-01T15:30:33Z"
        },
        {
          "tag": "v3.8.8",
          "kind": "patch",
          "published_at": "2026-04-01T15:38:51Z"
        },
        {
          "tag": "v3.8.7",
          "kind": "patch",
          "published_at": "2026-03-15T15:14:37Z"
        },
        {
          "tag": "v3.8.6",
          "kind": "patch",
          "published_at": "2026-03-01T15:11:32Z"
        },
        {
          "tag": "v3.8.5",
          "kind": "patch",
          "published_at": "2026-02-15T15:34:31Z"
        },
        {
          "tag": "v3.8.4",
          "kind": "patch",
          "published_at": "2026-02-01T15:34:27Z"
        },
        {
          "tag": "v3.8.3",
          "kind": "patch",
          "published_at": "2026-01-14T22:18:33Z"
        },
        {
          "tag": "v3.8.2",
          "kind": "patch",
          "published_at": "2026-01-01T15:34:34Z"
        },
        {
          "tag": "v3.8.1",
          "kind": "patch",
          "published_at": "2025-12-15T15:37:31Z"
        },
        {
          "tag": "v3.8.0",
          "kind": "minor",
          "published_at": "2025-11-15T15:13:26Z"
        },
        {
          "tag": "v3.7.1",
          "kind": "patch",
          "published_at": "2025-11-05T05:20:47Z"
        },
        {
          "tag": "v3.7.0",
          "kind": "minor",
          "published_at": "2025-08-15T22:22:08Z"
        },
        {
          "tag": "v3.6.3",
          "kind": "patch",
          "published_at": "2025-07-08T00:39:35Z"
        },
        {
          "tag": "v3.6.2",
          "kind": "patch",
          "published_at": "2025-07-04T20:02:44Z"
        },
        {
          "tag": "v3.6.0",
          "kind": "minor",
          "published_at": "2025-05-15T20:14:31Z"
        },
        {
          "tag": "v3.5.3",
          "kind": "patch",
          "published_at": "2025-04-24T20:36:58Z"
        },
        {
          "tag": "v3.5.2",
          "kind": "patch",
          "published_at": "2025-04-01T21:19:52Z"
        },
        {
          "tag": "v3.5.1",
          "kind": "patch",
          "published_at": "2025-03-12T20:16:29Z"
        },
        {
          "tag": "v3.5.0",
          "kind": "minor",
          "published_at": "2025-02-04T16:42:35Z"
        },
        {
          "tag": "v3.4.0",
          "kind": "minor",
          "published_at": "2025-01-08T18:08:07Z"
        },
        {
          "tag": "v3.3.2",
          "kind": "patch",
          "published_at": "2024-12-04T18:30:54Z"
        },
        {
          "tag": "v3.3.1",
          "kind": "patch",
          "published_at": "2024-11-05T01:42:18Z"
        },
        {
          "tag": "v3.3.0",
          "kind": "minor",
          "published_at": "2024-11-04T21:57:32Z"
        },
        {
          "tag": "v3.2.1",
          "kind": "patch",
          "published_at": "2024-10-10T06:02:26Z"
        },
        {
          "tag": "v3.2.0",
          "kind": "minor",
          "published_at": "2024-09-28T16:31:30Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2024-08-29T15:30:56Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2024-08-15T04:09:16Z"
        },
        {
          "tag": "v3.0.0-rc2",
          "kind": "prerelease",
          "published_at": "2024-07-23T23:32:44Z"
        },
        {
          "tag": "v2.4.2",
          "kind": "patch",
          "published_at": "2024-06-03T20:34:18Z"
        },
        {
          "tag": "v3.0.0-rc1",
          "kind": "prerelease",
          "published_at": "2024-06-03T17:11:19Z"
        },
        {
          "tag": "v3.0.0-rc0",
          "kind": "prerelease",
          "published_at": "2024-05-22T01:19:28Z"
        },
        {
          "tag": "v3.0.0-alpha.1",
          "kind": "prerelease",
          "published_at": "2024-05-21T04:17:55Z"
        },
        {
          "tag": "v2.4.1",
          "kind": "patch",
          "published_at": "2024-05-21T04:17:26Z"
        },
        {
          "tag": "v2.4.0",
          "kind": "minor",
          "published_at": "2024-05-15T22:30:25Z"
        },
        {
          "tag": "v3.0.0-alpha.0",
          "kind": "prerelease",
          "published_at": "2024-05-10T06:10:03Z"
        },
        {
          "tag": "v2.3.0",
          "kind": "minor",
          "published_at": "2024-04-30T22:33:42Z"
        },
        {
          "tag": "v2.2.0",
          "kind": "minor",
          "published_at": "2024-02-27T18:20:06Z"
        },
        {
          "tag": "v2.1.1",
          "kind": "patch",
          "published_at": "2024-01-25T08:13:38Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2023-11-17T01:03:26Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2023-11-10T00:31:48Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2023-09-07T22:14:42Z"
        },
        {
          "tag": "v2.0.0-rc1",
          "kind": "prerelease",
          "published_at": "2023-09-05T17:51:07Z"
        },
        {
          "tag": "v2.0.0-rc0",
          "kind": "prerelease",
          "published_at": "2023-08-31T15:25:42Z"
        },
        {
          "tag": "v2.0.0-beta1",
          "kind": "prerelease",
          "published_at": "2023-08-28T18:30:20Z"
        },
        {
          "tag": "v2.0.0-beta0",
          "kind": "prerelease",
          "published_at": "2023-08-10T23:27:37Z"
        },
        {
          "tag": "v1.4.5",
          "kind": "patch",
          "published_at": "2023-07-04T03:31:40Z"
        },
        {
          "tag": "v1.4.4",
          "kind": "patch",
          "published_at": "2023-07-01T00:07:38Z"
        },
        {
          "tag": "v1.4.3",
          "kind": "patch",
          "published_at": "2023-06-30T01:13:07Z"
        },
        {
          "tag": "v1.4.2",
          "kind": "patch",
          "published_at": "2023-06-08T07:15:10Z"
        },
        {
          "tag": "v1.4.1",
          "kind": "patch",
          "published_at": "2023-06-08T06:55:49Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2023-05-08T14:00:04Z"
        },
        {
          "tag": "v1.3.3",
          "kind": "patch",
          "published_at": "2023-03-24T04:02:07Z"
        },
        {
          "tag": "v1.3.2",
          "kind": "patch",
          "published_at": "2023-03-07T22:58:48Z"
        },
        {
          "tag": "v1.3.1",
          "kind": "patch",
          "published_at": "2023-03-02T15:21:47Z"
        },
        {
          "tag": "v1.3.0",
          "kind": "minor",
          "published_at": "2023-02-12T00:02:52Z"
        },
        {
          "tag": "v1.2.4",
          "kind": "patch",
          "published_at": "2023-02-08T04:55:09Z"
        },
        {
          "tag": "v1.2.3",
          "kind": "patch",
          "published_at": "2023-02-02T18:31:14Z"
        },
        {
          "tag": "v1.2.2",
          "kind": "patch",
          "published_at": "2023-02-02T06:42:17Z"
        },
        {
          "tag": "v1.2.1",
          "kind": "patch",
          "published_at": "2023-02-02T00:04:16Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2023-01-25T20:40:26Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2023-01-19T20:00:16Z"
        },
        {
          "tag": "v1.0.5",
          "kind": "patch",
          "published_at": "2023-01-04T08:10:58Z"
        },
        {
          "tag": "v1.0.4",
          "kind": "patch",
          "published_at": "2022-12-09T17:26:06Z"
        },
        {
          "tag": "v1.0.3",
          "kind": "patch",
          "published_at": "2022-12-09T01:48:23Z"
        },
        {
          "tag": "v1.0.2",
          "kind": "patch",
          "published_at": "2022-11-24T02:30:34Z"
        },
        {
          "tag": "v1.0.1",
          "kind": "patch",
          "published_at": "2022-11-20T04:22:15Z"
        },
        {
          "tag": "v1.0.0",
          "kind": "major",
          "published_at": "2022-11-17T00:12:48Z"
        },
        {
          "tag": "v1.0.0-rc8",
          "kind": "prerelease",
          "published_at": "2022-11-17T00:04:44Z"
        },
        {
          "tag": "v1.0.0-rc7",
          "kind": "prerelease",
          "published_at": "2022-11-12T17:30:58Z"
        },
        {
          "tag": "v1.0.0-rc6",
          "kind": "prerelease",
          "published_at": "2022-11-07T20:03:38Z"
        },
        {
          "tag": "v1.0.0-rc5",
          "kind": "prerelease",
          "published_at": "2022-11-01T18:56:07Z"
        },
        {
          "tag": "v1.0.0-rc4",
          "kind": "prerelease",
          "published_at": "2022-10-14T01:47:12Z"
        },
        {
          "tag": "v1.0.0-rc3",
          "kind": "prerelease",
          "published_at": "2022-09-11T02:23:15Z"
        },
        {
          "tag": "v1.0.0-rc2",
          "kind": "prerelease",
          "published_at": "2022-08-27T05:04:49Z"
        },
        {
          "tag": "v1.0.0-rc1",
          "kind": "prerelease",
          "published_at": "2022-08-08T19:58:21Z"
        },
        {
          "tag": "v1.0.0-rc0",
          "kind": "prerelease",
          "published_at": "2022-08-08T00:06:27Z"
        },
        {
          "tag": "v0.12.0",
          "kind": "minor",
          "published_at": "2022-08-02T23:06:56Z"
        },
        {
          "tag": "v0.11.0",
          "kind": "minor",
          "published_at": "2022-07-30T04:07:53Z"
        },
        {
          "tag": "v0.10.0",
          "kind": "minor",
          "published_at": "2022-06-28T19:33:35Z"
        },
        {
          "tag": "v0.9.0",
          "kind": "minor",
          "published_at": "2022-06-28T04:31:05Z"
        },
        {
          "tag": "v0.8.0",
          "kind": "minor",
          "published_at": "2022-06-21T05:17:31Z"
        },
        {
          "tag": "v0.7.0",
          "kind": "minor",
          "published_at": "2022-06-15T14:56:43Z"
        },
        {
          "tag": "v0.6.0",
          "kind": "minor",
          "published_at": "2022-06-10T23:43:57Z"
        },
        {
          "tag": "v0.5.0",
          "kind": "minor",
          "published_at": "2022-06-03T23:16:07Z"
        },
        {
          "tag": "v0.4.0",
          "kind": "minor",
          "published_at": "2022-06-03T17:34:46Z"
        },
        {
          "tag": "v0.3.3",
          "kind": "patch",
          "published_at": "2022-06-03T00:09:18Z"
        },
        {
          "tag": "v0.3.1",
          "kind": "patch",
          "published_at": "2022-06-02T12:53:46Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2022-05-31T21:14:03Z"
        },
        {
          "tag": "v0.2.1",
          "kind": "patch",
          "published_at": "2022-05-18T21:40:42Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2022-05-14T04:09:44Z"
        },
        {
          "tag": "v0.1.0",
          "kind": "minor",
          "published_at": "2022-04-26T21:46:38Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "8347517c72eba7f09890381ed1b520c6d55bebca",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: set default_testonly = True in test dirs (#976)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-25T09:26:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f2ebd427a1864e308ccfd4ffba94154678698779",
          "body": "Extra path manipulation for windows, in addition to\nhttps://github.com/aspect-build/rules_ts/pull/973 which fixed `main`.\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "fix: relativize absolute paths in resolved tsconfigs on windows (#974)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-21T16:02:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "450ca0ed573e29c267b377778bd66b7e39da2836",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "test: tsc --showconfig test on windows (#973)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-21T06:51:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "10d85383b7d32e4446c5ee21ec9f481337f4b11b",
          "body": "This expands the rules_ts 3.x typescript 7 `tsc --showConfig` logic\n(https://github.com/aspect-build/rules_ts/pull/969) to also apply to\ntypescript <7 so we have a single implementation.\n\nCurrently (typescript 7.0.2) typescript 7 is not as strict as typescript\n5,6 so an extra generated `{extends: \".\n[…]\nased on the a tsconfig.json which extends from\nan npm package. The extended npm package may now be correctly taken into\naccount.\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "refactor!: validate ts_project attributes with `tsc --showConfig` (#950)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-21T06:22:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7237d2af9fb4d3e15672005a95c3c2914d2a7668",
          "body": "Simply porting the 3.x tsgo validation to 4.x.\n\n### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): no\n- Suggested release notes appear below: yes\n\n`ts_project` attribute vs t\n[…]\n --showConfig`. This may catch additional validation errors\nnot previously found such as when tsconfigs extend from npm packages.\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "fix: validate ts 7+ with tsc--showConfig (#969) (#971)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-18T02:15:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ca9ffdaecdeb43594b83dd4034d25345b8bfa847",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: run ci workflows on 3.x in addition to main (#970)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-17T21:52:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "69f856d5dab000deed87c6732bfd93b12df0cf76",
          "body": "See diffs, including MODULE.bazel.lock files, for what the the metadata\naccomplishes.\n\n### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): no\n- Suggested release notes appear below: yes\n\nDeclare module as `reproducible` and report `root_module_direct_*deps`\nbzlmod extension info.\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "fix: declare extension_metadata for the ts module extension (#965)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-15T17:15:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a885fc8a6549ec0f42465971a53eef039e7d2d0",
          "body": "…tions (#964)\n\ntsc materializes some tsconfig options as computed defaults of other\noptions\n(composite implies declaration/incremental, checkJs implies allowJs, and\nmoduleResolution bundler or module nodenext/preserve imply\nresolveJsonModule\ndepending on the TypeScript version). The ts_project attri\n[…]\nion_dir set, where\ntsc\nmaterializes an implicit exclude entry for declarationDir whenever the\nuser\ndoes not author one.\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- New test cases added",
          "is_bot": false,
          "headline": "test: cover tsconfig options implied as computed defaults of other op…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-15T02:19:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2eb39e2332bedccd48d58a7bcfcd2e027c77bdfd",
          "body": null,
          "is_bot": false,
          "headline": "chore: remove stale e2e/worker MODULE.bazel.lock",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T21:25:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f348777074a7b868dcbf04a8ebe4303f59c73e2",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: clarify declaration of unused dev dep on rules_go (#963)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T18:29:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f5f03e7de0f3e28c1717d084ee3904576008737",
          "body": "### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): yes\n- Suggested release notes appear below: yes\n\nRemove all support for typescript < v5\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "refactor!: remove support for typescript <5 (#956)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T18:13:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d9ca02c564423e4dd642cfe26a62032922d85f2e",
          "body": null,
          "is_bot": false,
          "headline": "chore: upgrade minimum bazel version to 7.7",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T17:28:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "75279af34906c8755926c060b7a0913eeb59bab2",
          "body": "- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: checkin MODULE.bazel.lock files (#960)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T17:22:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4ba68dc052bbbfcbd910e5a1701f322b4c6c204",
          "body": "Removes:\n- supports_workers / tsc_worker params of ts_project and the\ncorresponding ts_project_rule attributes\n- the --@aspect_rules_ts//ts:supports_workers flag and its wiring\nthrough //ts:options\n- the is_typescript_5_or_greater detection (bool_setting in\n@npm_typescript and rule attribute), which\n[…]\n yes\n\nBREAKING CHANGE: `supports_workers` / `tsc_worker` are removed. Workers\nwere already disabled for TypeScript >= 5 and had known correctness\nbugs.\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "refactor!: remove persistent worker support (#957)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T07:26:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b929624b06ce9023e15eb67331084d729491f07d",
          "body": "### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): yes\n- Suggested release notes appear below: yes\n\nAll use of `aspect_bazel_lib` (v2) has been replaced with `bazel-lib`\n(v3) in alignment with `aspect_rules_js` v3 and the general ruleset\ncommunity.\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "refactor!: replace aspect_bazel_lib@2 with bazel-lib@3 (#955)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T07:12:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1c5338cba5b4125f911853908bfdfc5646eeee44",
          "body": "### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): yes\n- Suggested release notes appear below: yes\n\nBREAKING CHANGE: the minimum supported aspect_rules_js is now 3.0.0\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "refactor!: require aspect_rules_js 3.0.0 or greater (#954)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T06:52:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9828e721fe78bf6874c02fd9612417a8e819a0e2",
          "body": "…cs (#959)\n\n## Summary\nThe Bazel registry (registry.bazel.build) renders function/macro\ndefinition anchors with a `function-` prefix and rule anchors with a\n`rule-` prefix (e.g. `id=\"function-ts_project\"`), but the docstring\nlinks used bare names (e.g. `#ts_project`), causing the links to not\nnaviga\n[…]\ntion, click the \"ts_project\"\nlink — currently doesn't navigate\n5. After this fix, all three links navigate to the correct sections\n\nCo-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: correct broken anchor links in docstrings for Bazel registry do…",
          "author_name": "Georges Farah",
          "author_login": "georgesfarah",
          "committed_at": "2026-07-14T06:28:50Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "1598e814ac7b14ca292147b05127d73de77284a3",
          "body": "Deletes ts/repositories.bzl (rules_ts_dependencies and\nrules_ts_bazel_dependencies), all WORKSPACE / WORKSPACE.bzlmod files,\nand the bazel-7-wksp CI matrix leg. LATEST_TYPESCRIPT_VERSION moves to\nts/extensions.bzl, the only symbol the bzlmod extension needed from\nrepositories.bzl. The e2e/test bats \n[…]\ntheir own code or config): yes\n- Suggested release notes appear below: yes\n\nBREAKING CHANGE: remove support for loading `aspect_rules_ts` via\nWORKSPACE\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "refactor!: drop WORKSPACE support, rules_ts is bzlmod-only (#953)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-14T06:09:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "81d7d120a671fa8c9627ab92078eb17ba452c486",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: upgrade aspect_tools_telemetry to 0.4.2 (#958)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-13T02:38:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5b7d43bce9ab96511c0c65ab5202bd0c7251ebed",
          "body": "…ativization (#948)\n\n_write_tsconfig_rule re-read attributes and re-built prefix strings for\nevery file in the loop, and relative_to_package re-concatenated the bin\ndir, workspace and package prefixes for every src of every ts_project.\nHoist the loop invariants and add\nlib.files_relative_to_package which computes the prefixes once per\ntarget.\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "perf: reduce per-file string work in write_tsconfig and srcs path rel…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-10T17:21:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ddc1293ea1c007d92d954241ddc28955507b45a",
          "body": "This naming confuses robots...\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "refactor: minor ts version naming clarifications (#949)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-10T17:21:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6058a72145e49a4aa15d960635135da4690d21bc",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump Aspect CLI to 2026.28.11",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-10T08:39:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e645be8892a59811af9f8bca916f65465ca1dec",
          "body": "…_inputs (#947)\n\ntsconfig_inputs are already outputs of the copy-to-bin actions created\nin _gather_tsconfig_deps, so passing them through\ncopy_files_to_bin_actions again in the rule implementation was a no-op\niteration over every tsconfig input of every ts_project target.\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "refactor: drop redundant copy_files_to_bin_actions pass over tsconfig…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-09T23:11:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7513a54a6bf046128a4ca28cffb12f7f5da4b580",
          "body": "_is_typings_src/_is_js_src/_is_ts_src run for every src of every\nts_project during loading and analysis; a Starlark profile of a large\nmonorepo shows endswith alone at ~0.5s of Starlark CPU. Use the tuple\nform of endswith so each check is one builtin call instead of up to\nfour.\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "perf: use tuple form of endswith in hot src-classification paths (#946)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-09T23:06:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "45e6bebc14d607ea71691d9135c3103c0dfc1331",
          "body": "…s (#945)\n\nThe ts_project macro and rule implementation each scanned srcs up to\nfour times (js, map, typings, typing maps), re-deriving the extension\nand out path of every src on each pass. Large repos pay this during\nloading and again during analysis for every ts_project target.\n\nAdd lib.calculate_\n[…]\nboth call sites. The individual calculate_*_outs\nfunctions remain for custom transpiler macros that use them.\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "perf: calculate all ts_project output paths in a single pass over src…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-09T23:01:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "edb03ce14c7158dbc3565ec528fb04b765e3597b",
          "body": "…ort non-rc versions (#944)\n\n### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): no\n- Suggested release notes appear below: yes\n\nInclude ts7 in available versions, keep default at ts6 while tsgo has\nissues with bazel sandboxing on macos.\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: only include ts7 in the NATIVE_TYPESCRIPT_VERSIONS block, supp…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-08T21:29:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15aee19e8d75cab4aca522102c2d5d7a6df7c933",
          "body": null,
          "is_bot": false,
          "headline": "chore: bump Aspect CLI to 2026.28.2",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-08T21:19:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5c490253e056d48e66cd76a09893661662de3858",
          "body": "…942)\n\nRef #935 \n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "test: e2e coverage for transitive_typecheck with declaration=False (#…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-07T16:26:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "63b136ed78c5ea8ef9adabbe5732a03ab8be885b",
          "body": "…#936)\n\nWhen a ts_project has declaration=False and no isolated_typecheck,\ntypecheck_outs was left empty, causing _transitive_typecheck to produce\nno artifacts and silently skip type-checking for that target and\nanything downstream of it.\n\nFix by falling back to js_outs as typecheck evidence when ou\n[…]\nan\nadds two analysis tests covering the declaration=False path: one\nverifying js_outs appear in transitive_typecheck for a single target,\nand one verifying the chain propagates correctly through deps.",
          "is_bot": false,
          "headline": "fix: include js_outs in transitive_typecheck when declaration=False (…",
          "author_name": "Menny Even Danan",
          "author_login": "menny",
          "committed_at": "2026-07-07T00:00:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f6f55f25e5f43a7f5ef08d9f8195050ce1c7d19c",
          "body": "… effective (#938)\n\nBetter sandboxing tests demonstrating scenarios where disabling\nsandboxing (or bugs escaping the sandbox) cause compilation failures.\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- New test cases added",
          "is_bot": false,
          "headline": "test: add sandboxing tests verifying bazel sandboxing is required and…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-06T05:57:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc71694da0e80c75372bf393bd6e3bebf31fac8d",
          "body": "….sh (#940)\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: move buildifier invocation for versions.bzl to mirror_versions…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-06T05:57:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "56c1cde8caa77a58b814e6e643d7b483ba0c3915",
          "body": "Summary\n- handle native TypeScript versions that ship platform-specific triple\npackages like @typescript/typescript-darwin-arm64\n- keep native TS prerelease metadata separate from TOOL_VERSIONS so\nLATEST_TYPESCRIPT_VERSION stays stable-only\n- link TS 7 native packages into the generated npm repo\n- a\n[…]\nILD\n- bazel test //... (from e2e/external_dep)\n- bazel test --enable_bzlmod=false //... (from e2e/external_dep)\n- bazel test //ts/...\n\n---------\n\nCo-authored-by: Jason Bedard <jason+github@jbedard.ca>",
          "is_bot": false,
          "headline": "feat: support TypeScript 7 RC (#937)",
          "author_name": "Long Ho",
          "author_login": "longlho",
          "committed_at": "2026-07-04T03:36:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ea6bfb921f54da5683ab63603190faec21ff1b0c",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "test: bump examples protobuf to 33.4 to fix macOS abseil build (#939)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-07-03T21:47:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7e5dc01935afe1d33c57b6bf45e493b96a73bc97",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "test: --enable_runfiles for windows smoke (#933)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-06-15T20:48:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "da6c55cf37774148c4f64f8c0ab40ee8bd2940e7",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: remove WORKSPACE setup from release notes (#934)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-06-15T18:06:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "46a31aac7be0f5cc178ed9f1b90be25e7d2a2aef",
          "body": "Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: bump Aspect CLI to 2026.24.11",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-06-12T03:31:27Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "87f8602698970a3dab780f494ea3ad67aeb3aaa4",
          "body": "This was for some reason [removed in\n2.0](https://github.com/aspect-build/rules_ts/pull/593/changes?diff=split&w=0#diff-2194ca76c259ab63d7fa66a7c5f87b12969e16ad572cbfae754844cc4195ac5eL27)\nwhile still documenting that it should align with `js_library(deps)`.\n\n### Changes are visible to end-users: ye\n[…]\node or config): no\n- Suggested release notes appear below: yes\n\n`ts_project(deps)` now correctly enforces the requirement that targets\nprovide `JsInfo`\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "fix: enforce ts_project(deps) JsInfo requirement (#932)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-06-10T19:59:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "444a6ecae452ac4c2d2c956bc5827ab3851bc0a3",
          "body": "…#931)\n\nRef #930 \n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "test: add tsconfig validation tests for fields from extended config (…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-06-10T18:51:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6dea3644d9812b3d16b7328e1ca4b8b3fbe036ee",
          "body": "…929)\n\nThe `bazel-central-registry` fork moved from `aspect-build` to `aspect-forks`. Pushes to the old location still succeed via git's redirect handling, but the GitHub API does not follow repo redirects when resolving the PR `head` ref, so publish-to-bcr fails to open the BCR pull request with `422 Validation Failed: head invalid`.",
          "is_bot": false,
          "headline": "chore(ci): update BCR fork location after move to aspect-forks org (#…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-06-03T20:26:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2a243cf0900429aaf70b31cb739db4d3c56c0d7",
          "body": "…4 (#928)\n\nAligns the `buildifier` `format.alias` in `.aspect/config.axl` with the\ncanonical aspect-cli config — adds `formatter_args_for_tree_walk =\n[\"-r\", \".\"]` so `aspect format --scope=all` walks the tree — and bumps\nthe pinned Aspect CLI in `.aspect/version.axl` to `2026.22.44`.\n\n### Changes are visible to end-users: no\n\n- Breaking change: no\n\n### Test plan\n\n- Covered by existing test cases\n\nCo-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: align buildifier config with aspect-cli; bump CLI to 2026.22.4…",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-06-02T16:28:55Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "f22c09f6109f51a7e85f9544cffa7a51d4780471",
          "body": "slsa-verifier reads the trusted-builder ref from the provenance and\nrejects a bare commit SHA (\"unexpected ref type\"), which breaks the\nattestations that BCR's presubmit verifies. Pin to the semantic\nversion tag instead:\n\n  publish-to-bcr/.github/workflows/publish.yaml  → @v1.2.0\n  bazel-contrib/.github .../release_ruleset.yaml → @v7.6.0\n\nAlso adds a comment at each call site explaining why these must not\nbe SHA-pinned.",
          "is_bot": false,
          "headline": "ci: unpin SLSA reusable workflows from commit SHAs",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-06-01T18:06:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "043a8e10c84fadf0b973d9734718d2290dfa0d98",
          "body": "Replace `bazel-contrib/setup-bazel` + manual `curl install.aspect.build`\n+ top-level `ASPECT_API_TOKEN`/`ASPECT_LAUNCHER_VERSION` env vars with\n[`aspect-build/setup-aspect@v2026.23.2`](https://github.com/aspect-build/setup-aspect/releases/tag/v2026.23.2).\n\nThe action handles in one step:\n- Launcher \n[…]\nilla-bazel.yaml` is intentionally left alone.\n\n---\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci: adopt aspect-build/setup-aspect (#927)",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-06-01T05:06:38Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "d9a9c2d6086bbe1a0034106e2caa8f763407740d",
          "body": "Bump Aspect CLI from `2026.22.29` to `2026.22.39` in\n`.aspect/version.axl` and CI workflow(s).\n\n---\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: bump Aspect CLI to 2026.22.39 (#926)",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-31T21:59:50Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "28ad60a0fd230750607efc03b3e97f76835d92c1",
          "body": "Bump aspect-cli to v2026.22.29 and rename\n`INSTALL_ASPECT_LAUNCHER_VERSION` → `ASPECT_LAUNCHER_VERSION` for\nbrevity.\n\nSee https://github.com/aspect-build/aspect-cli/releases/tag/v2026.22.29\n\n---\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- CI\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Bump aspect-cli to v2026.22.29 (#925)",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-30T03:05:02Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9b3e6e3f16c9cfb6119e133ec62d3d4d57d45b9c",
          "body": "Bump aspect-cli to v2026.22.23, and add `\"run_in_cwd\": True` to the\nbuildifier format alias.\n\n`buildifier_binary` is a symlink to the raw Go binary and does not\nswitch to `$BUILD_WORKING_DIRECTORY` on its own, so `run_in_cwd` is\nneeded for relative paths to resolve correctly when running from a\nsubdirectory.\n\nSee https://github.com/aspect-build/aspect-cli/releases/tag/v2026.22.23\n\n---\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- CI",
          "is_bot": false,
          "headline": "Bump aspect-cli to v2026.22.23 (#924)",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-29T16:59:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ab2e962c5b94da5e9b67a4277bb310dad2472d5",
          "body": "Bump aspect-cli to v2026.22.17.\n\nSee https://github.com/aspect-build/aspect-cli/releases/tag/v2026.22.17\n\n---\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- CI\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Bump aspect-cli to v2026.22.17 (#923)",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-28T07:30:37Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "5d23805fb4d7a0b5443427adc4c4c947ccf0a783",
          "body": "Bump aspect-cli to v2026.22.13 and adopt the new `format.alias`\nbuildifier style.\n\nv2026.22.11 introduced support for using\n`@buildifier_prebuilt//buildifier` directly as a `format.alias` target\nin `.aspect/config.axl` with explicit `include_patterns`, replacing the\nold `format_multirun(name = \"buil\n[…]\nred by existing CI workflows\n- `aspect buildifier` continues to work; now resolves via\n`@buildifier_prebuilt//buildifier` directly\n\n---------\n\nCo-authored-by: Claude Sonnet 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Bump aspect-cli to v2026.22.15 (#922)",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-27T23:40:19Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "18b96ed98f52f77f8fce5cab700af9fabb7255b6",
          "body": null,
          "is_bot": false,
          "headline": "Bump to Aspect CLI 2026.22.3",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-25T10:56:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "134943e480c82af70eaf9bb40c5a0e7beebbb9e0",
          "body": "Migrate CI from Aspect Workflows (`.aspect/workflows/config.yaml`) to\nthe Aspect CLI on ephemeral GitHub Actions runners.\n\n### Adds\n\n- `.aspect/version.axl` — pins the Aspect CLI to `2026.21.44`.\n- `.aspect/config.axl` — opts in to artifact uploads\n(testlogs/profile/BEP), sets `--config=ci` in CI, r\n[…]\n`'s `try-import %workspace%/user.bazelrc` trailer and\nthe matching `user.bazelrc` line in `.gitignore` — unused, dropped.\n\n---\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- CI on this PR",
          "is_bot": false,
          "headline": "chore: migrate to Aspect CLI AXL tasks on ephemeral GHA runners (#921)",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-25T07:21:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cf0af4202ab247493660b971928db55f743d6ae2",
          "body": "…1.2.0, bazel-contrib/.github/.github/workflows/release_ruleset.yaml v7.6.0, bazel-contrib/setup-bazel 0.19.0",
          "is_bot": false,
          "headline": "Bump to bazel-contrib/publish-to-bcr/.github/workflows/publish.yaml v…",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-23T20:20:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3be79522d95be051237917677eab65afbd07eca9",
          "body": null,
          "is_bot": false,
          "headline": "Pin 3rd party GitHub actions to pretect against supply chain attacks",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-23T19:31:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8b4d245ba2a12067c85318554d625def3dde06ea",
          "body": null,
          "is_bot": false,
          "headline": "Pin 3rd party GitHub actions to pretect against supply chain attacks",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-23T18:46:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c867d56b965c0ef37b4ba67af69491e138dddfb1",
          "body": null,
          "is_bot": false,
          "headline": "Attribute multitool auto-commits to Marvin",
          "author_name": "Greg Magolan",
          "author_login": "gregmagolan",
          "committed_at": "2026-05-23T18:40:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec9c23ce96d7a42524bfb4b67752fd982b2f1d54",
          "body": "### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): no\n- Suggested release notes appear below: yes\n\nValidate `rootDir` and `outDir` will work with bazel\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "fix: validate rootDir and outDir compatibility with rules_ts (#916)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-05-05T03:40:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "40a20cacf5b06e1d9c110dce251597eeae8d8a75",
          "body": "Automated changes by\n[create-pull-request](https://github.com/peter-evans/create-pull-request)\nGitHub action\n\nCo-authored-by: alexeagle <alexeagle@users.noreply.github.com>",
          "is_bot": true,
          "headline": "Changes by create-pull-request action (#917)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-05T00:48:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c55dd2cc399a7f14c2e3470e428451328aa83671",
          "body": "…er` are used (#918)\n\nHandle an edge case where a `.tsbuildinfo` file is expected but `tsc` is\nnever used to emit anything.\n\nFull repro here: https://github.com/walkerburgin/tsbuildinfo-repro\n\n```\n➜  tsbuildinfo-repro git:(master) ✗ bazel build //...\nERROR: /Users/wburgin/Repositories/walkerburgin/t\n[…]\n `tsc`\nis never used to emit anything.\n\n### Test plan\n\n- Added a new test case\n- Manual testing; please provide instructions so we can reproduce:\n\nSee https://github.com/walkerburgin/tsbuildinfo-repro",
          "is_bot": false,
          "headline": "fix: omit `buildinfo_out` when `transpiler` and `declaration_transpil…",
          "author_name": "walkerburgin",
          "author_login": "walkerburgin",
          "committed_at": "2026-04-28T23:30:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7f1c74fedaff9498f4bb6976989c6c38d4ad484b",
          "body": "…919)\n\nAdds tests and examples validating that `package.json` can be provided\nto rules via `ts_config(deps)`, this is important for TS module type\ndetection behavior.\n\nTypescript's module format detection behavior for a given file:\n\nhttps://www.typescriptlang.org/docs/handbook/modules/theory.html#mo\n[…]\nfig` can propagate `package.json`,\nand that an existing `ts_config` can be extended with `package.json` in\na subdirectory as needed.\n\n---\n\n### Test plan\n\n- This PR only adds tests to validate behavior",
          "is_bot": false,
          "headline": "test: add tests and examples for package.json support in ts_config (#…",
          "author_name": "Kirk Holloway",
          "author_login": "kirkobyte",
          "committed_at": "2026-04-28T18:38:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fbf09dcb7400f9e3f4e212be754b1d5254c90e08",
          "body": "…utes (#913)\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "fix: better validate outDir, declarationDir, rootDir config vs attrib…",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-04-16T07:17:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "70d7ca5fd76135fa69a8f8e64535d8c1dbabf06b",
          "body": "Before this change, Bazel 7 could not build under examples/ due to the\nuse of `ignore_directories()` in REPO.bazel. This change fixes the\nproblem by deleting that file and going back to the older .bazelignore\nsolution instead. I also updated the CI config to start testing the\nexamples with Bazel 7.\n\n---\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "test: fix examples module with Bazel 7 (#915)",
          "author_name": "Adam Cozzette",
          "author_login": "acozzette",
          "committed_at": "2026-04-16T04:23:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f9673df124763b8db66d133d2e5ec27bc7d6ff87",
          "body": "Removed Alex Eagle from maintainers list\n\nCo-authored-by: Alex Eagle <alex@aspect.build>",
          "is_bot": false,
          "headline": "chore: update maintainers in metadata.template.json (#914)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2026-04-02T18:13:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7566a13a3d12f35aa2d2853f35c4b92c0b20a82e",
          "body": "### Changes are visible to end-users: yes but only in docs\n\nCo-authored-by: Tyler Breisacher <tyler.breisacher@flyzipline.com>",
          "is_bot": false,
          "headline": "chore: fix a link that goes to a 404 (#909)",
          "author_name": "Tyler Breisacher",
          "author_login": "MatrixFrog",
          "committed_at": "2026-03-27T18:47:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5c01ac2689e5588326cd2b57ecdca6f63fbbc17e",
          "body": null,
          "is_bot": false,
          "headline": "chore: add .bazelversion to examples module",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-26T23:35:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4805b329b8bd5f9782e1b6a59e63226d405d4255",
          "body": null,
          "is_bot": false,
          "headline": "test: change e2e/bzlmodules/.bazelversion to symlink to main module",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-26T23:24:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e154c6b03e2b1e752f2391d2f91ed661f74f1e69",
          "body": "### Changes are visible to end-users: yes\n\n- Searched for relevant documentation and updated as needed: yes\n- Breaking change (forces users to change their own code or config): no\n- Suggested release notes appear below: yes\n\nPassing directory artifacts to `ts_project(srcs)` will now fail with error instead of silently.\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added\n\nCo-authored-by: Jason Bedard <jason+github@jbedard.ca>",
          "is_bot": false,
          "headline": "fix: disallow passing a directory in the srcs of a ts_project() (#912)",
          "author_name": "Tyler Breisacher",
          "author_login": "tyler-breisacher-zipline",
          "committed_at": "2026-03-26T22:54:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b22be637ca6dd73a71b87cf6d255c9805c6c632c",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- New test cases added",
          "is_bot": false,
          "headline": "test: resolveJsonModule of package.json (#911)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-25T00:49:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6c02febb5d29ac33445ebbb3b7453a7f300fb329",
          "body": "Automated changes by\n[create-pull-request](https://github.com/peter-evans/create-pull-request)\nGitHub action\n\nCo-authored-by: alexeagle <alexeagle@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore: support and upgrade to typescript v6 by default (#910)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-03-24T20:45:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2bef176ec915c967f596c71d67dd9aea394996fa",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- New test cases added",
          "is_bot": false,
          "headline": "test: json sources with tsconfig outDir (#908)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-18T22:52:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4dde5758fb2aa9003692f813357ce0624a95329",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: bcr_test_module on 9.x instead of rolling (#907)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-16T16:36:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2ee29b616aad7c2c876eb77cfa7f81c72d31058",
          "body": "Close #190\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- New test cases added",
          "is_bot": false,
          "headline": "test: ts_config(deps) propagation (#905)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-15T02:54:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "183c13c484deef0bcead163c2399807e6affa2ed",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "test: update rules_nodejs to 6.7.3 for bazel 9.0.1 compat (#906)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-15T02:48:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "83d9209d09476a1b3cf74ee743df6a96138d301f",
          "body": "… (#904)\n\nDiscovered when upgrading to rules_js 3.x\n\n`//ts:defs.doc_extract` does not catch this because it tests with\nrules_js 2.x which pulls in aspect_bazel_lib transitively (rules_js 3.x\npulls in bazel_lib).\n\nImport of utils.bzl:\n\n\nhttps://github.com/aspect-build/rules_ts/blob/6fd053f778c5974d22\n[…]\n-- Delete any which do not apply -->\n\n- Manual testing; please provide instructions so we can reproduce:\n\ntested with downstream repository and `local_path_override` to my local\nrules_ts working copy.",
          "is_bot": false,
          "headline": "fix: add missing //ts:defs -> @aspect_bazel_lib//lib:utils dependency…",
          "author_name": "Tobias Schlatter",
          "author_login": "gzm0",
          "committed_at": "2026-03-11T17:25:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6fd053f778c5974d223e834a026de4679e3fdd6a",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "ci: add testing across bazel versions to aspect workflows (#903)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-03-09T21:08:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0875f67c632fb22538281d218029495fac039a01",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases",
          "is_bot": false,
          "headline": "chore: upgrade rjs3 test to rules_js 3.0.0-rc6 (#899)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-02-27T07:02:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "92773d66c78baa2d81556be424f07a967d40ca0d",
          "body": null,
          "is_bot": false,
          "headline": "fix: Mark http_archive_version as reproducible (#896)",
          "author_name": "Morten Mjelva",
          "author_login": "mortenmj",
          "committed_at": "2026-02-15T21:18:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4db85f203182c24f992d6877b6e0b1f830c943a",
          "body": "It was re-implemented in rules_js",
          "is_bot": false,
          "headline": "chore(doc): update proto.bzl (#895)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2026-02-13T16:00:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37b18b7c03c28086732e2bfd2405f8a30dc846be",
          "body": "Alternative to #890",
          "is_bot": false,
          "headline": "refactor: publish three stardocs to registry (#891)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2026-02-10T01:39:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "83c6a6d352acea24096cb99773b32f4a2d6d3f82",
          "body": "The docs were inconsistent about it.\n\nAlso remove some Bazel 6.3 and earlier content, which is no longer\nsupported since Bazel 6 exited LTS with the release of Bazel 9",
          "is_bot": false,
          "headline": "fix(docs): worker mode no longer on by default starting in 2.0 (#893)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2026-02-07T00:13:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e21d2aa3c8543b76c78146179b6e35bf7a0403d",
          "body": "### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "test: enable bazel9 testing (#889)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-01-29T01:28:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "524469966ad0d37ecef7b8ce0d77f723d0ac5f23",
          "body": null,
          "is_bot": false,
          "headline": "chore: move all linux testing to aspect workflows (#887)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2026-01-28T23:34:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "69a3c3ccec434a7c060feb6072c229ae82384d28",
          "body": "Cleans up some dev_dep setup in the root MODULE.bazel that @jbedard\nobserved yesterday.\nAlso makes it easier for me to iterate on the proto+gRPC changes without\nmessing in the root MODULE, and makes clear how an external module gets\nprotobuf deps constraints",
          "is_bot": false,
          "headline": "refactor: examples/ now a nested MODULE (#886)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2026-01-24T23:30:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b76a60aac9c312bc0835c50315f6e10179e03667",
          "body": "Fix #843\n\n### Changes are visible to end-users: no\n\n### Test plan\n\n- Covered by existing test cases\n- New test cases added",
          "is_bot": false,
          "headline": "fix: support npm_typescript definitions from multiple modules (#884)",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-01-20T22:54:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e190048d2ccaa6c0b32468f6a61a38231d2a7ff5",
          "body": null,
          "is_bot": false,
          "headline": "test: update bazel7 testing to 7.6.1",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-01-20T21:26:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "db91bcef83a40082d89a354422ace8659ce87918",
          "body": null,
          "is_bot": false,
          "headline": "test: update tests to pnpm 9+",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-01-16T18:54:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2d6149f62ec81ad25635485a6a0a0951bd3e8942",
          "body": null,
          "is_bot": false,
          "headline": "test: add rules_js v3 e2e test",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-01-15T02:58:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bbad484af105ebbdb1809c1004156bff3da7f832",
          "body": null,
          "is_bot": false,
          "headline": "chore: remove unnecessary aspect_bazel_lib version override in tests",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-01-14T21:53:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1b515e08a3658d07b1738b539d8c70f6f896b6b1",
          "body": null,
          "is_bot": false,
          "headline": "refactor: prepare support for rules_js v3",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2026-01-13T22:05:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6e5ab380f972642b7c76e522c5b6b8f26f54ae7c",
          "body": "fixes #857",
          "is_bot": false,
          "headline": "fix: trigger auto-release when updating typescript version",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-12-15T19:39:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a8ff6507adb9fceab7fe7ac6f4536af2ea405e07",
          "body": null,
          "is_bot": false,
          "headline": "chore: explicitly --enable_bzlmod for bazel6",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2025-12-15T04:22:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4061b2b4759a0844a5524814b93a84e94ac27b8e",
          "body": null,
          "is_bot": false,
          "headline": "chore: remove .aspect/cli/config.yaml",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2025-12-15T00:49:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a04f24e9ff546c2574c15b73ed576c79e1fa2958",
          "body": "We no longer run the legacy Aspect CLI that obscures the bazel command",
          "is_bot": false,
          "headline": "fix: delete .bazeliskrc",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-12-15T00:44:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "04286dd63f0170c4d1943d99b38c65d25d41d4da",
          "body": "ESLint flat config is not ergonomic in a monorepo. Many projects would\nprefer to have the eslint config locally, for example\none-per-package.json\n\nSee\nhttps://github.com/aspect-build/rules_lint/compare/main...eslint_no_flat\nfor how this may be used.\n\nFYI @jfirebaugh @walkerburgin",
          "is_bot": false,
          "headline": "feat: allow ts_project to point to the eslint config (#848)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-11-05T06:09:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37e26c9541336fc1149e20d27615cca7a1ffd31a",
          "body": null,
          "is_bot": false,
          "headline": "chore(ci): test on bazel 9 (#853)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-11-05T05:50:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89c077131967807abdcce061d70cbf2bf3dd849f",
          "body": null,
          "is_bot": false,
          "headline": "fix: a wrong secret name",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-11-05T05:14:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8b144f6aa3072714e76a5d21b2e42b6c426c8b8e",
          "body": null,
          "is_bot": false,
          "headline": "chore: automate tagging releases",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-11-05T05:09:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71afe05726689a4328019ed97d75e1e00cb37aca",
          "body": null,
          "is_bot": false,
          "headline": "Update metadata.template.json",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-10-22T16:32:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6e4a8a3f06d13ff901afe0d230406dfd9b12ee5e",
          "body": null,
          "is_bot": false,
          "headline": "chore: mirror external releases",
          "author_name": "alexeagle",
          "author_login": "alexeagle",
          "committed_at": "2025-10-17T22:00:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e7a6c5a30dde6448d735182de25a4ec8f6a35fcc",
          "body": null,
          "is_bot": false,
          "headline": "fix: overridding tsconfig outDir via ts_project(tsconfig) dict",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2025-10-12T22:43:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "43ae5c9ba67370200ddf34b76a47408e2aaa31fc",
          "body": null,
          "is_bot": false,
          "headline": "chore: remove BCR homepage, as we now use the BCR UI itself (#858)",
          "author_name": "Alex Eagle",
          "author_login": "alexeagle",
          "committed_at": "2025-10-09T23:17:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c63389f9c452ed8049a8cf7afdbc67866e648c1",
          "body": "Close #828",
          "is_bot": false,
          "headline": "test: add root+outDir . and ./ tests",
          "author_name": "Jason Bedard",
          "author_login": "jbedard",
          "committed_at": "2025-10-02T19:47:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "459b0bf00ca1ec1d4e53d36d0b682faee00bb830",
          "body": null,
          "is_bot": false,
          "headline": "chore: mirror external releases",
          "author_name": "alexeagle",
          "author_login": "alexeagle",
          "committed_at": "2025-08-25T19:28:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 96,
      "commits_last_year": 113,
      "latest_release_at": "2026-07-18T01:49:22Z",
      "latest_release_tag": "v3.9.2",
      "releases_from_tags": false,
      "days_since_last_push": 1,
      "active_weeks_last_year": 33,
      "days_since_latest_release": 9,
      "mean_days_between_releases": 16.9
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 75,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": []
    },
    "popularity": {
      "forks": 86,
      "stars": 136,
      "watchers": 5,
      "fork_history": {
        "days": [
          {
            "date": "2022-04-28",
            "count": 1
          },
          {
            "date": "2022-05-13",
            "count": 1
          },
          {
            "date": "2022-06-03",
            "count": 1
          },
          {
            "date": "2022-06-28",
            "count": 1
          },
          {
            "date": "2022-07-20",
            "count": 1
          },
          {
            "date": "2022-08-06",
            "count": 1
          },
          {
            "date": "2022-08-15",
            "count": 1
          },
          {
            "date": "2022-08-17",
            "count": 1
          },
          {
            "date": "2022-08-29",
            "count": 1
          },
          {
            "date": "2022-09-24",
            "count": 1
          },
          {
            "date": "2022-10-12",
            "count": 1
          },
          {
            "date": "2022-10-18",
            "count": 1
          },
          {
            "date": "2022-10-26",
            "count": 1
          },
          {
            "date": "2022-11-05",
            "count": 1
          },
          {
            "date": "2022-11-07",
            "count": 1
          },
          {
            "date": "2022-12-05",
            "count": 1
          },
          {
            "date": "2022-12-21",
            "count": 1
          },
          {
            "date": "2023-01-29",
            "count": 1
          },
          {
            "date": "2023-02-07",
            "count": 1
          },
          {
            "date": "2023-02-13",
            "count": 1
          },
          {
            "date": "2023-02-14",
            "count": 1
          },
          {
            "date": "2023-02-18",
            "count": 1
          },
          {
            "date": "2023-03-15",
            "count": 1
          },
          {
            "date": "2023-03-30",
            "count": 1
          },
          {
            "date": "2023-04-03",
            "count": 1
          },
          {
            "date": "2023-05-04",
            "count": 1
          },
          {
            "date": "2023-06-05",
            "count": 1
          },
          {
            "date": "2023-06-07",
            "count": 1
          },
          {
            "date": "2023-06-12",
            "count": 1
          },
          {
            "date": "2023-07-21",
            "count": 1
          },
          {
            "date": "2023-10-12",
            "count": 1
          },
          {
            "date": "2023-11-24",
            "count": 1
          },
          {
            "date": "2023-12-21",
            "count": 1
          },
          {
            "date": "2024-01-08",
            "count": 1
          },
          {
            "date": "2024-01-25",
            "count": 1
          },
          {
            "date": "2024-01-30",
            "count": 1
          },
          {
            "date": "2024-03-25",
            "count": 1
          },
          {
            "date": "2024-04-16",
            "count": 1
          },
          {
            "date": "2024-04-26",
            "count": 1
          },
          {
            "date": "2024-04-29",
            "count": 1
          },
          {
            "date": "2024-05-31",
            "count": 1
          },
          {
            "date": "2024-06-04",
            "count": 2
          },
          {
            "date": "2024-06-23",
            "count": 1
          },
          {
            "date": "2024-06-24",
            "count": 1
          },
          {
            "date": "2024-07-24",
            "count": 1
          },
          {
            "date": "2024-08-06",
            "count": 1
          },
          {
            "date": "2024-08-20",
            "count": 1
          },
          {
            "date": "2024-08-26",
            "count": 1
          },
          {
            "date": "2024-09-24",
            "count": 1
          },
          {
            "date": "2024-10-08",
            "count": 1
          },
          {
            "date": "2024-10-28",
            "count": 1
          },
          {
            "date": "2024-10-31",
            "count": 1
          },
          {
            "date": "2024-11-15",
            "count": 1
          },
          {
            "date": "2024-11-19",
            "count": 1
          },
          {
            "date": "2024-11-23",
            "count": 1
          },
          {
            "date": "2024-12-02",
            "count": 1
          },
          {
            "date": "2025-01-09",
            "count": 1
          },
          {
            "date": "2025-02-22",
            "count": 1
          },
          {
            "date": "2025-03-12",
            "count": 2
          },
          {
            "date": "2025-03-17",
            "count": 1
          },
          {
            "date": "2025-03-21",
            "count": 1
          },
          {
            "date": "2025-07-05",
            "count": 1
          },
          {
            "date": "2025-07-10",
            "count": 2
          },
          {
            "date": "2025-07-18",
            "count": 1
          },
          {
            "date": "2025-07-25",
            "count": 1
          },
          {
            "date": "2025-08-18",
            "count": 1
          },
          {
            "date": "2025-09-12",
            "count": 1
          },
          {
            "date": "2025-09-15",
            "count": 1
          },
          {
            "date": "2025-10-10",
            "count": 1
          },
          {
            "date": "2025-10-17",
            "count": 1
          },
          {
            "date": "2025-11-21",
            "count": 1
          },
          {
            "date": "2025-12-02",
            "count": 1
          },
          {
            "date": "2026-01-22",
            "count": 1
          },
          {
            "date": "2026-02-15",
            "count": 1
          },
          {
            "date": "2026-02-20",
            "count": 1
          },
          {
            "date": "2026-02-26",
            "count": 1
          },
          {
            "date": "2026-03-25",
            "count": 1
          },
          {
            "date": "2026-04-26",
            "count": 1
          },
          {
            "date": "2026-06-27",
            "count": 1
          },
          {
            "date": "2026-07-08",
            "count": 1
          },
          {
            "date": "2026-07-12",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 84,
        "total_forks": 86
      },
      "star_history": null,
      "open_issues_and_prs": 62
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [
        "e2e/smoke/foo.proto",
        "examples/connect_node/proto/eliza.proto",
        "examples/proto_grpc/logger.proto",
        "examples/proto_grpc/status.proto",
        "examples/proto_grpc/stripping/s.proto",
        "ts/test/ts_proto_library/bar.proto",
        "ts/test/ts_proto_library/foo.proto"
      ],
      "has_devcontainer": false,
      "typecheck_configs": [
        "e2e/bzlmodules/module_a/tsconfig.json",
        "e2e/bzlmodules/module_b/tsconfig.json",
        "e2e/external_dep/sub_external/subdir/tsconfig.json",
        "e2e/external_dep/sub_external/tsconfig.json",
        "e2e/external_dep/tsconfig.json",
        "e2e/nested_repos/module_a/tsconfig.json",
        "e2e/nested_repos/module_b/tsconfig.json",
        "e2e/smoke/tsconfig.json",
        "examples/assets/tsconfig.json",
        "examples/connect_node/tsconfig.json",
        "examples/custom_compiler/tsconfig.json",
        "examples/declaration_dir/tsconfig.json",
        "examples/deps_pkg/tsconfig.json",
        "examples/deps_pkg_transpiler/tsconfig.json",
        "examples/dts_pkg-outDir/tsconfig.json",
        "examples/dts_pkg/tsconfig.json",
        "examples/emit_declaration_only/tsconfig.json",
        "examples/extends_chain/main/tsconfig.json",
        "examples/extends_chain/tsconfig.json",
        "examples/generate_trace/tsconfig.json",
        "examples/isolated_declarations/tsconfig.json",
        "examples/isolated_typecheck/backend/tsconfig.json",
        "examples/isolated_typecheck/tsconfig.json",
        "examples/jsx/tsconfig.json",
        "examples/lib_nocompile/tsconfig.json",
        "examples/lib_nocompile_linked/tsconfig.json",
        "examples/linked_empty_node_modules/tsconfig.json",
        "examples/linked_lib/tsconfig.json",
        "examples/linked_pkg/tsconfig.json",
        "examples/linked_tsconfig/tsconfig.json",
        "examples/linked_tsconfig_consumer/tsconfig.json",
        "examples/module_ext/tsconfig.json",
        "examples/no_emit/tsconfig.json",
        "examples/output_group/tsconfig.json",
        "examples/package_json_usage/colocated/tsconfig.json",
        "examples/package_json_usage/tsconfig.json",
        "examples/path_mappings/tsconfig.json",
        "examples/project_references/app/tsconfig.json",
        "examples/project_references/lib_a/tsconfig.json",
        "examples/project_references/lib_b/tsconfig.json",
        "examples/proto_grpc/tsconfig.json",
        "examples/resolve_json_module/tsconfig.json",
        "examples/resolve_json_module_esm/tsconfig.json",
        "examples/resolve_json_module_out_dir/tsconfig.json",
        "examples/resolve_json_module_transpiler/tsconfig.json",
        "examples/root_dir/tsconfig.json",
        "examples/simple/tsconfig.json",
        "examples/srcs/tsconfig.json",
        "examples/targets/tsconfig.json",
        "examples/transpiler/tsconfig.json",
        "examples/ts_project_dep/a/tsconfig.json",
        "examples/ts_project_dep/b/tsconfig.json",
        "examples/tsbuildinfo/tsconfig.json",
        "examples/tsconfig_external/tsconfig.json",
        "examples/tsconfig_locations/config/tsconfig.json",
        "examples/tsconfig_types/tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 14886,
      "source_files_sampled": 109,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "examples/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "@angular/compiler",
            "direct": false,
            "version": "19.0.0-next.2",
            "severity": "critical",
            "ecosystem": "npm",
            "cvss_score": 9,
            "advisory_ids": [
              "GHSA-58w9-8g37-x9v5",
              "GHSA-f3m7-gqxr-g87x",
              "GHSA-g93w-mfhg-p222",
              "GHSA-jrmj-c5cx-3cw6",
              "GHSA-v4hv-rgfq-gp49"
            ],
            "fixed_version": "22.0.1",
            "advisory_count": 5,
            "oldest_advisory_days": 237
          },
          {
            "name": "@angular/core",
            "direct": false,
            "version": "19.0.0-next.2",
            "severity": "critical",
            "ecosystem": "npm",
            "cvss_score": 9,
            "advisory_ids": [
              "GHSA-692r-grfm-v8x7",
              "GHSA-f3m7-gqxr-g87x",
              "GHSA-g93w-mfhg-p222",
              "GHSA-jrmj-c5cx-3cw6",
              "GHSA-prjf-86w9-mfqv",
              "GHSA-rgjc-h3x7-9mwg"
            ],
            "fixed_version": "22.0.1",
            "advisory_count": 6,
            "oldest_advisory_days": 198
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.11",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp",
              "GHSA-f886-m6hf-6m8v",
              "GHSA-mh99-v99m-4gvg",
              "GHSA-v6h2-p8h4-qcjw"
            ],
            "fixed_version": "5.0.8",
            "advisory_count": 4,
            "oldest_advisory_days": 412
          },
          {
            "name": "fast-uri",
            "direct": false,
            "version": "3.0.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-4c8g-83qw-93j6",
              "GHSA-q3j6-qgpj-74h6",
              "GHSA-v2hh-gcrm-f6hx",
              "GHSA-v39h-62p7-jpjc"
            ],
            "fixed_version": "4.1.1",
            "advisory_count": 4,
            "oldest_advisory_days": 79
          },
          {
            "name": "fastify",
            "direct": false,
            "version": "5.2.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-444r-cwp2-x5xf",
              "GHSA-jx2c-rxcm-jvmq",
              "GHSA-mg2h-6x62-wpwc",
              "GHSA-mrq3-vjjr-p77c"
            ],
            "fixed_version": "5.8.3",
            "advisory_count": 4,
            "oldest_advisory_days": 464
          },
          {
            "name": "find-my-way",
            "direct": false,
            "version": "9.2.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-c96f-x56v-gq3h"
            ],
            "fixed_version": "9.7.0",
            "advisory_count": 1,
            "oldest_advisory_days": 3
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "3.1.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23c5-xmqv-rm74",
              "GHSA-3ppc-4f35-3m26",
              "GHSA-7r86-cg39-jmmj"
            ],
            "fixed_version": "10.2.3",
            "advisory_count": 3,
            "oldest_advisory_days": 158
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "2.3.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3v7f-55p6-f55p",
              "GHSA-c2c7-rcm5-vvqj"
            ],
            "fixed_version": "4.0.4",
            "advisory_count": 2,
            "oldest_advisory_days": 123
          },
          {
            "name": "@babel/helpers",
            "direct": false,
            "version": "7.24.8",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 6.2,
            "advisory_ids": [
              "GHSA-968p-4wvh-cqc8"
            ],
            "fixed_version": "8.0.0-alpha.17",
            "advisory_count": 1,
            "oldest_advisory_days": 502
          },
          {
            "name": "@babel/helpers",
            "direct": false,
            "version": "7.25.6",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 6.2,
            "advisory_ids": [
              "GHSA-968p-4wvh-cqc8"
            ],
            "fixed_version": "8.0.0-alpha.17",
            "advisory_count": 1,
            "oldest_advisory_days": 502
          },
          {
            "name": "ajv",
            "direct": false,
            "version": "8.17.1",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-2g4f-4pwh-qvx6"
            ],
            "fixed_version": "8.18.0",
            "advisory_count": 1,
            "oldest_advisory_days": 165
          },
          {
            "name": "@babel/core",
            "direct": false,
            "version": "7.23.9",
            "severity": "low",
            "ecosystem": "npm",
            "cvss_score": 3.2,
            "advisory_ids": [
              "GHSA-4x5r-pxfx-6jf8"
            ],
            "fixed_version": "8.0.0-rc.6",
            "advisory_count": 1,
            "oldest_advisory_days": 41
          },
          {
            "name": "@babel/core",
            "direct": false,
            "version": "7.25.2",
            "severity": "low",
            "ecosystem": "npm",
            "cvss_score": 3.2,
            "advisory_ids": [
              "GHSA-4x5r-pxfx-6jf8"
            ],
            "fixed_version": "8.0.0-rc.6",
            "advisory_count": 1,
            "oldest_advisory_days": 41
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "low": 2,
          "high": 6,
          "critical": 2,
          "moderate": 3
        },
        "advisory_count": 34,
        "affected_count": 13,
        "assessed_count": 239,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 9,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@bufbuild/protobuf",
          "manifest": "e2e/smoke/package.json",
          "ecosystem": "npm",
          "version_constraint": "1.8.0"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "@bufbuild/protobuf",
            "direct": true,
            "version": "1.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protobuf",
            "direct": true,
            "version": "2.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protobuf",
            "direct": true,
            "version": "^2.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protobuf",
            "direct": true,
            "version": "~2.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@ampproject/remapping",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "@angular/compiler",
            "direct": false,
            "version": "19.0.0-next.2",
            "ecosystem": "npm"
          },
          {
            "name": "@angular/compiler-cli",
            "direct": false,
            "version": "19.0.0-next.2",
            "ecosystem": "npm"
          },
          {
            "name": "@angular/core",
            "direct": false,
            "version": "19.0.0-next.2",
            "ecosystem": "npm"
          },
          {
            "name": "@aspect-test/e",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@aspect-test/f",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/cli",
            "direct": false,
            "version": "7.23.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/code-frame",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/code-frame",
            "direct": false,
            "version": "7.26.2",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/compat-data",
            "direct": false,
            "version": "7.24.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/compat-data",
            "direct": false,
            "version": "7.25.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/core",
            "direct": false,
            "version": "7.23.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/core",
            "direct": false,
            "version": "7.25.2",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/generator",
            "direct": false,
            "version": "7.24.10",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/generator",
            "direct": false,
            "version": "7.25.6",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/generator",
            "direct": false,
            "version": "7.26.3",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-annotate-as-pure",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-compilation-targets",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-compilation-targets",
            "direct": false,
            "version": "7.25.2",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-create-class-features-plugin",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-environment-visitor",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-function-name",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-hoist-variables",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-member-expression-to-functions",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-module-imports",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-module-imports",
            "direct": false,
            "version": "7.25.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-module-transforms",
            "direct": false,
            "version": "7.24.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-module-transforms",
            "direct": false,
            "version": "7.25.2",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-module-transforms",
            "direct": false,
            "version": "7.26.0",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-optimise-call-expression",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-plugin-utils",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-plugin-utils",
            "direct": false,
            "version": "7.25.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-replace-supers",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-simple-access",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-skip-transparent-expression-wrappers",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-split-export-declaration",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-string-parser",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-string-parser",
            "direct": false,
            "version": "7.25.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-identifier",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-identifier",
            "direct": false,
            "version": "7.25.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-option",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helpers",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helpers",
            "direct": false,
            "version": "7.25.6",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/highlight",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.23.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.25.6",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.26.3",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/plugin-syntax-jsx",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/plugin-syntax-typescript",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/plugin-transform-modules-commonjs",
            "direct": false,
            "version": "7.26.3",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/plugin-transform-typescript",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/preset-typescript",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/template",
            "direct": false,
            "version": "7.24.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/template",
            "direct": false,
            "version": "7.25.0",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/template",
            "direct": false,
            "version": "7.25.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/traverse",
            "direct": false,
            "version": "7.24.8",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/traverse",
            "direct": false,
            "version": "7.25.6",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/traverse",
            "direct": false,
            "version": "7.26.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.23.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.24.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.25.6",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.26.3",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf",
            "direct": false,
            "version": "^1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf-darwin-arm64",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf-darwin-x64",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf-linux-aarch64",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf-linux-armv7",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf-linux-x64",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf-win32-arm64",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/buf-win32-x64",
            "direct": false,
            "version": "1.50.1",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protoc-gen-es",
            "direct": false,
            "version": "1.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protoc-gen-es",
            "direct": false,
            "version": "2.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protoc-gen-es",
            "direct": false,
            "version": "~2.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protoplugin",
            "direct": false,
            "version": "1.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "@bufbuild/protoplugin",
            "direct": false,
            "version": "2.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@connectrpc/connect",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@connectrpc/connect",
            "direct": false,
            "version": "^2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@connectrpc/connect-fastify",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@connectrpc/connect-fastify",
            "direct": false,
            "version": "^2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@connectrpc/connect-node",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@connectrpc/protoc-gen-connect-query",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@connectrpc/protoc-gen-connect-query",
            "direct": false,
            "version": "^2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@fastify/ajv-compiler",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@fastify/error",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@fastify/fast-json-stringify-compiler",
            "direct": false,
            "version": "5.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@fastify/forwarded",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@fastify/merge-json-schemas",
            "direct": false,
            "version": "0.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "@fastify/proxy-addr",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/gen-mapping",
            "direct": false,
            "version": "0.3.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/resolve-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/set-array",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/sourcemap-codec",
            "direct": false,
            "version": "1.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/trace-mapping",
            "direct": false,
            "version": "0.3.25",
            "ecosystem": "npm"
          },
          {
            "name": "@nicolo-ribaudo/chokidar-2",
            "direct": false,
            "version": "2.1.8-no-fsevents.3",
            "ecosystem": "npm"
          },
          {
            "name": "@tsconfig/node18",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@tsconfig/strictest",
            "direct": false,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "20.19.11",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "^20.19.11",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript/vfs",
            "direct": false,
            "version": "1.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript/vfs",
            "direct": false,
            "version": "1.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "abort-controller",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "abstract-logging",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ajv",
            "direct": false,
            "version": "8.17.1",
            "ecosystem": "npm"
          },
          {
            "name": "ajv-formats",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "3.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "anymatch",
            "direct": false,
            "version": "3.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "atomic-sleep",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "avvio",
            "direct": false,
            "version": "9.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "base64-js",
            "direct": false,
            "version": "1.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "binary-extensions",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.11",
            "ecosystem": "npm"
          },
          {
            "name": "braces",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "browserslist",
            "direct": false,
            "version": "4.23.2",
            "ecosystem": "npm"
          },
          {
            "name": "buffer",
            "direct": false,
            "version": "6.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "buffer-from",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "caniuse-lite",
            "direct": false,
            "version": "1.0.30001642",
            "ecosystem": "npm"
          },
          {
            "name": "chalk",
            "direct": false,
            "version": "2.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "chokidar",
            "direct": false,
            "version": "3.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "cliui",
            "direct": false,
            "version": "8.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "color-convert",
            "direct": false,
            "version": "1.9.3",
            "ecosystem": "npm"
          },
          {
            "name": "color-convert",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "color-name",
            "direct": false,
            "version": "1.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "color-name",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "commander",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "concat-map",
            "direct": false,
            "version": "0.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "convert-source-map",
            "direct": false,
            "version": "1.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "convert-source-map",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cookie",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "date-fns",
            "direct": false,
            "version": "2.29.3",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.3.4",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.3.5",
            "ecosystem": "npm"
          },
          {
            "name": "dequal",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "electron-to-chromium",
            "direct": false,
            "version": "1.4.830",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "escalade",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "escape-string-regexp",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "event-target-shim",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "events",
            "direct": false,
            "version": "3.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "fast-decode-uri-component",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "fast-deep-equal",
            "direct": false,
            "version": "3.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "fast-json-stringify",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "fast-querystring",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "fast-redact",
            "direct": false,
            "version": "3.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "fast-uri",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "fastify",
            "direct": false,
            "version": "5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "fastify",
            "direct": false,
            "version": "^5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "fastq",
            "direct": false,
            "version": "1.17.1",
            "ecosystem": "npm"
          },
          {
            "name": "fill-range",
            "direct": false,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "find-my-way",
            "direct": false,
            "version": "9.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs-readdir-recursive",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs.realpath",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fsevents",
            "direct": false,
            "version": "2.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "gensync",
            "direct": false,
            "version": "1.0.0-beta.2",
            "ecosystem": "npm"
          },
          {
            "name": "get-caller-file",
            "direct": false,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": false,
            "version": "7.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "glob-parent",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "globals",
            "direct": false,
            "version": "11.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "has-flag",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ieee754",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "inflight",
            "direct": false,
            "version": "1.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "inherits",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "ipaddr.js",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-binary-path",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-extglob",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-fullwidth-code-point",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-glob",
            "direct": false,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "is-number",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "js-tokens",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "jsesc",
            "direct": false,
            "version": "2.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "jsesc",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-ref-resolver",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-traverse",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "json5",
            "direct": false,
            "version": "2.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "light-my-request",
            "direct": false,
            "version": "6.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "5.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "make-dir",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "node-releases",
            "direct": false,
            "version": "2.0.17",
            "ecosystem": "npm"
          },
          {
            "name": "normalize-path",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "on-exit-leak-free",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "once",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "path-is-absolute",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "picocolors",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "2.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "pify",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "pino",
            "direct": false,
            "version": "9.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "pino-abstract-transport",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "pino-std-serializers",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "process",
            "direct": false,
            "version": "0.11.10",
            "ecosystem": "npm"
          },
          {
            "name": "process-warning",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "process-warning",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "quick-format-unescaped",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "readable-stream",
            "direct": false,
            "version": "4.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "readdirp",
            "direct": false,
            "version": "3.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "real-require",
            "direct": false,
            "version": "0.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "reflect-metadata",
            "direct": false,
            "version": "0.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "require-directory",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "require-from-string",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "ret",
            "direct": false,
            "version": "0.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "reusify",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "rfdc",
            "direct": false,
            "version": "1.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "rxjs",
            "direct": false,
            "version": "7.5.7",
            "ecosystem": "npm"
          },
          {
            "name": "safe-buffer",
            "direct": false,
            "version": "5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "safe-regex2",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "safe-stable-stringify",
            "direct": false,
            "version": "2.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "secure-json-parse",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "5.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "6.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "set-cookie-parser",
            "direct": false,
            "version": "2.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "slash",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "sonic-boom",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "source-map",
            "direct": false,
            "version": "0.6.1",
            "ecosystem": "npm"
          },
          {
            "name": "source-map-support",
            "direct": false,
            "version": "0.5.21",
            "ecosystem": "npm"
          },
          {
            "name": "split2",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "4.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "string_decoder",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-ansi",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "supports-color",
            "direct": false,
            "version": "5.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "thread-stream",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "to-fast-properties",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "to-regex-range",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "toad-cache",
            "direct": false,
            "version": "3.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "tslib",
            "direct": false,
            "version": "2.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "4.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.8.3",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.9.2",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "6.21.0",
            "ecosystem": "npm"
          },
          {
            "name": "update-browserslist-db",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrappy",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "y18n",
            "direct": false,
            "version": "5.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "yargs",
            "direct": false,
            "version": "17.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "yargs-parser",
            "direct": false,
            "version": "21.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "zone.js",
            "direct": false,
            "version": "0.12.0",
            "ecosystem": "npm"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 248,
        "direct_count": 4,
        "indirect_count": 244
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 11,
        "merged_prs": 622,
        "open_issues": 51,
        "closed_ratio": 0.757,
        "closed_issues": 159,
        "closed_unmerged_prs": 122
      },
      "bus_factor": 2,
      "bot_contributors": 2,
      "top_contributors": [
        {
          "type": "User",
          "login": "gregmagolan",
          "commits": 199,
          "avatar_url": "https://avatars.githubusercontent.com/u/520826?v=4"
        },
        {
          "type": "User",
          "login": "jbedard",
          "commits": 170,
          "avatar_url": "https://avatars.githubusercontent.com/u/89246?v=4"
        },
        {
          "type": "User",
          "login": "alexeagle",
          "commits": 166,
          "avatar_url": "https://avatars.githubusercontent.com/u/47395?v=4"
        },
        {
          "type": "User",
          "login": "thesayyn",
          "commits": 39,
          "avatar_url": "https://avatars.githubusercontent.com/u/20563340?v=4"
        },
        {
          "type": "User",
          "login": "kormide",
          "commits": 12,
          "avatar_url": "https://avatars.githubusercontent.com/u/4948761?v=4"
        },
        {
          "type": "User",
          "login": "gzm0",
          "commits": 6,
          "avatar_url": "https://avatars.githubusercontent.com/u/1140323?v=4"
        },
        {
          "type": "User",
          "login": "jfirebaugh",
          "commits": 5,
          "avatar_url": "https://avatars.githubusercontent.com/u/98601?v=4"
        },
        {
          "type": "User",
          "login": "dzbarsky",
          "commits": 4,
          "avatar_url": "https://avatars.githubusercontent.com/u/1565842?v=4"
        },
        {
          "type": "User",
          "login": "MichaelMitchell-at",
          "commits": 4,
          "avatar_url": "https://avatars.githubusercontent.com/u/98767680?v=4"
        },
        {
          "type": "User",
          "login": "menny",
          "commits": 4,
          "avatar_url": "https://avatars.githubusercontent.com/u/481272?v=4"
        }
      ],
      "contributors_sampled": 45,
      "top_contributor_share": 0.304
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci-vanilla-bazel.yaml",
        "ci-workflows.yaml",
        "mirror.yml",
        "publish.yaml",
        "release.yml",
        "tag.yaml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": true
    },
    "security_signals": {
      "lockfiles": [
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "24 out of 24 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 5,
            "reason": "Found 17/30 approved changesets -- score normalized to 5",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 13 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 6 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 6,
            "reason": "dependency not pinned by hash detected -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 10,
            "reason": "5 out of the last 5 releases have a total of 5 signed artifacts.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "8347517c72eba7f09890381ed1b520c6d55bebca",
        "ran_at": "2026-07-27T04:37:38Z",
        "aggregate_score": 6.7,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-26T07:42:34Z",
      "oldest_open_prs": [
        {
          "number": 621,
          "created_at": "2024-06-04T16:30:23Z",
          "last_comment_at": "2026-01-23T02:34:37Z",
          "last_comment_author": "CLAassistant"
        },
        {
          "number": 622,
          "created_at": "2024-06-05T21:09:59Z",
          "last_comment_at": "2026-01-23T02:34:22Z",
          "last_comment_author": "CLAassistant"
        },
        {
          "number": 695,
          "created_at": "2024-09-16T09:20:21Z",
          "last_comment_at": "2026-01-23T02:34:05Z",
          "last_comment_author": "CLAassistant"
        },
        {
          "number": 868,
          "created_at": "2025-12-10T20:59:27Z",
          "last_comment_at": "2026-01-23T02:33:31Z",
          "last_comment_author": "CLAassistant"
        },
        {
          "number": 874,
          "created_at": "2025-12-17T17:24:04Z",
          "last_comment_at": "2026-01-23T02:33:26Z",
          "last_comment_author": "CLAassistant"
        },
        {
          "number": 880,
          "created_at": "2026-01-14T21:59:09Z",
          "last_comment_at": "2026-01-23T02:33:15Z",
          "last_comment_author": "CLAassistant"
        },
        {
          "number": 894,
          "created_at": "2026-02-11T01:31:31Z",
          "last_comment_at": "2026-04-15T09:14:42Z",
          "last_comment_author": "CLAassistant"
        },
        {
          "number": 951,
          "created_at": "2026-07-10T22:55:32Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 968,
          "created_at": "2026-07-15T08:13:31Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 972,
          "created_at": "2026-07-18T02:54:23Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 975,
          "created_at": "2026-07-22T00:25:20Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-07-25T09:26:42Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 48,
          "created_at": "2022-06-10T19:57:24Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 73,
          "created_at": "2022-07-06T15:03:39Z",
          "last_comment_at": "2024-09-04T14:42:53Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 152,
          "created_at": "2022-09-22T09:46:14Z",
          "last_comment_at": "2023-08-20T13:58:45Z",
          "last_comment_author": "cbartolomeu"
        },
        {
          "number": 159,
          "created_at": "2022-09-28T09:53:03Z",
          "last_comment_at": "2024-04-01T06:37:14Z",
          "last_comment_author": "Sayed-Helmy"
        },
        {
          "number": 170,
          "created_at": "2022-10-11T19:32:13Z",
          "last_comment_at": "2022-10-13T17:34:12Z",
          "last_comment_author": "cgrindel"
        },
        {
          "number": 191,
          "created_at": "2022-10-26T20:43:17Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 275,
          "created_at": "2022-12-15T16:14:46Z",
          "last_comment_at": "2022-12-16T01:08:01Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 319,
          "created_at": "2023-02-14T06:36:49Z",
          "last_comment_at": "2024-07-29T04:48:39Z",
          "last_comment_author": "dgp1130"
        },
        {
          "number": 338,
          "created_at": "2023-03-16T18:16:29Z",
          "last_comment_at": "2023-08-07T15:41:13Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 386,
          "created_at": "2023-07-13T13:01:33Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 387,
          "created_at": "2023-07-14T23:36:55Z",
          "last_comment_at": "2025-04-16T22:11:23Z",
          "last_comment_author": "samsternatretool"
        },
        {
          "number": 388,
          "created_at": "2023-07-15T03:22:25Z",
          "last_comment_at": "2023-08-18T23:36:04Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 391,
          "created_at": "2023-07-25T20:32:17Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 421,
          "created_at": "2023-08-23T18:24:20Z",
          "last_comment_at": "2023-08-31T21:30:00Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 429,
          "created_at": "2023-08-28T17:43:08Z",
          "last_comment_at": "2023-09-05T21:18:07Z",
          "last_comment_author": "mstier-nflx"
        },
        {
          "number": 432,
          "created_at": "2023-08-30T16:14:57Z",
          "last_comment_at": "2023-08-30T17:36:03Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 449,
          "created_at": "2023-09-13T21:27:10Z",
          "last_comment_at": "2024-01-24T03:51:20Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 451,
          "created_at": "2023-09-18T19:10:12Z",
          "last_comment_at": "2025-01-23T08:43:23Z",
          "last_comment_author": "cameron-martin"
        },
        {
          "number": 466,
          "created_at": "2023-10-12T08:52:28Z",
          "last_comment_at": "2024-01-24T03:49:27Z",
          "last_comment_author": "alexeagle"
        },
        {
          "number": 467,
          "created_at": "2023-10-12T11:58:07Z",
          "last_comment_at": "2024-02-27T09:13:34Z",
          "last_comment_author": "jbedard"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/aspect-build/rules_ts",
    "host": "github.com",
    "name": "rules_ts",
    "owner": "aspect-build"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "good",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 79,
      "inputs": {
        "security": 74,
        "vitality": 92,
        "community": 72,
        "governance": 69,
        "engineering": 86
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 92,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "excellent",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 87,
            "inputs": {
              "commits_last_year": 113,
              "human_commit_share": 0.98,
              "days_since_last_push": 1,
              "active_weeks_last_year": 33
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 1 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 1
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "33/52 weeks with commits",
                "points": 22.8,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 33
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "113 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 113
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 6 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "releases_count": 96,
              "latest_release_tag": "v3.9.2",
              "releases_from_tags": false,
              "days_since_latest_release": 9,
              "mean_days_between_releases": 16.9
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "96 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 96
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 9 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 9
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~16.9 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 16.9
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "5 out of the last 5 releases have a total of 5 signed artifacts.",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 1,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 1 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 1
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "good",
        "name": "Community & Adoption",
        "value": 72,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "moderate",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 54,
            "inputs": {
              "forks": 86,
              "stars": 136,
              "watchers": 5,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "136 stars",
                "points": 34.6,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 136
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "86 forks",
                "points": 16.1,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 86
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "5 watchers",
                "points": 3.3,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 5
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 69,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "moderate",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 64,
            "inputs": {
              "bus_factor": 2,
              "contributors_sampled": 45,
              "top_contributor_share": 0.304
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "2 contributor(s) cover half of all commits",
                "points": 25.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 30% of commits",
                "points": 15.7,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 30
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "45 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 45
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 13 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "merged_prs": 622,
              "open_issues": 51,
              "closed_issues": 159,
              "issue_closed_ratio": 0.757,
              "closed_unmerged_prs": 122
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "76% of issues closed",
                "points": 35.4,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 76
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "622/744 decided PRs merged",
                "points": 32,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 622,
                      "decided": 744
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 17/30 approved changesets -- score normalized to 5",
                "points": 7.5,
                "status": "partial",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 69,
            "inputs": {
              "followers": 173,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "aspect-build",
              "public_repos": 31,
              "account_age_days": 2357
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "173 followers of aspect-build",
                "points": 16.1,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 173,
                      "login": "aspect-build"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "31 public repos, account ~6 yr old",
                "points": 23,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 31
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 6
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 86,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 94,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": true
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "6 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 16,
                "status": "met",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 9.6,
                "status": "met",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "24 out of 24 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "good",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "topics": [
                "bazel",
                "bazel-rules",
                "typescript"
              ],
              "has_wiki": false,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "3 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "good",
        "name": "Security",
        "value": 74,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection",
                    "packaging"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 67,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 6.7
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "24 out of 24 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 17/30 approved changesets -- score normalized to 5",
                "points": 3.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 13 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 6 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "5 out of the last 5 releases have a total of 5 signed artifacts.",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 239 resolved dependencies against OSV; 9 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories",
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 239
                }
              },
              {
                "code": "advisories_unassessed",
                "params": {
                  "count": 9
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 34,
              "affected_packages": 13,
              "assessed_packages": 239,
              "unassessed_packages": 9,
              "affected_by_severity": "critical 2, high 6, moderate 3, low 2",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 239,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 13
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 64,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "at_risk",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.949,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "93 of 98 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 93,
                      "sampled": 98
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 70,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "e2e/bzlmodules/module_a/tsconfig.json",
                "e2e/bzlmodules/module_b/tsconfig.json",
                "e2e/external_dep/sub_external/subdir/tsconfig.json",
                "e2e/external_dep/sub_external/tsconfig.json",
                "e2e/external_dep/tsconfig.json",
                "e2e/nested_repos/module_a/tsconfig.json",
                "e2e/nested_repos/module_b/tsconfig.json",
                "e2e/smoke/tsconfig.json",
                "examples/assets/tsconfig.json",
                "examples/connect_node/tsconfig.json",
                "examples/custom_compiler/tsconfig.json",
                "examples/declaration_dir/tsconfig.json",
                "examples/deps_pkg/tsconfig.json",
                "examples/deps_pkg_transpiler/tsconfig.json",
                "examples/dts_pkg-outDir/tsconfig.json",
                "examples/dts_pkg/tsconfig.json",
                "examples/emit_declaration_only/tsconfig.json",
                "examples/extends_chain/main/tsconfig.json",
                "examples/extends_chain/tsconfig.json",
                "examples/generate_trace/tsconfig.json",
                "examples/isolated_declarations/tsconfig.json",
                "examples/isolated_typecheck/backend/tsconfig.json",
                "examples/isolated_typecheck/tsconfig.json",
                "examples/jsx/tsconfig.json",
                "examples/lib_nocompile/tsconfig.json",
                "examples/lib_nocompile_linked/tsconfig.json",
                "examples/linked_empty_node_modules/tsconfig.json",
                "examples/linked_lib/tsconfig.json",
                "examples/linked_pkg/tsconfig.json",
                "examples/linked_tsconfig/tsconfig.json",
                "examples/linked_tsconfig_consumer/tsconfig.json",
                "examples/module_ext/tsconfig.json",
                "examples/no_emit/tsconfig.json",
                "examples/output_group/tsconfig.json",
                "examples/package_json_usage/colocated/tsconfig.json",
                "examples/package_json_usage/tsconfig.json",
                "examples/path_mappings/tsconfig.json",
                "examples/project_references/app/tsconfig.json",
                "examples/project_references/lib_a/tsconfig.json",
                "examples/project_references/lib_b/tsconfig.json",
                "examples/proto_grpc/tsconfig.json",
                "examples/resolve_json_module/tsconfig.json",
                "examples/resolve_json_module_esm/tsconfig.json",
                "examples/resolve_json_module_out_dir/tsconfig.json",
                "examples/resolve_json_module_transpiler/tsconfig.json",
                "examples/root_dir/tsconfig.json",
                "examples/simple/tsconfig.json",
                "examples/srcs/tsconfig.json",
                "examples/targets/tsconfig.json",
                "examples/transpiler/tsconfig.json",
                "examples/ts_project_dep/a/tsconfig.json",
                "examples/ts_project_dep/b/tsconfig.json",
                "examples/tsbuildinfo/tsconfig.json",
                "examples/tsconfig_external/tsconfig.json",
                "examples/tsconfig_locations/config/tsconfig.json",
                "examples/tsconfig_types/tsconfig.json"
              ],
              "agent_commit_share": 0.08,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 11,
                "status": "met",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "e2e/bzlmodules/module_a/tsconfig.json, e2e/bzlmodules/module_b/tsconfig.json, e2e/external_dep/sub_external/subdir/tsconfig.json, e2e/external_dep/sub_external/tsconfig.json, e2e/external_dep/tsconfig.json, e2e/nested_repos/module_a/tsconfig.json, e2e/nested_repos/module_b/tsconfig.json, e2e/smoke/tsconfig.json, examples/assets/tsconfig.json, examples/connect_node/tsconfig.json, examples/custom_compiler/tsconfig.json, examples/declaration_dir/tsconfig.json, examples/deps_pkg/tsconfig.json, examples/deps_pkg_transpiler/tsconfig.json, examples/dts_pkg-outDir/tsconfig.json, examples/dts_pkg/tsconfig.json, examples/emit_declaration_only/tsconfig.json, examples/extends_chain/main/tsconfig.json, examples/extends_chain/tsconfig.json, examples/generate_trace/tsconfig.json, examples/isolated_declarations/tsconfig.json, examples/isolated_typecheck/backend/tsconfig.json, examples/isolated_typecheck/tsconfig.json, examples/jsx/tsconfig.json, examples/lib_nocompile/tsconfig.json, examples/lib_nocompile_linked/tsconfig.json, examples/linked_empty_node_modules/tsconfig.json, examples/linked_lib/tsconfig.json, examples/linked_pkg/tsconfig.json, examples/linked_tsconfig/tsconfig.json, examples/linked_tsconfig_consumer/tsconfig.json, examples/module_ext/tsconfig.json, examples/no_emit/tsconfig.json, examples/output_group/tsconfig.json, examples/package_json_usage/colocated/tsconfig.json, examples/package_json_usage/tsconfig.json, examples/path_mappings/tsconfig.json, examples/project_references/app/tsconfig.json, examples/project_references/lib_a/tsconfig.json, examples/project_references/lib_b/tsconfig.json, examples/proto_grpc/tsconfig.json, examples/resolve_json_module/tsconfig.json, examples/resolve_json_module_esm/tsconfig.json, examples/resolve_json_module_out_dir/tsconfig.json, examples/resolve_json_module_transpiler/tsconfig.json, examples/root_dir/tsconfig.json, examples/simple/tsconfig.json, examples/srcs/tsconfig.json, examples/targets/tsconfig.json, examples/transpiler/tsconfig.json, examples/ts_project_dep/a/tsconfig.json, examples/ts_project_dep/b/tsconfig.json, examples/tsbuildinfo/tsconfig.json, examples/tsconfig_external/tsconfig.json, examples/tsconfig_locations/config/tsconfig.json, examples/tsconfig_types/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "e2e/bzlmodules/module_a/tsconfig.json, e2e/bzlmodules/module_b/tsconfig.json, e2e/external_dep/sub_external/subdir/tsconfig.json, e2e/external_dep/sub_external/tsconfig.json, e2e/external_dep/tsconfig.json, e2e/nested_repos/module_a/tsconfig.json, e2e/nested_repos/module_b/tsconfig.json, e2e/smoke/tsconfig.json, examples/assets/tsconfig.json, examples/connect_node/tsconfig.json, examples/custom_compiler/tsconfig.json, examples/declaration_dir/tsconfig.json, examples/deps_pkg/tsconfig.json, examples/deps_pkg_transpiler/tsconfig.json, examples/dts_pkg-outDir/tsconfig.json, examples/dts_pkg/tsconfig.json, examples/emit_declaration_only/tsconfig.json, examples/extends_chain/main/tsconfig.json, examples/extends_chain/tsconfig.json, examples/generate_trace/tsconfig.json, examples/isolated_declarations/tsconfig.json, examples/isolated_typecheck/backend/tsconfig.json, examples/isolated_typecheck/tsconfig.json, examples/jsx/tsconfig.json, examples/lib_nocompile/tsconfig.json, examples/lib_nocompile_linked/tsconfig.json, examples/linked_empty_node_modules/tsconfig.json, examples/linked_lib/tsconfig.json, examples/linked_pkg/tsconfig.json, examples/linked_tsconfig/tsconfig.json, examples/linked_tsconfig_consumer/tsconfig.json, examples/module_ext/tsconfig.json, examples/no_emit/tsconfig.json, examples/output_group/tsconfig.json, examples/package_json_usage/colocated/tsconfig.json, examples/package_json_usage/tsconfig.json, examples/path_mappings/tsconfig.json, examples/project_references/app/tsconfig.json, examples/project_references/lib_a/tsconfig.json, examples/project_references/lib_b/tsconfig.json, examples/proto_grpc/tsconfig.json, examples/resolve_json_module/tsconfig.json, examples/resolve_json_module_esm/tsconfig.json, examples/resolve_json_module_out_dir/tsconfig.json, examples/resolve_json_module_transpiler/tsconfig.json, examples/root_dir/tsconfig.json, examples/simple/tsconfig.json, examples/srcs/tsconfig.json, examples/targets/tsconfig.json, examples/transpiler/tsconfig.json, examples/ts_project_dep/a/tsconfig.json, examples/ts_project_dep/b/tsconfig.json, examples/tsbuildinfo/tsconfig.json, examples/tsconfig_external/tsconfig.json, examples/tsconfig_locations/config/tsconfig.json, examples/tsconfig_types/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "8 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 8,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "good",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 82,
            "inputs": {
              "primary_language": "Starlark",
              "largest_source_bytes": 14886,
              "source_files_sampled": 109,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Starlark with type-check config (e2e/bzlmodules/module_a/tsconfig.json, e2e/bzlmodules/module_b/tsconfig.json, e2e/external_dep/sub_external/subdir/tsconfig.json, e2e/external_dep/sub_external/tsconfig.json, e2e/external_dep/tsconfig.json, e2e/nested_repos/module_a/tsconfig.json, e2e/nested_repos/module_b/tsconfig.json, e2e/smoke/tsconfig.json, examples/assets/tsconfig.json, examples/connect_node/tsconfig.json, examples/custom_compiler/tsconfig.json, examples/declaration_dir/tsconfig.json, examples/deps_pkg/tsconfig.json, examples/deps_pkg_transpiler/tsconfig.json, examples/dts_pkg-outDir/tsconfig.json, examples/dts_pkg/tsconfig.json, examples/emit_declaration_only/tsconfig.json, examples/extends_chain/main/tsconfig.json, examples/extends_chain/tsconfig.json, examples/generate_trace/tsconfig.json, examples/isolated_declarations/tsconfig.json, examples/isolated_typecheck/backend/tsconfig.json, examples/isolated_typecheck/tsconfig.json, examples/jsx/tsconfig.json, examples/lib_nocompile/tsconfig.json, examples/lib_nocompile_linked/tsconfig.json, examples/linked_empty_node_modules/tsconfig.json, examples/linked_lib/tsconfig.json, examples/linked_pkg/tsconfig.json, examples/linked_tsconfig/tsconfig.json, examples/linked_tsconfig_consumer/tsconfig.json, examples/module_ext/tsconfig.json, examples/no_emit/tsconfig.json, examples/output_group/tsconfig.json, examples/package_json_usage/colocated/tsconfig.json, examples/package_json_usage/tsconfig.json, examples/path_mappings/tsconfig.json, examples/project_references/app/tsconfig.json, examples/project_references/lib_a/tsconfig.json, examples/project_references/lib_b/tsconfig.json, examples/proto_grpc/tsconfig.json, examples/resolve_json_module/tsconfig.json, examples/resolve_json_module_esm/tsconfig.json, examples/resolve_json_module_out_dir/tsconfig.json, examples/resolve_json_module_transpiler/tsconfig.json, examples/root_dir/tsconfig.json, examples/simple/tsconfig.json, examples/srcs/tsconfig.json, examples/targets/tsconfig.json, examples/transpiler/tsconfig.json, examples/ts_project_dep/a/tsconfig.json, examples/ts_project_dep/b/tsconfig.json, examples/tsbuildinfo/tsconfig.json, examples/tsconfig_external/tsconfig.json, examples/tsconfig_locations/config/tsconfig.json, examples/tsconfig_types/tsconfig.json)",
                "points": 27,
                "status": "partial",
                "details": [
                  {
                    "code": "typecheck_config_language",
                    "params": {
                      "files": "e2e/bzlmodules/module_a/tsconfig.json, e2e/bzlmodules/module_b/tsconfig.json, e2e/external_dep/sub_external/subdir/tsconfig.json, e2e/external_dep/sub_external/tsconfig.json, e2e/external_dep/tsconfig.json, e2e/nested_repos/module_a/tsconfig.json, e2e/nested_repos/module_b/tsconfig.json, e2e/smoke/tsconfig.json, examples/assets/tsconfig.json, examples/connect_node/tsconfig.json, examples/custom_compiler/tsconfig.json, examples/declaration_dir/tsconfig.json, examples/deps_pkg/tsconfig.json, examples/deps_pkg_transpiler/tsconfig.json, examples/dts_pkg-outDir/tsconfig.json, examples/dts_pkg/tsconfig.json, examples/emit_declaration_only/tsconfig.json, examples/extends_chain/main/tsconfig.json, examples/extends_chain/tsconfig.json, examples/generate_trace/tsconfig.json, examples/isolated_declarations/tsconfig.json, examples/isolated_typecheck/backend/tsconfig.json, examples/isolated_typecheck/tsconfig.json, examples/jsx/tsconfig.json, examples/lib_nocompile/tsconfig.json, examples/lib_nocompile_linked/tsconfig.json, examples/linked_empty_node_modules/tsconfig.json, examples/linked_lib/tsconfig.json, examples/linked_pkg/tsconfig.json, examples/linked_tsconfig/tsconfig.json, examples/linked_tsconfig_consumer/tsconfig.json, examples/module_ext/tsconfig.json, examples/no_emit/tsconfig.json, examples/output_group/tsconfig.json, examples/package_json_usage/colocated/tsconfig.json, examples/package_json_usage/tsconfig.json, examples/path_mappings/tsconfig.json, examples/project_references/app/tsconfig.json, examples/project_references/lib_a/tsconfig.json, examples/project_references/lib_b/tsconfig.json, examples/proto_grpc/tsconfig.json, examples/resolve_json_module/tsconfig.json, examples/resolve_json_module_esm/tsconfig.json, examples/resolve_json_module_out_dir/tsconfig.json, examples/resolve_json_module_transpiler/tsconfig.json, examples/root_dir/tsconfig.json, examples/simple/tsconfig.json, examples/srcs/tsconfig.json, examples/targets/tsconfig.json, examples/transpiler/tsconfig.json, examples/ts_project_dep/a/tsconfig.json, examples/ts_project_dep/b/tsconfig.json, examples/tsbuildinfo/tsconfig.json, examples/tsconfig_external/tsconfig.json, examples/tsconfig_locations/config/tsconfig.json, examples/tsconfig_types/tsconfig.json",
                      "language": "Starlark"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/109 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 109,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "good",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 80,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": [
                "e2e/smoke/foo.proto",
                "examples/connect_node/proto/eliza.proto",
                "examples/proto_grpc/logger.proto",
                "examples/proto_grpc/status.proto",
                "examples/proto_grpc/stripping/s.proto",
                "ts/test/ts_proto_library/bar.proto",
                "ts/test/ts_proto_library/foo.proto"
              ]
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": "e2e/smoke/foo.proto, examples/connect_node/proto/eliza.proto, examples/proto_grpc/logger.proto, examples/proto_grpc/status.proto, examples/proto_grpc/stripping/s.proto, ts/test/ts_proto_library/bar.proto, ts/test/ts_proto_library/foo.proto",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "e2e/smoke/foo.proto, examples/connect_node/proto/eliza.proto, examples/proto_grpc/logger.proto, examples/proto_grpc/status.proto, examples/proto_grpc/stripping/s.proto, ts/test/ts_proto_library/bar.proto, ts/test/ts_proto_library/foo.proto"
                    }
                  }
                ],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-27T04:38:03.414600Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/a/aspect-build/rules_ts.svg",
  "full_name": "aspect-build/rules_ts",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statistics.