Raw JSON report machine-readable
{
"data": {
"repo": {
"topics": [
"agpl",
"ai",
"claude",
"claude-code",
"context-management",
"developer-tools",
"fork",
"token-optimization"
],
"is_fork": false,
"size_kb": 11281,
"has_wiki": false,
"homepage": "https://www.krynexlabs.de/en/openwolf-enhanced",
"languages": {
"CSS": 2698,
"HTML": 595,
"JavaScript": 85825,
"TypeScript": 631931
},
"pushed_at": "2026-07-21T18:22:13Z",
"created_at": "2026-07-09T15:58:46Z",
"owner_type": "User",
"updated_at": "2026-07-21T18:22:59Z",
"description": "Enhanced fork of OpenWolf — a token-conscious second brain for Claude Code, with bounded storage, self-maintenance (openwolf doctor), .wolfignore scoping, and tunable retention. AGPL-3.0.",
"is_archived": false,
"is_disabled": false,
"license_spdx": "AGPL-3.0",
"default_branch": "main",
"license_spdx_raw": "AGPL-3.0",
"primary_language": "TypeScript",
"significant_languages": [
"TypeScript",
"JavaScript"
]
},
"owner": {
"blog": "https://www.krynexlabs.de",
"name": "Krynex Labs",
"type": "User",
"login": "bassprofressor-lab",
"company": "Krynex Labs",
"location": "Germany",
"followers": 0,
"avatar_url": "https://avatars.githubusercontent.com/u/265652297?v=4",
"created_at": "2026-03-04T21:52:58Z",
"is_verified": null,
"public_repos": 4,
"account_age_days": 147
},
"license": {
"state": "standard",
"spdx_id": "AGPL-3.0",
"raw_spdx": "AGPL-3.0",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v1.20.4",
"kind": "patch",
"published_at": "2026-07-21T18:22:55Z"
},
{
"tag": "v1.20.3",
"kind": "patch",
"published_at": "2026-07-21T18:11:29Z"
},
{
"tag": "v1.20.2",
"kind": "patch",
"published_at": "2026-07-21T17:27:11Z"
},
{
"tag": "v1.20.1",
"kind": "patch",
"published_at": "2026-07-21T16:46:46Z"
},
{
"tag": "v1.20.0",
"kind": "minor",
"published_at": "2026-07-21T16:22:12Z"
},
{
"tag": "v1.19.3",
"kind": "patch",
"published_at": "2026-07-20T20:05:48Z"
},
{
"tag": "v1.19.2",
"kind": "patch",
"published_at": "2026-07-20T08:30:05Z"
},
{
"tag": "v1.19.1",
"kind": "patch",
"published_at": "2026-07-20T08:20:46Z"
},
{
"tag": "v1.19.0",
"kind": "minor",
"published_at": "2026-07-19T08:29:46Z"
},
{
"tag": "v1.18.2",
"kind": "patch",
"published_at": "2026-07-16T18:25:41Z"
},
{
"tag": "v1.18.1",
"kind": "patch",
"published_at": "2026-07-16T17:49:57Z"
},
{
"tag": "v1.18.0",
"kind": "minor",
"published_at": "2026-07-16T06:04:09Z"
},
{
"tag": "v1.17.0",
"kind": "minor",
"published_at": "2026-07-16T05:19:18Z"
},
{
"tag": "v1.16.5",
"kind": "patch",
"published_at": "2026-07-13T16:31:35Z"
},
{
"tag": "v1.16.4",
"kind": "patch",
"published_at": "2026-07-13T16:28:10Z"
},
{
"tag": "v1.16.3",
"kind": "patch",
"published_at": "2026-07-13T07:56:13Z"
},
{
"tag": "v1.16.2",
"kind": "patch",
"published_at": "2026-07-13T06:25:24Z"
},
{
"tag": "v1.16.1",
"kind": "patch",
"published_at": "2026-07-12T19:55:26Z"
},
{
"tag": "v1.16.0",
"kind": "minor",
"published_at": "2026-07-11T18:16:47Z"
},
{
"tag": "v1.15.1",
"kind": "patch",
"published_at": "2026-07-11T13:57:08Z"
},
{
"tag": "v1.15.0",
"kind": "minor",
"published_at": "2026-07-11T13:34:06Z"
},
{
"tag": "v1.14.0",
"kind": "minor",
"published_at": "2026-07-11T07:08:43Z"
},
{
"tag": "v1.13.0",
"kind": "minor",
"published_at": "2026-07-10T21:23:27Z"
},
{
"tag": "v1.12.1",
"kind": "patch",
"published_at": "2026-07-10T20:48:31Z"
},
{
"tag": "v1.12.0",
"kind": "minor",
"published_at": "2026-07-10T20:28:07Z"
},
{
"tag": "v1.11.0",
"kind": "minor",
"published_at": "2026-07-10T17:46:22Z"
},
{
"tag": "v1.10.0",
"kind": "minor",
"published_at": "2026-07-10T17:12:01Z"
},
{
"tag": "v1.9.4",
"kind": "patch",
"published_at": "2026-07-10T16:43:16Z"
},
{
"tag": "v1.9.3",
"kind": "patch",
"published_at": "2026-07-10T16:43:15Z"
},
{
"tag": "v1.9.2",
"kind": "patch",
"published_at": "2026-07-10T16:43:14Z"
},
{
"tag": "v1.9.1",
"kind": "patch",
"published_at": "2026-07-10T16:43:13Z"
},
{
"tag": "v1.9.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:12Z"
},
{
"tag": "v1.8.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:11Z"
},
{
"tag": "v1.7.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:10Z"
},
{
"tag": "v1.6.1",
"kind": "patch",
"published_at": "2026-07-10T16:43:10Z"
},
{
"tag": "v1.6.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:09Z"
},
{
"tag": "v1.5.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:08Z"
},
{
"tag": "v1.4.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:07Z"
},
{
"tag": "v1.3.1",
"kind": "patch",
"published_at": "2026-07-10T16:43:06Z"
},
{
"tag": "v1.3.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:05Z"
},
{
"tag": "v1.2.1",
"kind": "patch",
"published_at": "2026-07-10T16:43:04Z"
},
{
"tag": "v1.2.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:03Z"
},
{
"tag": "v1.1.0",
"kind": "minor",
"published_at": "2026-07-10T16:43:02Z"
}
],
"recent_commits": [
{
"oid": "0796037af7785dc92a734d518c8d1a861f365840",
"body": "- post-bash: drop the stderr-only=failure heuristic (git checkout, curl -v\n and friends write only to stderr and were counted as failed)\n- post-write: \"type-fix\" auto-bug only on an added `as`-assertion - the\n `\": \"` branch fired on every new object property\n- post-write: operator detector tokeniz\n[…]\ned: nativeMemoryDir falls back to canonicalized slug matching, so\n project paths with dots still find Claude's native Auto Memory\n\nSuite at 71.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.20.4: the six low-severity review leftovers",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T18:22:11Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "6204e76f18770b2b411c9e65a26306e1c00ad09f",
"body": "Release commit for 36a1e9f (cron consolidation), e5fedea (watcher vs\nembedding index), fc80802 (buglog similarity + dead ledger writers),\nfffe9d3 (hook layer + gitignore-lite matcher).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.20.3: eleven fixes from the full bug/performance/logic review",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T18:10:52Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "fffe9d316dd02ba4334567c53ff86d5de0693c22",
"body": "…d counters; gitignore-lite matcher\n\nSeven review findings across the hook layer:\n\n- countSemanticEntries counted lines starting \"| YYYY-MM-DD\" - a format no\n writer produces (rows start \"| HH:MM |\"), so it always returned 0 and the\n \"no meaningful summary\" reminder fired in every session with 3+ \n[…]\nst\" previously matched nothing at all). doctor's footprint also\n lists the recall-embeddings index files.\n\n4 new regression tests; suite at 70.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "hooks: fix the always-firing summary reminder, secret-path leak, blin…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T18:02:30Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "fc80802502ac1952148f7aa2fa190c2767443bbc",
"body": "…riters\n\nfindSimilarBugs granted score 1.0 whenever one normalized message contained\nthe other - normalize() reduces a short or punctuation-only error_message\nto almost nothing, and \"\".includes matches everything, so logBug folded\nunrelated new bugs into such an entry as \"duplicates\". The contained \n[…]\noks/stop.ts\n(no lock, hardcoded caps instead of config retention, missing\nanatomy_misses/real_usage). The stop hook is the single ledger writer.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "buglog similarity: length-gate the substring rule; drop dead ledger w…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T17:59:42Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "e5fedeab58b4ab54587d138f7a72fe01ef1f9fe3",
"body": "The watcher reads a changed .wolf file as UTF-8 and broadcasts the full\ncontent to every dashboard WebSocket client. recall-embeddings.vec (raw\nFloat32, ~70 MB on a large knowledge base) and recall-embeddings.json\n(~6.5 MB) were not in the ignore list, so every index build checkpoint -\none per 20 embedding batches - triggered a 70 MB read plus broadcast in\nthe daemon. Both are machine-local caches the dashboard has no use for.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "file-watcher: never read/broadcast the semantic recall index",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T17:59:42Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "36a1e9fca1ce4e06d6597b6b535490c4f72fca5d",
"body": "… implementation\n\nThe engine carried its own copy of consolidateMemory that MISSED the\nidempotency guard the utils/maintenance version has: every daily run\nre-consolidated already-consolidated session blocks and, finding no table\nrows inside them, rewrote every count to \"(0 actions)\". In one live\nme\n[…]\n.\nSame build root, so the duplicate had no reason to exist - the action now\ncalls maintenance.consolidateMemory (guarded, locked, byte-checked).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "cron-engine: delegate memory consolidation to the guarded maintenance…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T17:59:42Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "b7e2c3e590e7967351cd563a163e22f9015bf8d5",
"body": "…e visibility, blind detector\n\nRelease commit for e0ea988 (cron-state locking), 6f6f9fc (readJSON\nmissing-vs-corrupt) and 2ce27b8 (no_read_tracking diagnostic).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.20.2: the three deferred 2026-07-20 findings — locking, corrupt-fil…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T17:26:27Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "2ce27b8f1fb47a960614f1de456c9d3d6f5f4b6a",
"body": "Every waste pattern feeds on read data recorded by the pre-read hook. If\nthat hook is not deployed or not firing, the detector goes silently blind:\n\"no waste found\" and \"no data at all\" were indistinguishable (the 1.19.1\nreport showed both patterns can sit unreachable for months without anyone\nnotic\n[…]\nd no reads anywhere in it)\nnow produce a no_read_tracking diagnostic flag pointing at\n`openwolf status` / `openwolf update`, instead of silence.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "waste detector: report when read tracking itself is dead",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T17:16:13Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "6f6f9fc81b9938105911d9dad965d2ef7e2d9175",
"body": "…silent\n\nBoth copies (fs-safe and hooks/shared) folded \"file does not exist\" and\n\"file exists but does not parse\" into the same silent fallback. The first\nis a normal first-run condition; the second means real data is about to be\ntreated as empty - and every read-modify-write caller (cron-state, ses\n[…]\nefaults. Parse\nfailures on an existing file now print one [openwolf] line to stderr\nbefore returning the fallback. Return contract is unchanged.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "readJSON: a corrupt existing file is reported, only a missing one is …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T17:13:44Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "e0ea98822e17d1b759400a7aff91b33c144c054e",
"body": "The cron engine locked its execution_log appends, but five RMW sites in\nwolf-daemon (heartbeat, boot/switch/shutdown status, the retry_dead_letter\nWS handler) and the CLI's `cron retry` wrote the same file unlocked - a\nstale snapshot from any of them could clobber a freshly appended log\nentry, and t\n[…]\nState(patch) helper\n(lock, re-read, merge, write - always against the live wolfDir); the\nCLI wraps its dead-letter removal in the same withLock.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "cron-state: every read-modify-write goes under the shared lock",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T17:13:06Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "4083b619c62b0a0f41d2c6fc80d5341a0fe6a7cf",
"body": "…hot, hot-switch state\n\nRelease commit for the 2026-07-20 review leftovers, each fixed in its own\npreceding commit: fs-safe error reporting (a921b02), cron-engine cerebrum\nguard (868f72b), PreCompact snapshot consumption (2e7bb2f), daemon\nswitchProject config + shutdown state (9254b3e).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.20.1: four review fixes — silent writes, cerebrum guard, dead snaps…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T16:44:29Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "9254b3e1ef994cd9f9fc07af8b4f7fbf830f8756",
"body": "…ive project\n\nTwo leftovers from the hot-switch feature (#4, bug 7):\n\n- switchProject swapped projectRoot/wolfDir but kept the BOOT project's\n config, so the new project's cron.enabled was ignored - a project with\n cron disabled got an engine anyway (and vice versa). The config is now\n re-read on\n[…]\neft the\n actually-stopping project \"running\" forever. The path is now derived\n from the live wolfDir, matching what the heartbeat already did.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "daemon: switchProject reloads config; shutdown writes status to the l…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T16:42:12Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "2e7bb2f6725c19c5b96d5d2733c29143ed3dcd82",
"body": "…a dead write\n\nprecompact.ts wrote _precompact-snapshot.json on every compaction and\nnothing anywhere read it - the post-compaction digest already pulls the\nfile list from the live _session.json. The snapshot's one piece of unique\ninformation is the compaction trigger, so the digest note now says wh\n[…]\nected: stale\nPreCompact entries in already-deployed settings would spawn a failing node\nprocess on every compaction (the bug-181 failure class).\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "session-start: consume the PreCompact snapshot instead of leaving it …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T16:41:36Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "868f72b4584e418c3e3f0cac6c868150a911efb8",
"body": "…ly split\n\nThe truncation guard passed new Set([\"cerebrum.md\"]) whenever ANY context\nfile produced more than one chunk - so a large memory.md alongside a small\ncerebrum.md blocked the (opt-in) cerebrum overwrite with a misleading\n\"cerebrum.md is larger than the context cap\" error. Fail-closed, so ne\n[…]\ng. The guard now receives the basenames of the files\nthat were genuinely split; cerebrum.md is only refused when cerebrum.md\nitself did not fit.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "cron-engine: cerebrum overwrite guard checks the file that was actual…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T16:41:14Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "a921b02b6520740afbe42c94f87c47e7a737a4a4",
"body": "…ws rename\n\nwriteJSON/writeText (and the hooks/shared duplicate) caught every error on\nboth write paths and discarded it. That silence is how bug-183 stayed\ninvisible: the semantic-recall index failed to serialize on every run\n(JSON.stringify past V8's max string length) and the feature simply\nre-em\n[…]\net a boolean and users get a\ntrace. The inline tmp+rename in consolidateOldSessions (which did not\neven have a fallback) now uses the same core.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fs-safe: report failed writes instead of swallowing them; retry Windo…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T16:40:59Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "4be9c9044132ba439326d56145e817084a27ba12",
"body": "…r index, RRF retuned\n\nThe --semantic/--hybrid feature path (endpoint, index, fusion, fallback) had\nnever run end-to-end; validating it against a real 22,795-unit knowledge base\nsurfaced two release blockers:\n\n1. The index never persisted. Vectors lived inside the pretty-printed index\n JSON; at 22\n[…]\n\nWarm queries ~1.2 s. 3 new tests: index round-trip + cache + model-change\ninvalidation, partial-build resume, semantic ranking + hybrid fusion.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.20.0: semantic + hybrid recall, validated end-to-end — binary vecto…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-21T16:21:20Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "250bc842fe0a45419eccd47e4d2756c01970caf0",
"body": "…file\n\nOwn regression from 1.19.1. That release made both of detectWaste's main\npatterns reachable for the first time (they were dead code before — see\n1.19.1's changelog entry) but didn't make them mutually exclusive. A file\nread multiple times AND described in anatomy.md got charged twice: Pattern\n[…]\nhat asserted the old (wrong) behavior is\ncorrected; a new test locks in the fix and was verified to fail against the\npre-fix code.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.19.3: waste detector no longer double-counts a repeated, described …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-20T20:05:04Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "d72e2591c88267a64ac0ee2bf829cfc88b8c697a",
"body": "Publishing is tokenless via Trusted Publishing (OIDC), so no npm credential\nexists on any machine — which meant `npm deprecate` was impossible without\nsomeone minting a personal token. That surfaced when 1.19.1 shipped broken\nand could not be flagged.\n\nThe job tries OIDC first and falls back to an N\n[…]\nchange is documented for publish; whether it\ncovers deprecate is not, so the first run settles it either way rather than\nguessing.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "ci: workflow to deprecate a published version without a local npm token",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-20T09:26:57Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "f0a37340a5aacf05d51c35a922c2213d8a0f3e2a",
"body": "1.19.1 broke every hook in every project. shared.js gained an import of\ntoken-estimator.js, but copyHookScripts deploys from an enumerated\nHOOK_FILES list that never included it, so after `openwolf update` each\nhook died with ERR_MODULE_NOT_FOUND. Every hook imports shared.js, so\nnothing survived — \n[…]\nVerified by\nrestoring the old copy logic: the test goes red.\n\nAlso reorders CHANGELOG — 1.19.0 had been placed above [Unreleased].\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.19.2: deploy every compiled hook module, not a hardcoded list",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-20T08:29:26Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "f0a29eab229ec00fa03d38bf23039bfedd00ae34",
"body": "…le waste detector\n\nSeven fixes, all from verifying an external code review against the actual\ncode and runtime data (of its 20 claims, 9 held, 6 partly, 5 did not).\n\nThe central one: three copies of the extension -> content-type table had\ndrifted apart, so the same file was estimated at up to three\n[…]\n semantic recall feature it belongs to stays unreleased until\nit has been validated end to end against a live embeddings endpoint.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.19.1: token accounting fixes — one classifier, live config, reachab…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-20T08:19:07Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "8a8c030eb1d3a6ac380f2ebfd43a97bc275b9ab1",
"body": "… cerebrum backup, byte-safe context split, word-prefix recall\n\nVerified against source from a Nemotron-Ultra repo scan (false positives filtered):\n- withLock around compactLedger/consolidateMemory/dedupeAndCapBuglog/markPushed\n- writeCerebrumFromAi aborts overwrite if the backup write fails\n- split\n[…]\nContext hard-cut is byte-accurate (no split multi-byte chars)\n- recall BM25 uses word-prefix matching (port no longer hits report)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.19.0: concurrency + data-safety fixes — lock maintenance ops, guard…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-19T08:30:00Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "a75ad71aed05b630e4c82c89d98f9fe4ae9fd99e",
"body": "…r, measured-token chart, docs link\n\n- Daemon sends full_state to each newly-connected WS client, so the dashboard no longer shows stale\n pre-restart data after a daemon restart.\n- \"Recent Activity\" now surfaces the newest entries (was showing the day's oldest on a long session).\n- \"Usage Over Time\n[…]\nal_usage tokens (estimate fallback), keyed on turn end time.\n- Dashboard \"Docs\" link points to this fork's repo, not openwolf.com.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.18.2: dashboard fixes — full_state on connect, recent-activity orde…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-16T18:25:03Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "19f3e2fd8da1c0da692e1cd71f80aad646a5312d",
"body": "Every project shipped the same default ports (18791/18790), so running several daemons meant only\nthe first bound and a second project's dashboard opened the first project's data. Now: `openwolf\nupdate` gives each registered project a unique port pair (reassigning only collisions), `openwolf\ndashboa\n[…]\nred one is held by another\nproject's daemon, and the daemon honours OPENWOLF_DASHBOARD_PORT. Ported from upstream 2.0.1. 51 tests.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.18.1: unique dashboard/daemon ports per project (multi-project fix)",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-16T17:49:23Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "158c5b1cd146d0506f2872b8e5f85abb16530ca0",
"body": "…red tokens, symbol-level anatomy\n\nPorted from cytostack/openwolf 2.0 (AGPL-3.0), adapted to this fork:\n- PreCompact hook + compaction-aware session-start: session state and resume digest survive a\n context compaction instead of being reset/wiped.\n- Measured token usage: the Stop hook reads the har\n[…]\nbols). Our differentiators (recall, consolidate,\nlocal models, proposal mode, Wolfpack) remain unique — upstream never added them.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.18.0: port three upstream 2.0 upgrades — compaction survival, measu…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-16T06:03:36Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "346aae70ab3b246803ea147f7d72a1b92e276efc",
"body": "…tes, + 4 verified bug fixes\n\nAdded: keyless local-model support (Ollama/llama.cpp/LM Studio) at every call site;\n`openwolf llm[ --test]` to show/probe the configured provider.\nChanged: AI cron tasks default to proposal mode (write to .wolf/proposals/, touch nothing\ncanonical); oversized context fil\n[…]\nd fired against a stopped daemon\n- concurrent cron tasks lost each other's execution logs (cron-state.json RMW now under withLock)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.17.0: local models run keyless, AI cron proposes instead of overwri…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-16T05:18:27Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "8192d4a1e9ee3925ec9e2050fff57ec21cf32470",
"body": "… about the team\n\n1.16.4 taught recall --team to speak up when the workspace came back empty. It only did so when the\nLOCAL files had hits: with nothing found anywhere, an earlier return printed a bare \"No matches\" and\nnever mentioned the remote.\n\nThat is the case where the ambiguity does the most d\n[…]\ne conclude the\nfeature is broken.\n\nBoth paths now report what happened, and the message stays quiet when --team was not asked for.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.16.5: finish the job — the empty-everywhere case still said nothing…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-13T16:30:56Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "f1214586912a3866aa79cfed25b492b5180344bb",
"body": "An empty answer and an unasked question look identical on the terminal. Worse, the most likely reason\nfor an empty answer is one the user can fix the second they hear it: entries that are still waiting in\nthe approval queue do not appear in recall — so a workspace can hold three hundred entries and \n[…]\nreal workspace: 310 entries pushed, recall --team printed only local hits, and\nnothing indicated the remote had even been queried.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.16.4: recall --team was silent when the workspace had nothing to say",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-13T16:27:34Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "f52132693a833337c3e7d3c2cb56ff57f962b878",
"body": "…eam)\n\nA project can now offer what it has learned to a shared workspace, and search that workspace\nalongside its own files. No endpoint is hardcoded — --url points at whichever server speaks the\nAPI, yours or someone else's.\n\nLocal-first has to survive this feature, so:\n\n- Opt-in and explicit. No b\n[…]\nid not create the\ngitignore (the guard has to exist the moment the secret does), and the fallback built `c-c-8f06e6`.\n41/41 tests.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.16.3: opt-in bridge to a remote workspace (link / push / recall --t…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-13T07:55:41Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "83aa3f21d1b948730eaa36931c7e1431a4792854",
"body": "The other half of 1.16.1. post-write only ever runs on Write|Edit|MultiEdit, so a heredoc\n(cat > f <<EOF), a redirect, a sed -i or a cp never reach it. The Bash hook did exist, but\nit only wrote activity.log — and it bailed out immediately unless openwolf.capture.enabled,\nwhich is opt-in and off by \n[…]\nedited 3+ times\" buglog reminder still cannot attribute a shell\nedit to a file — that would need the path we are refusing to keep.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.16.2: edits made through the shell were never counted",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-13T06:24:37Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "3c72a90476fe853aabbd68f85a1e9ff398f3a887",
"body": "…ctory\n\npost-write drops any path outside the project root so foreign paths cannot leak into\nanatomy/memory (#56) — but it also dropped the fact that a write had happened. So in a\nsession whose work lives in an additional working directory (Claude Code supports\nseveral), files_written stayed empty, \n[…]\nhe built hooks before and after: four writes into a sibling\ndirectory, STATUS.md untouched → silence before, both reminders after.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.16.1: the STATUS.md reminder was blind to work done in another dire…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-12T19:54:38Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "09c414f60b4f4cf33aa010188e3bfb9a9045e6d3",
"body": "…s-project), Command Log dashboard panel\n\n- openwolf consolidate: LLM-merges near-duplicate cerebrum entries via the provider abstraction\n (findDuplicateEntries → callLlm merge → cerebrum.md rewrite with backup); --dry-run/--threshold/--max,\n non-overlapping pairs, implausible output skipped; pure\n[…]\nemoved\n- docs/SEO: README (en+de) reworked — works-with lead, contents nav, FAQ; broader npm keywords + new description\n- 37 tests\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.16.0: openwolf consolidate (LLM cerebrum dedup), recall --all (cros…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-11T18:16:00Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "9bfcf944f72f1c2bad5a138c60f09ec3f5656deb",
"body": "…njection, wider secret redaction)\n\nAdversarial review of the 1.14/1.15 surfaces; no feature changes.\n- llm-provider: assertSafeBaseUrl (https except loopback; block private/link-local/metadata IPs);\n cron-engine fetch redirect:\"error\" so the API key can't follow a 3xx to another host\n- agent-hooks\n[…]\n-u user:pass\n- post-bash: lock activity.log writes\n- 35 tests (new: injection inert, SSRF URLs blocked, redaction bypasses closed)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.15.1: security hardening (SSRF/base_url validation, Codex command-i…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-11T13:56:23Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "5b05909e29b52564f5c45a34641cd21f606ce5e8",
"body": "…i-agent hooks (Codex/Gemini/OpenCode), localized digest\n\n- cron AI tasks now speak any OpenAI-compatible endpoint (OpenAI/Groq/Cerebras/Mistral/Qwen/local) as well\n as Anthropic, via openwolf.cron config (llm_provider/llm_base_url/llm_model/api_key_env); Anthropic default\n unchanged. Verified end\n[…]\ne)\n- getWolfDir honors OPENWOLF_PROJECT_DIR so hooks resolve .wolf/ under any agent\n- 34 tests; README (en+de) + CHANGELOG updated\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.15.0: model-agnostic AI tasks (Anthropic + OpenAI-compatible), mult…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-11T13:33:09Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "38011de3fdd701d44c2e7dceffdd926d98b08760",
"body": "…ct native-memory view, opt-in Bash capture\n\n- recall: stable content-addressed citation ids ([c-3f9a]) + two-layer expand (--full / --id);\n BM25 ranking (rare-term IDF + length norm), substring matching preserved\n- openwolf.mcpb: one-click Claude Desktop Extension bundling the dependency-free MCP \n[…]\n in makeIgnoreMatcher (shared.ts + maintenance.ts) → grep-able again\n- 31 tests; README/OPENWOLF.md updated (incl. 7 hook scripts)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.14.0: citations + BM25 recall, .mcpb Desktop Extension, cross-proje…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-11T07:06:48Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "39027043d7cc010bf1903b878ddf2f405c6a5050",
"body": "…lf mcp for Claude Desktop\n\nAlso: README + German README synced (What's Enhanced native-memory row, recall/mcp commands,\nClaude Desktop MCP section). Releases the [Unreleased] set.",
"is_bot": false,
"headline": "1.13.0: native Auto Memory interop (recall/doctor/dashboard) + openwo…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T21:22:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e744f3fe69593671f3c9a26ac27d350d274f1f04",
"body": "…h for Claude Desktop\n\nDependency-free JSON-RPC/stdio MCP server (src/mcp/server.ts) exposing three read-only\ntools so OpenWolf works in the Claude Desktop app + any MCP client, not just Claude Code.\nServes one project (--project/$OPENWOLF_PROJECT_DIR). README documents Desktop registration.\nhandleMcpMessage tested; stdio verified e2e (initialize/tools.list/tools.call on real data).\n24/24 tests. [Unreleased], not tagged.",
"is_bot": false,
"headline": "feat(mcp): openwolf mcp server (Phase 3) — recall/resume/memory-healt…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T21:19:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7e6f6370af6bbd2e8ed7f16956fe560530fa1be5",
"body": "…ve Auto Memory\n\n- /api/native-memory (health + file list, read-only) and /api/native-memory/file\n (path-validated: basename .md only, must exist, size-capped).\n- NativeMemory.tsx: index-coverage stats, cutoff/dead-link/stale warnings, searchable\n file list with indexed/orphan badges + click-to-view modal. Sidebar + routing wired.\n- nativeMemoryFiles() in maintenance.ts (tested). Endpoints verified e2e (447 files,\n 353 orphan; traversal attempt -> 400). 23/23 tests. [Unreleased], not tagged.",
"is_bot": false,
"headline": "feat(dashboard): Native Memory panel (Phase 2) — browse Claude's nati…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T21:15:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "880a068b3b1d29783dacfa7fa30b20053c1e76d4",
"body": "…+ resume digest)\n\nRead-only layer over ~/.claude/projects/<slug>/memory/:\n- nativeMemoryDir() resolver (slug = path with / -> -; env override; graceful null).\n- recall searches native topic files too, labelled native/<file>.\n- doctor: native-memory health (indexed vs orphaned vs 200-line cutoff, dead links, stale, footprint).\n- resume digest surfaces native memory in the Available-on-demand index.\nVerified on a real project (447 files, 353 unindexed). 22/22 tests. [Unreleased], not tagged.",
"is_bot": false,
"headline": "feat: interop with Claude native Auto Memory (recall + doctor health …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T21:10:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4c806d6dec074b94aa7acf2378ac067bd09a440c",
"body": "…t's Enhanced",
"is_bot": false,
"headline": "1.12.1: real version in dashboard sidebar; German README; compact Wha…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T20:47:05Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "adcc04145385306e627e4b01f58af37d81196b43",
"body": "…op competitor references\n\nRemoves the claude-mem mention from the CHANGELOG 1.12.0 intro (ideas kept, name dropped).",
"is_bot": false,
"headline": "docs: add German README (docs/i18n/README.de.md) + language links; dr…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T20:45:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6100454897dbb5710018a33a6c44a48bb3ed6757",
"body": "…dcoded v1.0.0)\n\nVite injects __APP_VERSION__ from package.json at build time.",
"is_bot": false,
"headline": "fix(dashboard): show the real package version in the sidebar (was har…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T20:45:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1ff8f91278da0bcba27d89d5330a14d4dd0f787a",
"body": "…Commands & files\n\n- What's Enhanced: replace the four growing per-version bullet lists with one compact\n thematic table (versions live in the CHANGELOG, not here).\n- Commands: add recall + export, group daemon/cron, note update flags.\n- What It Creates: add STATUS.md.\n- Verified Design QC / Requirements still accurate.",
"is_bot": false,
"headline": "docs(readme): compact What's Enhanced into a thematic table; refresh …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T20:39:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "741cdcfbf20b527be455082a37bced68ce135301",
"body": "Adds the Memory, search & multi-project section (recall, progressive-disclosure\ndigest, <private> exclusion, structured summaries, export, .wolfignore suggestions,\ndashboard routing/aggregate/jump-to-file); fixes the prior section's version range.",
"is_bot": false,
"headline": "docs(readme): document 1.11.0 + 1.12.0 in What's Enhanced",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T20:32:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0c86325ce1e6ce48dca65262b2d2cbb9e91ff0c7",
"body": "…digest, structured summary scaffold\n\nBatched claude-mem-inspired features, zero-infra. Releases the [Unreleased] set.",
"is_bot": false,
"headline": "1.12.0: <private> exclusion, openwolf recall, progressive-disclosure …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T20:27:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "23afaf9a3974e8fdd7cd03fd62f31803a993f1e3",
"body": "…ed summary scaffold\n\nAdapted from a claude-mem review, kept zero-infra (no DB, no LLM worker):\n- recall(): keyword search over STATUS/cerebrum/memory/buglog -> compact file:line index.\n- buildResumeDigest: curated inline + token-cost hints, memory as one-line headline,\n 'Available on demand' index (counts + token cost + how to pull).\n- SessionStart writes a structured session-summary scaffold; OPENWOLF.md guides filling it.\n[Unreleased], not tagged. 17/17 tests.",
"is_bot": false,
"headline": "feat: openwolf recall, progressive-disclosure resume digest, structur…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T20:23:21Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6d86760cf7461f7146777c4d836efd262e7feee5",
"body": "… All Projects view + jump-to-file\n\nReleases the batched v1.10-cycle features accumulated under [Unreleased].",
"is_bot": false,
"headline": "1.11.0: export CSV/JSON, .wolfignore suggestions, dashboard routing +…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T17:45:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c27cc12e2c1ebabde1cd155f900d84b6b56e1a1c",
"body": "…ile insights\n\n- useHashRoute: #panel deep-linking + back/forward.\n- /api/aggregate + ProjectsAggregate panel: cross-project rollup (aggregateProjects/\n projectSummary in maintenance.ts, tested), one-click switch.\n- AI Insights linkify file paths -> deep-link to Anatomy filtered to that file.\n[Unreleased], not tagged. /api/aggregate verified end-to-end against the 5 registered projects.",
"is_bot": false,
"headline": "feat(dashboard): hash routing, All Projects aggregate view, jump-to-f…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T17:42:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a604629e3fb3c7dc3d763a6e494d3c3471b961c9",
"body": "Distinguishes real scanner load (scannable text-file count) from space/watch\nweight (bytes), so big-binary dirs the scanner already skips don't false-trigger.\nPure suggestIgnores() in maintenance.ts + test. [Unreleased], not tagged.",
"is_bot": false,
"headline": "feat(doctor): suggest .wolfignore entries for unignored noisy/large dirs",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T17:28:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f742eb4c7cb5613ab40fbd8a068597c8f0d1bdf3",
"body": "Pure toCSV (RFC 4180) + collectRows helpers, 3 tests. CHANGELOG under [Unreleased]\n— batched for the next release, not tagged.",
"is_bot": false,
"headline": "feat(export): openwolf export <sessions|bugs> as JSON or CSV",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T17:22:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "afaa355a327e013837fc3441bc7f07333c241928",
"body": "SessionStart injects a hard-capped digest (STATUS.md + cerebrum Do-Not-Repeat +\nlatest memory session) as additionalContext so the model resumes without spending\nreads. Skips unedited-template STATUS; config openwolf.session_context; stdout is\nreserved for the JSON so stderr reminders are unaffected. buildResumeDigest in\nshared.ts with 3 unit tests (11/11 pass).",
"is_bot": false,
"headline": "1.10.0: session-start resume context (bounded additionalContext digest)",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T17:11:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "16338447dc9c39c0065dbe413786a05a1ccc862b",
"body": "…ked artifact on node 20\n\npnpm 11.1.3 crashes on node 20 (ERR_UNKNOWN_BUILTIN_MODULE), so a node-20 build\nleg is impossible and tests the wrong thing anyway. The honest guard for\nengines.node>=20 is: build once on 22, then install the packed tarball on node 20\nand run it — verified locally to pass.",
"is_bot": false,
"headline": "fix(ci): build/test on node 22 (pnpm 11 needs it), smoke-test the pac…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T17:01:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b97918e66f80fc73761b3707624957563d971d3a",
"body": "…at setup-node with cache)",
"is_bot": false,
"headline": "fix(ci): drop pnpm cache, setup-node before pnpm (node-20 leg failed …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T16:51:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1f9eb01b6d65f11786aca5850255cdb20bb67633",
"body": "…est matrix\n\n- publish.yml: create a GitHub Release for each published tag, notes from CHANGELOG.\n- backfill-releases.yml: one-time idempotent backfill of releases for existing tags.\n- ci.yml: build + pnpm test on node 20 and 22 for every push/PR, guarding the\n engines.node >=20 claim against accidental node-22-only code.",
"is_bot": false,
"headline": "ci: GitHub Releases (tokenless via GITHUB_TOKEN) + node 20/22 build-t…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T16:42:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5abfa5dd3414314cffa2ad76394373f3745b6842",
"body": "…EBADENGINE on 22.14)",
"is_bot": false,
"headline": "fix(ci): pin npm@11 (npm@latest is now 12.x, needs node >=22.22.2 -> …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T16:33:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ffbeaa86a2f416eccbbbb5458af4c31841dd3bf6",
"body": "Without an explicit version, action-setup used the packageManager field via\ncorepack; with corepack enabled and packageManager=pnpm, corepack intercepts\nnpm too, so `npm install -g npm@latest` (and `npm publish`) failed. An explicit\nversion installs pnpm standalone, leaving npm untouched.",
"is_bot": false,
"headline": "fix(ci): pin pnpm/action-setup version to avoid corepack shimming npm",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T16:27:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f16f00c56204e587911e9282ecd74e960ad11a1b",
"body": "First release published from CI: a v* tag push authenticates via GitHub OIDC\n(no NPM_TOKEN) and attaches provenance. Also pins packageManager pnpm@11.1.3.",
"is_bot": false,
"headline": "1.9.4: tokenless releases via npm Trusted Publishing (OIDC)",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T16:24:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3cb14e69c91d687b9646ceae6def508338e094f1",
"body": "… in CI",
"is_bot": false,
"headline": "chore: pin packageManager (pnpm@11.1.3) so pnpm/action-setup resolves…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T16:17:07Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1ee6ae66447157d3ed7186d01f9c6f0b72dde9f3",
"body": "Publishes on version-tag push using GitHub OIDC + provenance — no NPM_TOKEN\nsecret. Requires a Trusted Publisher configured on npmjs.com for this repo +\n.github/workflows/publish.yml. The one-shot bootstrap token used to create the\npackage on npm is revoked; all future releases run from CI.",
"is_bot": false,
"headline": "ci: tokenless npm publish via Trusted Publishing (OIDC)",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T16:16:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "21b19a45a87387bcdd7ac2870da5367f80f8f0b7",
"body": "…nstead of building\n\nprepublishOnly ran pnpm build, whose prebuild deletes dist/ — the global\nopenwolf CLI symlinks into dist/bin/openwolf.js, so a failed build mid-publish\ntook the CLI down, and a mistimed publish could ship a stale dist/. Replaced\nwith scripts/prepublish-guard.mjs: refuses to publish unless dist/ is present,\nfresh, on a clean tree, and tagged. Building is now a separate deliberate step.\n\nREADME Quick Start leads with npm install; notes bare openwolf is upstream 1.0.4.",
"is_bot": false,
"headline": "1.9.3: publish to npm as openwolf-enhanced; prepublishOnly verifies i…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T15:45:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8e02fbb1f4ca9838f5cdf9e5f4b3c92b54117855",
"body": "…artifact fixes\n\nThe 'What's Enhanced' section stopped at 1.9.0.",
"is_bot": false,
"headline": "docs(readme): document 1.9.1 backup retention and 1.9.2 seeding/hook-…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T15:30:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0296cb20dc0bbcfd2975c87a4c815d7adefdedda",
"body": "Three findings surfaced while fixing 1.9.1's backup bloat.\n\n- `openwolf update` never created user-data files a project was missing.\n \"Never overwrite\" was implemented as \"never touch\", so projects created\n before STATUS.md existed (1.4.0) never got one -- while OPENWOLF.md tells\n the agent to re\n[…]\narns that `prebuild` deletes dist/ (the global CLI symlinks into\nit) and that a rebuild deploys nothing without `openwolf update`.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.9.2: seed missing user-data files, unify hook deployment",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T05:31:36Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "c3ff851763b4999711abf942508b4604b69bcbe3",
"body": "… write\n\n`openwolf update` copied token-ledger.json into every backup. The ledger is\ncapped by session count rather than bytes, so a mature project's ledger sits at\na few MB and each snapshot carried a full copy. Twelve updates in one afternoon\nleft 38 MB of backups in a 41 MB .wolf/, ~30 MB of it r\n[…]\nted\n updates accumulated snapshots unless you happened to run doctor.\n\nBackups: 3.2 MB → 484 KB. orderflow/.wolf: 41 MB → 9.0 MB.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.9.1: backup retention — exclude token-ledger from backups, prune on…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-10T05:03:57Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "2298992c5048bdece392052a91c5feb3206e0fae",
"body": "…currency, ledger locking, tests, file-watcher fix, dashboard quick wins)\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "docs(readme): document 1.6–1.9 enhancements in What's Enhanced (deps …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T20:55:36Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "d06771894ffe8eb60c7072707072383d941fffb6",
"body": "…box, doctor registry checks, theme-aware tooltips)\n\n- Dashboard: daemon-down warning banner with retry (useWolfData exposes retry()).\n- Design QC: thumbnail grid + full-size lightbox, served by new path-safe token-gated\n route GET /api/designqc/capture/:file (dotfiles:allow — captures live under .\n[…]\nre route 200 image/png, path traversal rejected; doctor\nreports both healthy registry and injected collision. Build+8 tests green.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.9.0: dashboard & CLI quick wins (daemon-down banner, DesignQC light…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T20:51:48Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "a59e6f1d3f9b1cb7c2fa87ef3f369553586a83db",
"body": "…gnore fix\n\nDev majors: TypeScript 5.9->7.0, Vite 6->8, @vitejs/plugin-react 4->6,\nrecharts 2->3, @types/node 22->26, @tailwindcss/vite 4.3.\nRuntime majors: chokidar 4->5, commander 12->15, node-cron 3->4,\nopen 10->11, puppeteer-core 24->25.\n\nFix: file-watcher 'ignored' never fired since the chokida\n[…]\n suite green; pnpm audit --prod: 0 vulns.\nClaude API header 2023-06-01 and model claude-haiku-4-5-20251001 reviewed: both current.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "1.8.0: dependency currency (dev + runtime majors) + latent chokidar i…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T19:57:21Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "9cc833e96e37384a7f64c4c397087f2fc5d39e34",
"body": "…ts), harden /api/switch to registered projects only",
"is_bot": false,
"headline": "1.7.0: M1 file-locking for ledger RMW, test suite (node --test, 8 tes…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T19:27:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f0987dd4ff08086f1229b950bb38dc89c821ef44",
"body": "…an), runViaApi 120s timeout, pnpm build works end-to-end",
"is_bot": false,
"headline": "1.6.1: security — ws 8.21 + express 5.2.1 + overrides (pnpm audit cle…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T19:11:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c6f3b76264c1d2df4214a554b520e2e2b4c31988",
"body": "…reload), honest status indicators, Design QC on deployed URLs, AI-insights copy-prompt",
"is_bot": false,
"headline": "1.6.0: complete PR #4 — auth-aware project switcher (/api/switch hot-…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T18:47:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ce8ba456ffb9985b08aa1d9ad859058d1018c943",
"body": "…I-via-API, cron execution log, token chart honesty, bin +x)",
"is_bot": false,
"headline": "1.5.0: adopt core of PR #4 dashboard fixes (Run Now via authed 202, A…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T18:27:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2bf5533b3f3f972eae3391651774ead214e56cfb",
"body": "…th our reminder throttle/additionalContext",
"is_bot": false,
"headline": "1.4.0: adopt STATUS.md session handoff document (#40) — integrated wi…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T18:12:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a4c7269f20e8ce57990f281b0d9fa1e6d2e50492",
"body": null,
"is_bot": false,
"headline": "README: point 'by Krynex Labs' badge to the krynexlabs.de project page",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T17:46:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fc474fd0174d72bab0f9fce46955a74972d74dc0",
"body": "…or; set maintainer email to info@",
"is_bot": false,
"headline": "Add Krynex Labs website (krynexlabs.de) to README + package.json auth…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T17:20:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5be82aa9dfcaccdd629b6089075e8b8f818223f2",
"body": "…under What's Enhanced",
"is_bot": false,
"headline": "README: document adopted upstream PRs (1.3.x) + .gitignore/#20 fixes …",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T17:15:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d922201e460af86d3bec5047759cf4595de71dfe",
"body": "…turn nagging)",
"is_bot": false,
"headline": "1.3.1: throttle stop-hook reminders to once-per-session (no more per-…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T17:13:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cbb209a4946ccbfcab2f132a12e63c5e71bd7312",
"body": "…), safeCopyFile WSL2/EFS (#33), _managedBy hook tag (#32), dart support (#10)",
"is_bot": false,
"headline": "1.3.0: adopt upstream PRs — stop reminders via additionalContext (#55…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T17:07:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "52f6a466da9d71fb7dde20dbcd3c9ff8f3bcb2b5",
"body": "…d port collisions (#20)",
"is_bot": false,
"headline": "1.2.1: respect .gitignore (#15), stop findProjectRoot at $HOME + avoi…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T16:53:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f1da0fd008bde9dbb737896e61f8d4cd67cba298",
"body": null,
"is_bot": false,
"headline": "README: document security & correctness hardening under What's Enhanced",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T16:45:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "13aa1b9405260f8dd870457309bf4df3a13624a6",
"body": "…xecFile, CRLF, secret files, bug-search null-safety, re-read-after-modify, outside-root)",
"is_bot": false,
"headline": "1.2.0: adopt upstream security + correctness fixes (dashboard auth, e…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T16:40:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "55df7b8dd2c78aa5eee55d7b30ba09a09038c07d",
"body": "…; keep upstream attribution",
"is_bot": false,
"headline": "Point functional links (issues, bug reports, GitHub, npm) to the fork…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T16:08:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "65295f848d8ad192d4fcabd71c4cc0183bfebc14",
"body": "…, CHANGELOG, package metadata",
"is_bot": false,
"headline": "Rebrand to OpenWolf Enhanced 1.1.0: README, NOTICE (AGPL attribution)…",
"author_name": "Krynex Labs",
"author_login": null,
"committed_at": "2026-07-09T15:57:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2a71819533b1bb3739e6a7b87a9eb68d1c392925",
"body": "…er) + lossless migrate on write",
"is_bot": false,
"headline": "krynex.4: tolerate legacy bare-array buglog.json (readBugLog normaliz…",
"author_name": "krynex",
"author_login": null,
"committed_at": "2026-07-09T15:39:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8609012080b780292c44951b9ba7d150a0d27ea0",
"body": "…n config, status sizes, stop-hook auto-compact",
"is_bot": false,
"headline": "krynex.3: openwolf doctor, .wolfignore, config-merge update, retentio…",
"author_name": "krynex",
"author_login": null,
"committed_at": "2026-07-09T15:30:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9354f9a3b395a99530696b0f190b11964f00b845",
"body": "… auto-detection, skip no-op anatomy rewrites, ignore big files in daemon",
"is_bot": false,
"headline": "OpenWolf fork 1.0.4-krynex.1 — bound token-ledger/buglog growth, tame…",
"author_name": "krynex",
"author_login": null,
"committed_at": "2026-07-09T14:43:08Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "81f64b079665b1b1c32d8653bedd899e49a58640",
"body": null,
"is_bot": false,
"headline": "update 116",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-20T19:49:09Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bea25f16f1f83137c9032cf37d3b175e7fb7e7bc",
"body": null,
"is_bot": false,
"headline": "update 115",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-20T19:44:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e60bdeb8ce402003162d8bb0b7231187678ede11",
"body": null,
"is_bot": false,
"headline": "update 114",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-20T19:23:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a4de14e6859585a2f9599cb95204682862a31ff0",
"body": null,
"is_bot": false,
"headline": "update 113",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-20T19:13:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7e7016410dcf6aa66e24837c9c485d1157b311ad",
"body": null,
"is_bot": false,
"headline": "1.0.4",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:53:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e1f9f0a5af799a116aa4d1eef0607af2f4077a09",
"body": "… statement",
"is_bot": false,
"headline": "Add Why OpenWolf section, update SEO meta tags, update README problem…",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:52:58Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f68bc7dbab52d820146e5bd5a368a4522602cf19",
"body": null,
"is_bot": false,
"headline": "1.0.3",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:36:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5c9592d5a9d5e67fd1e2f553edc1309f63bb0138",
"body": null,
"is_bot": false,
"headline": "Update author name in footer",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:34:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "72a800742882dc0a459da199ac59125da3e0e95f",
"body": null,
"is_bot": false,
"headline": "Remove all em dashes from docs site, fix og:description",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:29:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f9e1533362c0f8c1b470ad7abf063dcf8b1f8d33",
"body": "…alls",
"is_bot": false,
"headline": "Update hero copy, remove badge, rename Zero Extra AI Cost to No API C…",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:23:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "942323e1ad7c7e50ed8fe5dd5cce8e2b35f77c24",
"body": null,
"is_bot": false,
"headline": "Tint wolf logo SVG to match green accent",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:10:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "56b925f119d15bf7eaece07aa9108cd3d608f0b6",
"body": null,
"is_bot": false,
"headline": "Fix description alignment, add author credit to footer",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T22:04:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9485a5dbb576e7f6cdcde7fcd79213ed3a1d5fa0",
"body": "…oter",
"is_bot": false,
"headline": "Fix button contrast, alignment, duplicate footer — add proper site fo…",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T21:59:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b7a171f36f718f1d47d972ee055ac91061f1a178",
"body": "…, no DaisyUI",
"is_bot": false,
"headline": "Rebuild landing page design — proper dark/light mode, better contrast…",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T21:49:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bd7a940166fa4ec457e4de26d0466b5a94d6842d",
"body": null,
"is_bot": false,
"headline": "Add docs, GitHub Pages workflow, fix dashboard docs link",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T21:19:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3f3f7afe739129bf4d65133a8b419942bbdc875c",
"body": null,
"is_bot": false,
"headline": "1.0.2",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T20:37:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "15b77c55373fb4765d339620b543f6500cb97b20",
"body": null,
"is_bot": false,
"headline": "Remove unused glob dependency",
"author_name": "Dr. Farhan",
"author_login": "doctorfarhan",
"committed_at": "2026-03-19T20:37:12Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 43,
"commits_last_year": 103,
"latest_release_at": "2026-07-21T18:22:55Z",
"latest_release_tag": "v1.20.4",
"releases_from_tags": false,
"days_since_last_push": 8,
"active_weeks_last_year": 4,
"days_since_latest_release": 8,
"mean_days_between_releases": 0.6
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": true,
"health_percentage": 71,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "openwolf-enhanced",
"exists": true,
"license": "AGPL-3.0-only",
"keywords": [
"claude",
"claude-code",
"claude-desktop",
"codex",
"gemini",
"opencode",
"mcp",
"ai",
"ai-memory",
"memory",
"context",
"context-management",
"token",
"hooks",
"cli",
"developer-tools",
"llm",
"coding-agent",
"agent",
"openwolf"
],
"ecosystem": "npm",
"matches_repo": true,
"registry_url": "https://www.npmjs.com/package/openwolf-enhanced",
"is_deprecated": false,
"latest_version": "1.20.4",
"repository_url": "https://github.com/bassprofressor-lab/openwolf-enhanced",
"versions_count": 29,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": 1,
"monthly_downloads": 5230,
"first_published_at": "2026-07-10T16:16:00.683000Z",
"latest_published_at": "2026-07-21T18:22:50.083000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 8
}
]
},
"popularity": {
"forks": 0,
"stars": 6,
"watchers": 0,
"fork_history": {
"days": [],
"complete": true,
"collected": 0,
"total_forks": 0
},
"star_history": null,
"open_issues_and_prs": 0
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [
"tsconfig.json"
],
"toolchain_manifests": [],
"largest_source_bytes": 77006,
"source_files_sampled": 100,
"oversized_source_files": 2,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"docs/package.json",
"package.json"
],
"advisories": {
"error": null,
"scope": "published_package",
"source": "osv",
"findings": [],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {},
"advisory_count": 0,
"affected_count": 0,
"assessed_count": 109,
"malicious_count": 0,
"assessed_package": "npm:openwolf-enhanced@1.20.4",
"unassessed_count": 0,
"direct_affected_count": 0
},
"ecosystems": [
"npm"
],
"dependencies": [
{
"name": "chokidar",
"manifest": "package.json",
"ecosystem": "npm",
"version_constraint": "^5.0.0"
},
{
"name": "commander",
"manifest": "package.json",
"ecosystem": "npm",
"version_constraint": "^15.0.0"
},
{
"name": "express",
"manifest": "package.json",
"ecosystem": "npm",
"version_constraint": "^5.2.1"
},
{
"name": "node-cron",
"manifest": "package.json",
"ecosystem": "npm",
"version_constraint": "^4.0.0"
},
{
"name": "open",
"manifest": "package.json",
"ecosystem": "npm",
"version_constraint": "^11.0.0"
},
{
"name": "ws",
"manifest": "package.json",
"ecosystem": "npm",
"version_constraint": "^8.21.0"
}
],
"all_dependencies": {
"error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
"source": null,
"packages": [],
"collected": false,
"truncated": false,
"total_count": null,
"direct_count": null,
"indirect_count": null
}
},
"maintainership": {
"issues": {
"open_prs": 0,
"merged_prs": 0,
"open_issues": 0,
"closed_ratio": null,
"closed_issues": 0,
"closed_unmerged_prs": 0
},
"bus_factor": 1,
"bot_contributors": 0,
"top_contributors": [
{
"type": "User",
"login": "doctorfarhan",
"commits": 20,
"avatar_url": "https://avatars.githubusercontent.com/u/217878184?v=4"
}
],
"contributors_sampled": 1,
"top_contributor_share": 1
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"backfill-releases.yml",
"ci.yml",
"deprecate.yml",
"publish.yml"
],
"has_docs_dir": true,
"linter_configs": [],
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"package-lock.json",
"pnpm-lock.yaml"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 0,
"reason": "branch protection not enabled on development/release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": null,
"reason": "no pull request found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 0/30 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 3,
"reason": "project has 1 contributing companies or organizations -- score normalized to 3",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 0,
"reason": "no update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 0,
"reason": "project was created within the last 90 days. Please review its contents carefully",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "no SAST tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": 0,
"reason": "Project has not signed or included provenance with any releases.",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 2,
"reason": "8 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "0796037af7785dc92a734d518c8d1a861f365840",
"ran_at": "2026-07-30T12:07:31Z",
"aggregate_score": 2.3,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": false
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-21T18:22:52Z",
"oldest_open_prs": [],
"last_merged_pr_at": null,
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": []
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/bassprofressor-lab/openwolf-enhanced",
"host": "github.com",
"name": "openwolf-enhanced",
"owner": "bassprofressor-lab"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 51,
"inputs": {
"security": 38,
"vitality": 66,
"community": 50,
"governance": 29,
"engineering": 72
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "moderate",
"name": "Vitality",
"value": 66,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "moderate",
"name": "Development activity",
"note": null,
"notes": [],
"value": 50,
"inputs": {
"commits_last_year": 103,
"human_commit_share": 1,
"days_since_last_push": 8,
"active_weeks_last_year": 4
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 8 days ago",
"points": 28.8,
"status": "partial",
"details": [
{
"code": "push_recency",
"params": {
"days": 8
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "4/52 weeks with commits",
"points": 2.8,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 4
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "103 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 103
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "project was created within the last 90 days. Please review its contents carefully",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": null,
"notes": [],
"value": 90,
"inputs": {
"releases_count": 43,
"latest_release_tag": "v1.20.4",
"releases_from_tags": false,
"days_since_latest_release": 8,
"mean_days_between_releases": 0.6
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "43 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 43
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 8 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 8
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~0.6 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 0.6
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "unverified",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": "repository_too_young",
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": null,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "maintenance record not established from the collected data",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_unverified",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "moderate",
"name": "Community & Adoption",
"value": 50,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 11,
"inputs": {
"forks": 0,
"stars": 6,
"watchers": 0,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "6 stars",
"points": 11.3,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 6
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "0 forks",
"points": 0,
"status": "missed",
"details": [
{
"code": "forks",
"params": {
"count": 0
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "0 watchers",
"points": 0,
"status": "missed",
"details": [
{
"code": "watchers",
"params": {
"count": 0
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "excellent",
"name": "Community health",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": true,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (AGPL-3.0)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "AGPL-3.0"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 18,
"status": "met",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 13.5,
"status": "met",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
},
{
"key": "ecosystem_adoption",
"band": "moderate",
"name": "Ecosystem adoption (downloads)",
"note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"registry_dependents"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 62,
"inputs": {
"packages": [
"openwolf-enhanced"
],
"dependents": null,
"ecosystems": "npm",
"total_downloads": null,
"monthly_downloads": 5230
},
"components": [
{
"key": "monthly_downloads",
"name": "Monthly downloads",
"detail": "5,230 downloads/month across npm",
"points": 49.6,
"status": "partial",
"details": [
{
"code": "downloads_monthly",
"params": {
"count": 5230,
"ecosystems": "npm"
}
}
],
"max_points": 80
},
{
"key": "registry_dependents",
"name": "Registry dependents",
"detail": "not reported by this ecosystem",
"points": 0,
"status": "excluded",
"details": [
{
"code": "not_reported_by_this_ecosystem",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "critical",
"name": "Sustainability & Governance",
"value": 29,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "critical",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 13,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 1,
"top_contributor_share": 1
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 100% of commits",
"points": 0,
"status": "missed",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 100
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "1 contributors",
"points": 1.4,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 1
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 1 contributing companies or organizations -- score normalized to 3",
"points": 3,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "critical",
"name": "Issue & PR responsiveness",
"note": "Excluded from scoring (no data or not applicable): Issue resolution, PR acceptance. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"issue_resolution",
"pr_acceptance"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 1,
"inputs": {
"merged_prs": 0,
"open_issues": 0,
"closed_issues": 0,
"issue_closed_ratio": null,
"closed_unmerged_prs": 0
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "no issues or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_issues_or_data",
"params": {}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "no decided pull requests or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_decided_prs_or_data",
"params": {}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "critical",
"name": "Ownership & stewardship",
"note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"verified_domain"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 20,
"inputs": {
"followers": 0,
"owner_type": "User",
"is_verified": null,
"owner_login": "bassprofressor-lab",
"public_repos": 4,
"account_age_days": 147
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "personal (user) account",
"points": 10,
"status": "partial",
"details": [
{
"code": "owner_personal",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": "not applicable to user accounts",
"points": 0,
"status": "excluded",
"details": [
{
"code": "not_applicable_to_user_accounts",
"params": {}
}
],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "0 followers of bassprofressor-lab",
"points": 0,
"status": "missed",
"details": [
{
"code": "owner_followers",
"params": {
"count": 0,
"login": "bassprofressor-lab"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "4 public repos, account ~0 yr old",
"points": 5.9,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 4
}
},
{
"code": "account_age_years",
"params": {
"years": 0
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"openwolf-enhanced"
],
"ecosystems": "npm",
"any_deprecated": false,
"min_days_since_publish": 8
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on npm",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "npm"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 8 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 8
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "29 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 29
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "good",
"name": "Engineering Quality",
"value": 72,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "moderate",
"name": "Engineering practices",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_ci_tests"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 60,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "4 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 4
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "excellent",
"name": "Documentation",
"note": null,
"notes": [],
"value": 90,
"inputs": {
"topics": [
"agpl",
"ai",
"claude",
"claude-code",
"context-management",
"developer-tools",
"fork",
"token-optimization"
],
"has_wiki": false,
"homepage": "https://www.krynexlabs.de/en/openwolf-enhanced",
"has_readme": true,
"has_docs_dir": true,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 25,
"status": "met",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://www.krynexlabs.de/en/openwolf-enhanced",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": "8 topics",
"points": 10,
"status": "met",
"details": [
{
"code": "topics_count",
"params": {
"count": 8
}
}
],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "at_risk",
"name": "Security",
"value": 38,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "critical",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"ci_tests",
"packaging"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 23,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 16,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 2,
"scorecard_aggregate": 2.3
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection not enabled on development/release branches",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "no pull request found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 0/30 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 1 contributing companies or organizations -- score normalized to 3",
"points": 0.8,
"status": "partial",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "no update tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "project was created within the last 90 days. Please review its contents carefully",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "no SAST tool detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "Project has not signed or included provenance with any releases.",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "8 existing vulnerabilities detected",
"points": 1.5,
"status": "partial",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:openwolf-enhanced@1.20.4 runtime dependency closure — what installing the published package pulls in — 109 packages. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"no_advisories_left_outstanding"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_published",
"params": {
"package": "npm:openwolf-enhanced@1.20.4",
"assessed": 109
}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 100,
"inputs": {
"source": "osv",
"advisories": 0,
"affected_packages": 0,
"assessed_packages": 109,
"unassessed_packages": 0,
"affected_by_severity": "none",
"direct_affected_packages": 0
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "no direct dependency carries a known advisory",
"points": 35,
"status": "met",
"details": [
{
"code": "no_direct_advisories",
"params": {}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "no indirect dependency carries a known advisory",
"points": 25,
"status": "met",
"details": [
{
"code": "no_indirect_advisories",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory carries a publication date",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_no_publication_date",
"params": {}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 109,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 1
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "moderate",
"name": "AI Readiness",
"value": 56,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "at_risk",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 38,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.71,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "71 of 100 human commits state their intent (structured subject or explanatory body)",
"points": 37.9,
"status": "partial",
"details": [
{
"code": "legible_history",
"params": {
"legible": 71,
"sampled": 100
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "moderate",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 53,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"package-lock.json",
"pnpm-lock.yaml"
],
"has_dockerfile": false,
"typed_language": true,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": false,
"typecheck_configs": [
"tsconfig.json"
],
"agent_commit_share": 0.39,
"toolchain_manifests": [],
"dependency_bot_commit_share": 0
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "tsconfig.json",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "tsconfig.json"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "39 of the last 100 commits agent-authored or agent-credited",
"points": 10,
"status": "met",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 39,
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "no automated dependency updates observed",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_dependency_automation",
"params": {}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "excellent",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 99,
"inputs": {
"primary_language": "TypeScript",
"largest_source_bytes": 77006,
"source_files_sampled": 100,
"oversized_source_files": 2
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "TypeScript (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "TypeScript"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "2/100 source files over 60KB",
"points": 53.9,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 100,
"oversized": 2
}
}
],
"max_points": 55
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
"GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
],
"report_type": "repository",
"generated_at": "2026-07-30T12:07:36.072983Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/b/bassprofressor-lab/openwolf-enhanced.svg",
"full_name": "bassprofressor-lab/openwolf-enhanced",
"license_state": "standard",
"license_spdx": "AGPL-3.0"
}