Public record
Software health reportschema 0.27.0 · metrics 2.3.1 · 2026-08-01 07:05 UTC

canonical / jimm

Juju intelligent model manager web service

GoCustom license★ 15 stars⑂ 13 forkssince Apr 2015View on GitHub ↗

canonical/jimm holds a health index of 89 out of 100, placing it in the Excellent band. It scores highest on Vitality (94/100) and lowest on Security (47/100). It was last updated 1 day ago. 3 contributors account for most of its recent work.

89
overall / 100
Excellent

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean, calibrated against the distribution of the public record so bands carry percentile meaning; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At Risk ceiling of 34.

89
Exceptional93-100The record's top tier (≈ top 5%); essentially all checked criteria met
Excellent80-92Strong across the board; minor gaps
Good65-79Healthy; gaps are limited and manageable
Moderate50-64Acceptable with notable gaps; review recommended
Weak35-49Material weaknesses across several areas
At Risk20-34Significant weaknesses; adoption warrants caution
Critical1-19Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

The weighted overall 75 is calibrated to 89 on the published index scale (record calibration 2026-08-02).

Ownership

CanonicalOrganization
3,894 followers2,386 public repossince Jul 2019

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
Gogithub.com/canonical/jimm/v3v3.4.3-6815 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

94Exceptional · 21% of overall
How it's scored
36/36Push recency — last push 1 days ago
33.2/36Commit cadence — 48/52 weeks with commits
18/18Commit volume — 385 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year385
human_commit_share1
days_since_last_push1
active_weeks_last_year48
How it's scored
27/27Ships releases — 75 releases published
36/36Release recency — latest release 15 days ago
27/27Release cadence — a release every ~9.4 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count75
latest_release_tagv3.4.3
releases_from_tagsno
days_since_latest_release15
mean_days_between_releases9.4

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

50Moderate · 17% of overall
How it's scored
18.6/60Stars — 15 stars
9/25Forks — 13 forks
4.3/15Watchers — 7 watchers
Inputs used
forks13
stars15
watchers7
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
16.9/22.5License — license file present, not a recognized license
18/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
readme_badges
has_contributingyes
has_issue_templateno
has_code_of_conductno
readme_badge_services
has_pull_request_templateyes

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

87Excellent · 23% of overall
How it's scored
36/54Bus factor — 3 contributor(s) cover half of all commits
17.2/22.5Commit distribution — top contributor authored 23% of commits
13.5/13.5Contributor breadth — 21 contributors
10/10OpenSSF Scorecard: Contributors — project has 20 contributing companies or organizations
Inputs used
bus_factor3
contributors_sampled21
top_contributor_share0.234
How it's scored
40.5/42Issue resolution — 96% of issues closed
27.5/30PR acceptance — 1,768/1,926 decided PRs merged
0/13Newcomer PR acceptance — no first-time contributor's PR decided in 30d
15/15OpenSSF Scorecard: Code-Review — all changesets reviewed
Inputs used
merged_prs1,768
open_issues5
closed_issues133
prs_merged_7d
prs_decided_7d
prs_merged_30d
prs_decided_30d
issue_closed_ratio0.964
closed_unmerged_prs158
first_time_authors_30d
first_time_prs_merged_30d
first_time_prs_decided_30d
Excluded from scoring (no data or not applicable): newcomer_pr_acceptance. Remaining weights renormalized.
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
25/25Owner reach — 3,894 followers of canonical
25/25Track record — 2,386 public repos, account ~7 yr old
Inputs used
followers3,894
owner_typeOrganization
is_verified
owner_logincanonical
public_repos2,386
account_age_days2,570

Package maintenance

100Exceptional
How it's scored
25/25Published & resolvable — 1 package(s) on go
35/35Publish recency — latest publish 15 days ago
20/20Version history — 68 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesgithub.com/canonical/jimm/v3
ecosystemsgo
any_deprecatedno
min_days_since_publish15

Engineering Quality

Are baseline engineering and documentation practices in place?

86Excellent · 19% of overall
How it's scored
24/24CI workflows — 16 workflow(s)
24/24Tests present
16/16Linter config — .flake8, .golangci.yaml, tox.ini
9.6/9.6Pre-commit hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 22 out of 22 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configyes
How it's scored
30/30README
25/25Documentation directory
0/15Documentation / homepage site
10/10Repository description
0/10Topics
10/10Wiki
Inputs used
topics
has_wikiyes
homepage
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

47Weak · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
2.5/2.5CI-Tests — 22 out of 22 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
7.5/7.5Code-Review — all changesets reviewed
2.5/2.5Contributors — project has 20 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0.5/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 57 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate5.2
Excluded from scoring (no data or not applicable): branch_protection. Remaining weights renormalized.
How it's scored
3.7/35Direct dependencies free of known advisories — 6 affected: github.com/canonical/lxd v0.0.0-20251125210512-b190d213bd11 (critical 9.1), github.com/juju/juju v0.0.0-20260325121537-78832a31ad6b (critical 10.0), golang.org/x/crypto v0.50.0 (critical 10.0), +3 more
0/25Indirect dependencies free of known advisories — transitive set not separable from development and test dependencies in this scope
21.1/40No advisories left outstanding — 5 advisory-carrying package(s) unaddressed past 90 days; oldest published 725 days ago
Inputs used
sourceosv
advisories80
affected_packages15
assessed_packages291
unassessed_packages38
affected_by_severitycritical 5, high 4, moderate 2, low 1, unknown 3
direct_affected_packages6
Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 291 resolved dependencies against OSV. 38 could not be assessed — no resolved version, an unsupported ecosystem, or beyond the reported package list. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight (4%): agent tooling is a real maintenance signal, but a repository with none can still reach 100/100.

66Good · 4% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 85 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.85
agent_instruction_files
agent_instruction_max_bytes
How it's scored
18/18One-command bootstrap — Makefile, docs/Makefile
22/22Automated tests
11/11Lint / format config — .flake8, .golangci.yaml, tox.ini
11/11Static type checking — Go (statically typed)
10/10Reproducible environment — Dockerfile, lockfile
0/10Demonstrated agent practice — no agent-authored commits among the last 100
0/8Automated maintenance — no automated dependency updates observed
1/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 1
Inputs used
has_nixno
has_testsyes
lockfilesgo.sum
has_dockerfileyes
typed_languageyes
bootstrap_filesMakefile, docs/Makefile
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0
toolchain_manifestsgo.mod
dependency_bot_commit_share0
How it's scored
45/45Type-checkable code — Go (statically typed)
54.4/55Manageable file sizes — 6/555 source files over 60KB
Inputs used
primary_languageGo
largest_source_bytes111,812
source_files_sampled555
oversized_source_files6

Key facts

15GitHub stars
21contributors
385commits, last 12 months
1days since last push
75releases
3bus factor
5open issues
Go, PyPIpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token

More detail

Star and fork history 0 ★ / 13 ⇿
0Stars
13Forks
16Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

24681012141322024-092025-062026-04
Major 0Minor 0Patch 14

Each point covers 2 days.

OpenSSF Scorecard 5.2 / 10
5.2aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-08-01 07:05 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
10CI-Tests22 out of 22 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
10Code-Reviewall changesets reviewed
10Contributorsproject has 20 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
10Maintained30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
1Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 1
0SASTSAST tool is not run on all commits -- score normalized to 0
10Security-Policysecurity policy file detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities57 existing vulnerabilities detected
Direct dependencies 68
RegistryPackageVersion constraintManifest
Gogithub.com/juju/charm/v12v12.1.1go.mod
Gogithub.com/juju/cmd/v3v3.2.2go.mod
Gogithub.com/juju/description/v9v9.0.0go.mod
Gogithub.com/juju/errorsv1.0.0go.mod
Gogithub.com/juju/gnuflagv1.0.0go.mod
Gogithub.com/juju/jujuv0.0.0-20260325121537-78832a31ad6bgo.mod
Gogithub.com/juju/names/v4v4.0.0go.mod
Gogithub.com/juju/names/v5v5.0.0go.mod
Gogithub.com/juju/rpcreflectv1.2.0go.mod
Gogithub.com/juju/utils/v4v4.0.5go.mod
Gogithub.com/juju/version/v2v2.0.1go.mod
Gogithub.com/juju/zaputilv0.0.0-20190326175239-ef53049637acgo.mod
Gogithub.com/antonlindstrom/pgstorev0.0.0-20220421113606-e3a6e3fed12ago.mod
Gogithub.com/canonical/go-servicev1.0.0go.mod
Gogithub.com/canonical/ofgav0.17.1go.mod
Gogithub.com/canonical/rebac-admin-ui-handlersv0.2.1go.mod
Gogithub.com/coreos/go-oidc/v3v3.11.0go.mod
Gogithub.com/dustinkirkland/golang-petnamev0.0.0-20240428194347-eebcea082ee0go.mod
Gogithub.com/frankban/quicktestv1.14.6go.mod
Gogithub.com/gliderlabs/sshv0.3.8go.mod
Gogithub.com/go-chi/chi/v5v5.2.3go.mod
Gogithub.com/go-chi/renderv1.0.2go.mod
Gogithub.com/go-macaroon-bakery/macaroon-bakery/v3v3.0.1go.mod
Gogithub.com/golang-migrate/migrate/v4v4.17.1go.mod
Gogithub.com/google/go-cmpv0.7.0go.mod
Gogithub.com/google/uuidv1.6.0go.mod
Gogithub.com/gorilla/sessionsv1.2.1go.mod
Gogithub.com/gorilla/websocketv1.5.4-0.20250319132907-e064f32e3674go.mod
Gogithub.com/gosuri/uitablev0.0.4go.mod
Gogithub.com/hashicorp/vault/apiv1.13.0go.mod
Gogithub.com/hashicorp/vault/api/auth/approlev0.6.0go.mod
Gogithub.com/itchyny/gojqv0.12.12go.mod
Gogithub.com/jackc/pgx/v4v4.18.3go.mod
Gogithub.com/lestrrat-go/jwx/v2v2.1.6go.mod
Gogithub.com/mattn/go-colorablev0.1.14go.mod
Gogithub.com/oklog/ulid/v2v2.1.1go.mod
Gogithub.com/openfga/go-sdkv0.7.3go.mod
Gogithub.com/openfga/language/pkg/gov0.2.0-beta.2.0.20251027165255-0f8f255e5f6cgo.mod
Gogithub.com/prometheus/client_golangv1.23.2go.mod
Gogithub.com/rogpeppe/fastuuidv1.2.0go.mod
Gogithub.com/rs/corsv1.11.1go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogo.uber.org/zapv1.27.1go.mod
Gogolang.org/x/oauth2v0.36.0go.mod
Gogolang.org/x/syncv0.20.0go.mod
Gogopkg.in/errgo.v1v1.0.1go.mod
Gogopkg.in/httprequest.v1v1.2.1go.mod
Gogopkg.in/macaroon.v2v2.1.0go.mod
Gogopkg.in/yaml.v2v2.4.0go.mod
Gogopkg.in/yaml.v3v3.0.1go.mod
Gogorm.io/driver/postgresv1.5.9go.mod
Gogorm.io/gormv1.25.12go.mod
Gosigs.k8s.io/yamlv1.6.0go.mod
Gogithub.com/canonical/lxdv0.0.0-20251125210512-b190d213bd11go.mod
Gogithub.com/juju/clockv1.1.1go.mod
Gogithub.com/juju/persistent-cookiejarv1.0.0go.mod
Gogithub.com/juju/retryv1.0.1go.mod
Gogithub.com/mitchellh/go-linereaderv0.0.0-20190213213312-1b945b3263ebgo.mod
Gogo.uber.org/mockv0.6.0go.mod
Gogolang.org/x/cryptov0.50.0go.mod
Gogoogle.golang.org/grpcv1.77.0go.mod
Gogithub.com/google/go-github/v69v69.2.0go.mod
Gogithub.com/juju/description/v10v10.0.0go.mod
Gogithub.com/juju/description/v11v11.0.1go.mod
Gogithub.com/riverqueue/riverv0.39.0go.mod
Gogithub.com/riverqueue/river/riverdriver/riverdatabasesqlv0.39.0go.mod
Gogithub.com/riverqueue/river/rivertypev0.39.0go.mod
Gogithub.com/ulikunitz/xzv0.5.15go.mod
All dependencies 329

Full resolved dependency set from the GitHub dependency graph: 67 direct and 262 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
Gogithub.com/antonlindstrom/pgstorev0.0.0-20220421113606-e3a6e3fed12adirect
Gogithub.com/canonical/go-servicev1.0.0direct
Gogithub.com/canonical/lxdv0.0.0-20251125210512-b190d213bd11direct
Gogithub.com/canonical/ofgav0.17.1direct
Gogithub.com/canonical/rebac-admin-ui-handlersv0.2.1direct
Gogithub.com/coreos/go-oidc/v3v3.11.0direct
Gogithub.com/dustinkirkland/golang-petnamev0.0.0-20240428194347-eebcea082ee0direct
Gogithub.com/frankban/quicktestv1.14.6direct
Gogithub.com/gliderlabs/sshv0.3.8direct
Gogithub.com/go-chi/chi/v5v5.2.3direct
Gogithub.com/go-chi/renderv1.0.2direct
Gogithub.com/go-macaroon-bakery/macaroon-bakery/v3v3.0.1direct
Gogithub.com/golang-migrate/migrate/v4v4.17.1direct
Gogithub.com/google/go-cmpv0.7.0direct
Gogithub.com/google/go-github/v69v69.2.0direct
Gogithub.com/google/uuidv1.6.0direct
Gogithub.com/gorilla/sessionsv1.2.1direct
Gogithub.com/gorilla/websocketv1.5.4-0.20250319132907-e064f32e3674direct
Gogithub.com/gosuri/uitablev0.0.4direct
Gogithub.com/hashicorp/vault/apiv1.13.0direct
Gogithub.com/hashicorp/vault/api/auth/approlev0.6.0direct
Gogithub.com/itchyny/gojqv0.12.12direct
Gogithub.com/jackc/pgx/v4v4.18.3direct
Gogithub.com/juju/charm/v12v12.1.1direct
Gogithub.com/juju/clockv1.1.1direct
Gogithub.com/juju/cmd/v3v3.2.2direct
Gogithub.com/juju/description/v10v10.0.0direct
Gogithub.com/juju/description/v11v11.0.1direct
Gogithub.com/juju/description/v9v9.0.0direct
Gogithub.com/juju/errorsv1.0.0direct
Gogithub.com/juju/gnuflagv1.0.0direct
Gogithub.com/juju/jujuv0.0.0-20260325121537-78832a31ad6bdirect
Gogithub.com/juju/names/v4v4.0.0direct
Gogithub.com/juju/names/v5v5.0.0direct
Gogithub.com/juju/persistent-cookiejarv1.0.0direct
Gogithub.com/juju/retryv1.0.1direct
Gogithub.com/juju/rpcreflectv1.2.0direct
Gogithub.com/juju/utils/v4v4.0.5direct
Gogithub.com/juju/version/v2v2.0.1direct
Gogithub.com/juju/zaputilv0.0.0-20190326175239-ef53049637acdirect
Gogithub.com/lestrrat-go/jwx/v2v2.1.6direct
Gogithub.com/mattn/go-colorablev0.1.14direct
Gogithub.com/mitchellh/go-linereaderv0.0.0-20190213213312-1b945b3263ebdirect
Gogithub.com/oklog/ulid/v2v2.1.1direct
Gogithub.com/openfga/go-sdkv0.7.3direct
Gogithub.com/openfga/language/pkg/gov0.2.0-beta.2.0.20251027165255-0f8f255e5f6cdirect
Gogithub.com/prometheus/client_golangv1.23.2direct
Gogithub.com/riverqueue/riverv0.39.0direct
Gogithub.com/riverqueue/river/riverdriver/riverdatabasesqlv0.39.0direct
Gogithub.com/riverqueue/river/rivertypev0.39.0direct
Gogithub.com/rogpeppe/fastuuidv1.2.0direct
Gogithub.com/rs/corsv1.11.1direct
Gogithub.com/stretchr/testifyv1.11.1direct
Gogithub.com/ulikunitz/xzv0.5.15direct
Gogo.uber.org/mockv0.6.0direct
Gogo.uber.org/zapv1.27.1direct
Gogolang.org/x/cryptov0.50.0direct
Gogolang.org/x/oauth2v0.36.0direct
Gogolang.org/x/syncv0.20.0direct
Gogoogle.golang.org/grpcv1.77.0direct
Gogopkg.in/errgo.v1v1.0.1direct
Gogopkg.in/httprequest.v1v1.2.1direct
Gogopkg.in/macaroon.v2v2.1.0direct
Gogopkg.in/yaml.v3v3.0.1direct
Gogorm.io/driver/postgresv1.5.9direct
Gogorm.io/gormv1.25.12direct
Gosigs.k8s.io/yamlv1.6.0direct
Gogithub.com/adrg/xdgv0.3.3indirect
Gogithub.com/ajg/formv1.5.1indirect
Gogithub.com/anmitsu/go-shlexv0.0.0-20200514113438-38f4b401e2beindirect
Gogithub.com/antlr4-go/antlr/v4v4.13.1indirect
Gogithub.com/apapsch/go-jsonmerge/v2v2.0.0indirect
Gogithub.com/aws/aws-sdk-go-v2v1.36.3indirect
Gogithub.com/aws/aws-sdk-go-v2/configv1.29.9indirect
Gogithub.com/aws/aws-sdk-go-v2/credentialsv1.17.62indirect
Gogithub.com/aws/aws-sdk-go-v2/feature/ec2/imdsv1.16.30indirect
Gogithub.com/aws/aws-sdk-go-v2/internal/configsourcesv1.3.34indirect
Gogithub.com/aws/aws-sdk-go-v2/internal/endpoints/v2v2.6.34indirect
Gogithub.com/aws/aws-sdk-go-v2/internal/iniv1.8.3indirect
Gogithub.com/aws/aws-sdk-go-v2/service/ecrv1.43.0indirect
Gogithub.com/aws/aws-sdk-go-v2/service/internal/accept-encodingv1.12.3indirect
Gogithub.com/aws/aws-sdk-go-v2/service/internal/presigned-urlv1.12.15indirect
Gogithub.com/aws/aws-sdk-go-v2/service/ssov1.25.1indirect
Gogithub.com/aws/aws-sdk-go-v2/service/ssooidcv1.29.1indirect
Gogithub.com/aws/aws-sdk-go-v2/service/stsv1.33.17indirect
Gogithub.com/aws/smithy-gov1.22.3indirect
Gogithub.com/azure/go-ansitermv0.0.0-20230124172434-306776ec8161indirect
Gogithub.com/beorn7/perksv1.0.1indirect
Gogithub.com/cenkalti/backoff/v3v3.2.2indirect
Gogithub.com/cespare/xxhash/v2v2.3.0indirect
Gogithub.com/clipperhouse/stringishv0.1.1indirect
Gogithub.com/clipperhouse/uax29/v2v2.3.0indirect
Gogithub.com/coreos/go-systemd/v22v22.5.0indirect
Gogithub.com/creack/ptyv1.1.24indirect
Gogithub.com/davecgh/go-spewv1.1.2-0.20180830191138-d8f796af33ccindirect
Gogithub.com/decred/dcrd/dcrec/secp256k1/v4v4.4.0indirect
Gogithub.com/distribution/referencev0.6.0indirect
Gogithub.com/docker/distributionv2.8.3+incompatibleindirect
Gogithub.com/dustin/go-humanizev1.0.1indirect
Gogithub.com/emicklei/go-restful/v3v3.12.2indirect
Gogithub.com/envoyproxy/protoc-gen-validatev1.2.1indirect
Gogithub.com/fatih/colorv1.16.0indirect
Gogithub.com/fsnotify/fsnotifyv1.9.0indirect
Gogithub.com/fxamacker/cbor/v2v2.9.0indirect
Gogithub.com/gabriel-vasile/mimetypev1.4.12indirect
Gogithub.com/gdamore/encodingv1.0.0indirect
Gogithub.com/gdamore/tcell/v2v2.5.1indirect
Gogithub.com/getkin/kin-openapiv0.131.0indirect
Gogithub.com/go-jose/go-jose/v4v4.1.3indirect
Gogithub.com/go-logr/logrv1.4.3indirect
Gogithub.com/go-logr/stdrv1.2.2indirect
Gogithub.com/go-macaroon-bakery/macaroonpbv1.0.0indirect
Gogithub.com/go-openapi/jsonpointerv0.21.0indirect
Gogithub.com/go-openapi/jsonreferencev0.20.2indirect
Gogithub.com/go-openapi/swagv0.23.0indirect
Gogithub.com/go-playground/localesv0.14.1indirect
Gogithub.com/go-playground/universal-translatorv0.18.1indirect
Gogithub.com/go-playground/validator/v10v10.30.1indirect
Gogithub.com/go-viper/mapstructure/v2v2.4.0indirect
Gogithub.com/gobwas/globv0.2.4-0.20181002190808-e7a84e9525feindirect
Gogithub.com/goccy/go-jsonv0.10.5indirect
Gogithub.com/godbus/dbus/v5v5.0.4indirect
Gogithub.com/gogo/protobufv1.3.2indirect
Gogithub.com/golang/mockv1.6.0indirect
Gogithub.com/golang/protobufv1.5.4indirect
Gogithub.com/google/gnostic-modelsv0.7.0indirect
Gogithub.com/google/go-querystringv1.1.0indirect
Gogithub.com/gorilla/securecookiev1.1.2indirect
Gogithub.com/grpc-ecosystem/grpc-gateway/v2v2.27.3indirect
Gogithub.com/hashicorp/errwrapv1.1.0indirect
Gogithub.com/hashicorp/go-cleanhttpv0.5.2indirect
Gogithub.com/hashicorp/go-multierrorv1.1.1indirect
Gogithub.com/hashicorp/go-retryablehttpv0.7.7indirect
Gogithub.com/hashicorp/go-rootcertsv1.0.2indirect
Gogithub.com/hashicorp/go-secure-stdlib/parseutilv0.1.8indirect
Gogithub.com/hashicorp/go-secure-stdlib/strutilv0.1.2indirect
Gogithub.com/hashicorp/go-sockaddrv1.0.6indirect
Gogithub.com/hashicorp/hclv1.0.0indirect
Gogithub.com/itchyny/timefmt-gov0.1.5indirect
Gogithub.com/jackc/chunkreader/v2v2.0.1indirect
Gogithub.com/jackc/pgconnv1.14.3indirect
Gogithub.com/jackc/pgiov1.0.0indirect
Gogithub.com/jackc/pgpassfilev1.0.0indirect
Gogithub.com/jackc/pgproto3/v2v2.3.3indirect
Gogithub.com/jackc/pgservicefilev0.0.0-20240606120523-5a60cdf6a761indirect
Gogithub.com/jackc/pgtypev1.14.3indirect
Gogithub.com/jackc/pgx/v5v5.9.2indirect
Gogithub.com/jackc/puddle/v2v2.2.2indirect
Gogithub.com/jinzhu/inflectionv1.0.0indirect
Gogithub.com/jinzhu/nowv1.1.5indirect
Gogithub.com/josharian/internv1.0.0indirect
Gogithub.com/json-iterator/gov1.1.12indirect
Gogithub.com/juju/ansitermv1.0.0indirect
Gogithub.com/juju/blobstore/v3v3.2.2indirect
Gogithub.com/juju/collectionsv1.0.4indirect
Gogithub.com/juju/featureflagv1.0.0indirect
Gogithub.com/juju/go4v0.0.0-20160222163258-40d72ab9641aindirect
Gogithub.com/juju/gojsonpointerv0.0.0-20150204194629-afe8b77aa08findirect
Gogithub.com/juju/gojsonreferencev0.0.0-20150204194633-f0d24ac5ee33indirect
Gogithub.com/juju/gojsonschemav1.0.0indirect
Gogithub.com/juju/http/v2v2.0.1indirect
Gogithub.com/juju/idmclient/v2v2.0.0indirect
Gogithub.com/juju/jsonschemav1.0.0indirect
Gogithub.com/juju/loggov1.0.0indirect
Gogithub.com/juju/loggo/v2v2.2.0indirect
Gogithub.com/juju/lruv1.0.0indirect
Gogithub.com/juju/lumberjack/v2v2.0.2indirect
Gogithub.com/juju/mgo/v3v3.0.9indirect
Gogithub.com/juju/mutex/v2v2.0.0indirect
Gogithub.com/juju/os/v2v2.2.5indirect
Gogithub.com/juju/packaging/v4v4.0.0indirect
Gogithub.com/juju/proxyv1.0.0indirect
Gogithub.com/juju/pubsub/v2v2.0.0indirect
Gogithub.com/juju/replicaset/v3v3.0.1indirect
Gogithub.com/juju/rfc/v2v2.0.0indirect
Gogithub.com/juju/romulusv1.0.0indirect
Gogithub.com/juju/schemav1.2.0indirect
Gogithub.com/juju/testingv1.2.0indirect
Gogithub.com/juju/txn/v3v3.2.1indirect
Gogithub.com/juju/ussov1.0.1indirect
Gogithub.com/juju/utils/v3v3.2.3indirect
Gogithub.com/juju/viddyv0.0.0-beta5indirect
Gogithub.com/juju/webbrowserv1.0.0indirect
Gogithub.com/juju/worker/v3v3.5.0indirect
Gogithub.com/julienschmidt/httprouterv1.3.0indirect
Gogithub.com/kr/prettyv0.3.1indirect
Gogithub.com/kr/textv0.2.0indirect
Gogithub.com/leodido/go-urnv1.4.0indirect
Gogithub.com/lestrrat-go/blackmagicv1.0.3indirect
Gogithub.com/lestrrat-go/httpccv1.0.1indirect
Gogithub.com/lestrrat-go/httprcv1.0.6indirect
Gogithub.com/lestrrat-go/iterv1.0.2indirect
Gogithub.com/lestrrat-go/optionv1.0.1indirect
Gogithub.com/lestrrat/go-jspointerv0.0.0-20160229021354-f4881e611bdbindirect
Gogithub.com/lestrrat/go-jsrefv0.0.0-20160601013240-e452c7b5801dindirect
Gogithub.com/lestrrat/go-jsschemav0.0.0-20160903131957-b09d7650b822indirect
Gogithub.com/lestrrat/go-jsvalv0.0.0-20161012045717-b1258a10419findirect
Gogithub.com/lestrrat/go-pdebugv0.0.0-20160817063333-2e6eaaa5717findirect
Gogithub.com/lestrrat/go-structinfov0.0.0-20160308131105-f74c056fe41findirect
Gogithub.com/lib/pqv1.12.3indirect
Gogithub.com/lucasb-eyer/go-colorfulv1.2.0indirect
Gogithub.com/lunixbochs/vtcleanv1.0.0indirect
Gogithub.com/mailru/easyjsonv0.7.7indirect
Gogithub.com/mattn/go-isattyv0.0.20indirect
Gogithub.com/mattn/go-runewidthv0.0.19indirect
Gogithub.com/mitchellh/go-homedirv1.1.0indirect
Gogithub.com/mitchellh/mapstructurev1.5.0indirect
Gogithub.com/moby/spdystreamv0.5.0indirect
Gogithub.com/moby/sys/mountinfov0.7.1indirect
Gogithub.com/moby/termv0.5.0indirect
Gogithub.com/modern-go/concurrentv0.0.0-20180306012644-bacd9c7ef1ddindirect
Gogithub.com/modern-go/reflect2v1.0.3-0.20250322232337-35a7c28c31eeindirect
Gogithub.com/mohae/deepcopyv0.0.0-20170929034955-c48cc78d4826indirect
Gogithub.com/munnerz/goautonegv0.0.0-20191010083416-a7dc8b61c822indirect
Gogithub.com/mxk/go-flowratev0.0.0-20140419014527-cca7078d478findirect
Gogithub.com/oapi-codegen/runtimev1.1.1indirect
Gogithub.com/oasdiff/yamlv0.0.0-20250309154309-f31be36b4037indirect
Gogithub.com/oasdiff/yaml3v0.0.0-20250309153720-d2182401db90indirect
Gogithub.com/opencontainers/go-digestv1.0.0indirect
Gogithub.com/opencontainers/image-specv1.1.1indirect
Gogithub.com/openfga/api/protov0.0.0-20251105142303-feed3db3d69dindirect
Gogithub.com/pelletier/go-toml/v2v2.2.4indirect
Gogithub.com/perimeterx/marshmallowv1.1.5indirect
Gogithub.com/pkg/errorsv0.9.1indirect
Gogithub.com/pmezard/go-difflibv1.0.1-0.20181226105442-5d4384ee4fb2indirect
Gogithub.com/prometheus/client_modelv0.6.2indirect
Gogithub.com/prometheus/commonv0.67.4indirect
Gogithub.com/prometheus/procfsv0.19.2indirect
Gogithub.com/riverqueue/river/riverdriverv0.39.0indirect
Gogithub.com/riverqueue/river/riversharedv0.39.0indirect
Gogithub.com/rivo/tviewv0.0.0-20220610163003-691f46d6f500indirect
Gogithub.com/rivo/unisegv0.4.7indirect
Gogithub.com/rogpeppe/go-internalv1.14.1indirect
Gogithub.com/rs/xidv1.6.0indirect
Gogithub.com/ryanuber/go-globv1.0.0indirect
Gogithub.com/sagikazarmark/locaferov0.12.0indirect
Gogithub.com/segmentio/asmv1.2.0indirect
Gogithub.com/sergi/go-diffv1.2.0indirect
Gogithub.com/shopspring/decimalv1.4.0indirect
Gogithub.com/sirupsen/logrusv1.9.3indirect
Gogithub.com/spf13/aferov1.15.0indirect
Gogithub.com/spf13/castv1.10.0indirect
Gogithub.com/spf13/pflagv1.0.10indirect
Gogithub.com/spf13/viperv1.21.0indirect
Gogithub.com/subosito/gotenvv1.6.0indirect
Gogithub.com/tidwall/gjsonv1.19.0indirect
Gogithub.com/tidwall/matchv1.2.0indirect
Gogithub.com/tidwall/prettyv1.2.1indirect
Gogithub.com/tidwall/sjsonv1.2.5indirect
Gogithub.com/vishvananda/netlinkv1.3.1indirect
Gogithub.com/vishvananda/netnsv0.0.5indirect
Gogithub.com/x448/float16v0.8.4indirect
Gogithub.com/xdg-go/stringprepv1.0.4indirect
Gogo.opentelemetry.io/auto/sdkv1.2.1indirect
Gogo.opentelemetry.io/otelv1.38.0indirect
Gogo.opentelemetry.io/otel/metricv1.38.0indirect
Gogo.opentelemetry.io/otel/tracev1.38.0indirect
Gogo.uber.org/atomicv1.11.0indirect
Gogo.uber.org/goleakv1.3.0indirect
Gogo.uber.org/multierrv1.11.0indirect
Gogo.yaml.in/yaml/v2v2.4.3indirect
Gogo.yaml.in/yaml/v3v3.0.4indirect
Gogolang.org/x/expv0.0.0-20251113190631-e25ba8c21ef6indirect
Gogolang.org/x/modv0.36.0indirect
Gogolang.org/x/netv0.53.0indirect
Gogolang.org/x/sysv0.43.0indirect
Gogolang.org/x/termv0.42.0indirect
Gogolang.org/x/textv0.37.0indirect
Gogolang.org/x/timev0.15.0indirect
Gogolang.org/x/toolsv0.44.0indirect
Gogoogle.golang.org/genproto/googleapis/apiv0.0.0-20251111163417-95abcf5c77baindirect
Gogoogle.golang.org/genproto/googleapis/rpcv0.0.0-20251111163417-95abcf5c77baindirect
Gogoogle.golang.org/protobufv1.36.10indirect
Gogopkg.in/check.v1v1.0.0-20201130134442-10cb98267c6cindirect
Gogopkg.in/evanphx/json-patch.v4v4.12.0indirect
Gogopkg.in/gobwas/glob.v0v0.2.3indirect
Gogopkg.in/inf.v0v0.9.1indirect
Gogopkg.in/juju/environschema.v1v1.0.1indirect
Gogopkg.in/retry.v1v1.0.3indirect
Gogopkg.in/tomb.v1v1.0.0-20141024135613-dd632973f1e7indirect
Gogopkg.in/tomb.v2v2.0.0-20161208151619-d5d1b5820637indirect
Gok8s.io/apiv0.34.2indirect
Gok8s.io/apiextensions-apiserverv0.34.2indirect
Gok8s.io/apimachineryv0.34.2indirect
Gok8s.io/client-gov0.34.2indirect
Gok8s.io/klog/v2v2.130.1indirect
Gok8s.io/kube-openapiv0.0.0-20250710124328-f3f2b991d03bindirect
Gok8s.io/utilsv0.0.0-20251002143259-bc988d571ff4indirect
Gosigs.k8s.io/jsonv0.0.0-20241014173422-cfa47c3a1cc8indirect
Gosigs.k8s.io/randfillv1.0.0indirect
Gosigs.k8s.io/structured-merge-diff/v6v6.3.0indirect
PyPIcanonical-sphinxindirect
PyPIcharmhelpersindirect
PyPIcoslindirect
PyPIcoverageindirect
PyPIflake8indirect
PyPIhvacindirect
PyPIjinja2indirect
PyPIjsonschemaindirect
PyPImarkupsafeindirect
PyPImyst-parserindirect
PyPIopsindirect
PyPIpackagingindirect
PyPIpydantic1.10.*indirect
PyPIrst2htmlindirect
PyPIsphinx-autobuildindirect
PyPIsphinx-config-optionsindirect
PyPIsphinx-contributor-listingindirect
PyPIsphinx-designindirect
PyPIsphinx-filtered-toctreeindirect
PyPIsphinx-last-updated-by-gitindirect
PyPIsphinx-llmindirect
PyPIsphinx-new-tab-linkindirect
PyPIsphinx-notfound-pageindirect
PyPIsphinx-related-linksindirect
PyPIsphinx-reredirectsindirect
PyPIsphinx-rolesindirect
PyPIsphinx-sitemapindirect
PyPIsphinx-tabsindirect
PyPIsphinx-terminalindirect
PyPIsphinx-ubuntu-imagesindirect
PyPIsphinx-youtube-linksindirect
PyPIsphinxcontrib-jqueryindirect
PyPIsphinxcontrib-lightbox2indirect
PyPIsphinxcontrib-mermaidindirect
PyPIsphinxcontrib-svg2pdfconverterindirect
PyPIsphinxext-opengraphindirect
PyPIsphinxext-rediraffeindirect
PyPIvaleindirect
Dependency advisories 15

This repository publishes no package the index resolves, so its own dependency graph was assessed — 291 packages, which also include development and test pins that never ship: 15 carry known advisories, of which 6 are direct. 38 could not be assessed — no resolved version, an unsupported ecosystem, or beyond the reported package list.

PackageVersionRelationSeverityAdvisoriesFixed in
github.com/canonical/lxdv0.0.0-20251125210512-b190d213bd11directcritical80.0.0-20260224152359-d936c90d47cf
github.com/juju/jujuv0.0.0-20260325121537-78832a31ad6bdirectcritical133.5.3
golang.org/x/cryptov0.50.0directcritical270.52.0
google.golang.org/grpcv1.77.0directcritical41.82.1
github.com/getkin/kin-openapiv0.131.0indirectcritical20.144.0
github.com/go-jose/go-jose/v4v4.1.3indirecthigh24.1.4
github.com/jackc/pgproto3/v2v2.3.3indirecthigh2
github.com/moby/spdystreamv0.5.0indirecthigh20.5.1
go.opentelemetry.io/otelv1.38.0indirecthigh21.41.0
github.com/go-chi/chi/v5v5.2.3directmoderate55.3.0
golang.org/x/netv0.53.0indirectmoderate80.56.0
github.com/jackc/pgx/v4v4.18.3directlow25.9.2
github.com/juju/utils/v3v3.2.3indirectunknown14.0.4
golang.org/x/sysv0.43.0indirectunknown10.44.0
golang.org/x/textv0.37.0indirectunknown10.39.0

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 17112,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "Go": 3562700,
        "HCL": 173,
        "Shell": 54463,
        "Python": 165103,
        "Makefile": 6093,
        "Dockerfile": 1336
      },
      "pushed_at": "2026-07-30T10:40:47Z",
      "created_at": "2015-04-14T12:49:45Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-30T10:41:51Z",
      "description": "Juju intelligent model manager web service",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "v3",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": "https://canonical.com",
      "name": "Canonical",
      "type": "Organization",
      "login": "canonical",
      "company": null,
      "location": "London, UK",
      "followers": 3894,
      "avatar_url": "https://avatars.githubusercontent.com/u/53057619?v=4",
      "created_at": "2019-07-18T18:01:10Z",
      "is_verified": null,
      "public_repos": 2386,
      "account_age_days": 2570
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v3.4.3",
          "kind": "patch",
          "published_at": "2026-07-16T19:40:04Z"
        },
        {
          "tag": "v3.4.2",
          "kind": "patch",
          "published_at": "2026-07-07T12:50:22Z"
        },
        {
          "tag": "v3.4.1",
          "kind": "patch",
          "published_at": "2026-06-23T10:27:03Z"
        },
        {
          "tag": "v4.0.0-alpha",
          "kind": "prerelease",
          "published_at": "2026-06-22T14:55:19Z"
        },
        {
          "tag": "v3.4.0",
          "kind": "minor",
          "published_at": "2026-06-09T12:54:59Z"
        },
        {
          "tag": "v3.3.26",
          "kind": "patch",
          "published_at": "2026-05-19T09:23:10Z"
        },
        {
          "tag": "v3.3.25",
          "kind": "patch",
          "published_at": "2026-04-30T13:45:48Z"
        },
        {
          "tag": "v3.3.24",
          "kind": "patch",
          "published_at": "2026-04-28T13:15:40Z"
        },
        {
          "tag": "v3.3.23",
          "kind": "patch",
          "published_at": "2026-04-28T08:49:39Z"
        },
        {
          "tag": "v3.4.0-alpha3",
          "kind": "prerelease",
          "published_at": "2026-04-23T12:33:27Z"
        },
        {
          "tag": "v3.4.0-alpha2",
          "kind": "prerelease",
          "published_at": "2026-04-03T09:26:21Z"
        },
        {
          "tag": "v3.4.0-alpha1",
          "kind": "prerelease",
          "published_at": "2026-04-03T08:43:20Z"
        },
        {
          "tag": "v3.3.22",
          "kind": "patch",
          "published_at": "2026-03-11T07:07:27Z"
        },
        {
          "tag": "v3.3.21",
          "kind": "patch",
          "published_at": "2026-03-06T14:35:12Z"
        },
        {
          "tag": "v3.3.20",
          "kind": "patch",
          "published_at": "2026-03-05T10:33:58Z"
        },
        {
          "tag": "v3.3.19",
          "kind": "patch",
          "published_at": "2026-03-04T14:31:55Z"
        },
        {
          "tag": "v3.3.18",
          "kind": "patch",
          "published_at": "2026-02-24T14:42:44Z"
        },
        {
          "tag": "v3.3.17",
          "kind": "patch",
          "published_at": "2026-02-04T09:27:02Z"
        },
        {
          "tag": "v3.3.16",
          "kind": "patch",
          "published_at": "2026-02-04T10:03:53Z"
        },
        {
          "tag": "v3.3.15",
          "kind": "patch",
          "published_at": "2026-02-04T10:03:25Z"
        },
        {
          "tag": "v3.3.14",
          "kind": "patch",
          "published_at": "2026-01-15T13:31:56Z"
        },
        {
          "tag": "v3.3.13",
          "kind": "patch",
          "published_at": "2026-01-12T09:05:04Z"
        },
        {
          "tag": "v3.3.12",
          "kind": "patch",
          "published_at": "2026-01-06T07:13:23Z"
        },
        {
          "tag": "v3.3.11",
          "kind": "patch",
          "published_at": "2025-12-18T10:40:40Z"
        },
        {
          "tag": "v3.3.10",
          "kind": "patch",
          "published_at": "2025-12-09T12:54:17Z"
        },
        {
          "tag": "v3.3.9",
          "kind": "patch",
          "published_at": "2025-12-08T12:43:54Z"
        },
        {
          "tag": "v3-k8s-rev29",
          "kind": "other",
          "published_at": "2024-05-21T09:26:11Z"
        },
        {
          "tag": "v3-k8s-rev26",
          "kind": "other",
          "published_at": "2024-01-05T11:08:23Z"
        },
        {
          "tag": "v3-k8s-rev25",
          "kind": "other",
          "published_at": "2023-12-08T10:47:08Z"
        },
        {
          "tag": "v3-machine-rev34",
          "kind": "other",
          "published_at": "2023-12-08T10:39:08Z"
        },
        {
          "tag": "v3-machine-rev33",
          "kind": "other",
          "published_at": "2023-12-08T08:44:37Z"
        },
        {
          "tag": "v1-k8s-rev24",
          "kind": "other",
          "published_at": "2023-11-22T12:52:40Z"
        },
        {
          "tag": "v1-machine-rev30",
          "kind": "other",
          "published_at": "2023-11-22T12:45:02Z"
        },
        {
          "tag": "v1-k8s-rev23",
          "kind": "other",
          "published_at": "2023-10-25T10:11:49Z"
        },
        {
          "tag": "v1-k8s-rev22",
          "kind": "other",
          "published_at": "2023-10-25T10:09:24Z"
        },
        {
          "tag": "v1-machine-rev29",
          "kind": "other",
          "published_at": "2023-10-25T10:04:47Z"
        },
        {
          "tag": "v1-machine-rev28",
          "kind": "other",
          "published_at": "2023-10-25T10:00:54Z"
        },
        {
          "tag": "v1-k8s-rev21",
          "kind": "other",
          "published_at": "2023-10-25T06:21:53Z"
        },
        {
          "tag": "v1-machine-rev27",
          "kind": "other",
          "published_at": "2023-10-25T06:13:37Z"
        },
        {
          "tag": "v1-k8s-rev20",
          "kind": "other",
          "published_at": "2023-10-24T07:00:40Z"
        },
        {
          "tag": "v1-machine-rev26",
          "kind": "other",
          "published_at": "2023-10-24T06:52:07Z"
        },
        {
          "tag": "v1-k8s-rev19",
          "kind": "other",
          "published_at": "2023-10-17T08:26:17Z"
        },
        {
          "tag": "v1-machine-rev25",
          "kind": "other",
          "published_at": "2023-10-17T08:18:19Z"
        },
        {
          "tag": "v2-k8s-rev17",
          "kind": "other",
          "published_at": "2023-10-03T09:46:02Z"
        },
        {
          "tag": "v2-machine-rev23",
          "kind": "other",
          "published_at": "2023-10-03T09:39:31Z"
        },
        {
          "tag": "v1-k8s-rev18",
          "kind": "other",
          "published_at": "2023-10-13T07:40:46Z"
        },
        {
          "tag": "v1-machine-rev24",
          "kind": "other",
          "published_at": "2023-10-13T07:32:41Z"
        },
        {
          "tag": "v2-k8s-rev16",
          "kind": "other",
          "published_at": "2023-09-07T11:33:51Z"
        },
        {
          "tag": "v2-machine-rev22",
          "kind": "other",
          "published_at": "2023-09-07T11:26:51Z"
        },
        {
          "tag": "v2-k8s-rev15",
          "kind": "other",
          "published_at": "2023-08-29T09:56:37Z"
        },
        {
          "tag": "v2-machine-rev21",
          "kind": "other",
          "published_at": "2023-08-29T09:40:07Z"
        },
        {
          "tag": "v2-k8s-rev14",
          "kind": "other",
          "published_at": "2023-08-28T10:34:37Z"
        },
        {
          "tag": "v2-machine-rev20",
          "kind": "other",
          "published_at": "2023-08-28T10:28:55Z"
        },
        {
          "tag": "v2-machine-rev19",
          "kind": "other",
          "published_at": "2023-08-23T10:08:18Z"
        },
        {
          "tag": "v2-k8s-rev13",
          "kind": "other",
          "published_at": "2023-08-03T09:42:28Z"
        },
        {
          "tag": "v2-machine-rev18",
          "kind": "other",
          "published_at": "2023-08-03T09:37:03Z"
        },
        {
          "tag": "v2-k8s-rev12",
          "kind": "other",
          "published_at": "2023-07-26T15:04:38Z"
        },
        {
          "tag": "v2-machine-rev17",
          "kind": "other",
          "published_at": "2023-07-26T14:58:59Z"
        },
        {
          "tag": "v2-k8s-rev11",
          "kind": "other",
          "published_at": "2023-07-20T13:14:10Z"
        },
        {
          "tag": "v2-machine-rev16",
          "kind": "other",
          "published_at": "2023-07-20T13:08:52Z"
        },
        {
          "tag": "v2-k8s-rev10",
          "kind": "other",
          "published_at": "2023-07-12T18:26:37Z"
        },
        {
          "tag": "v2-machine-rev15",
          "kind": "other",
          "published_at": "2023-07-12T18:19:52Z"
        },
        {
          "tag": "v2-k8s-rev9",
          "kind": "other",
          "published_at": "2023-07-10T14:09:20Z"
        },
        {
          "tag": "v2-machine-rev14",
          "kind": "other",
          "published_at": "2023-07-10T14:08:37Z"
        },
        {
          "tag": "v1-k8s-rev8",
          "kind": "other",
          "published_at": "2023-07-10T11:50:11Z"
        },
        {
          "tag": "v1-machine-rev13",
          "kind": "other",
          "published_at": "2023-07-10T11:41:15Z"
        },
        {
          "tag": "v2-k8s-rev7",
          "kind": "other",
          "published_at": "2023-07-10T09:35:40Z"
        },
        {
          "tag": "v2-machine-rev12",
          "kind": "other",
          "published_at": "2023-07-10T09:26:05Z"
        },
        {
          "tag": "v2-k8s-rev6",
          "kind": "other",
          "published_at": "2023-06-29T15:56:57Z"
        },
        {
          "tag": "v2-k8s-rev8",
          "kind": "other",
          "published_at": "2023-06-29T15:56:51Z"
        },
        {
          "tag": "rev7",
          "kind": "other",
          "published_at": "2023-06-29T11:42:05Z"
        },
        {
          "tag": "rev9",
          "kind": "other",
          "published_at": "2023-06-30T07:09:20Z"
        },
        {
          "tag": "rev6",
          "kind": "other",
          "published_at": "2023-06-29T09:37:25Z"
        },
        {
          "tag": "rev4",
          "kind": "other",
          "published_at": "2023-06-27T20:04:57Z"
        },
        {
          "tag": "rev5",
          "kind": "other",
          "published_at": "2023-06-27T20:03:46Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "5939d5251c3d3bdf94f59a97273176eddb5faf31",
          "body": null,
          "is_bot": false,
          "headline": "feat: improve juju jaas query-models (#2071)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-07-30T10:40:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e14f2eb96f380885227501e336ced4133b0eb01",
          "body": null,
          "is_bot": false,
          "headline": "fix: typo in terraform plan (#2070)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-07-30T06:15:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "17665c23185b5edbbf264130108fec15293f1d6f",
          "body": "* docs: idp-groups setup and migration",
          "is_bot": false,
          "headline": "docs: idp-groups setup and migration (#2069)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-07-29T08:21:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "52f6fd9b4b3840c4169a7470e920d3b1710d524b",
          "body": "* fix: fix UpdateCredentials to check against the args.Credentials",
          "is_bot": false,
          "headline": "fix: fix UpdateCredentials to check against the args.Credentials (#2068)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-07-23T15:15:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c185da56d5ea0931d2e940feb61d8f03cc9c642e",
          "body": null,
          "is_bot": false,
          "headline": "chore(ssh): change dialing user for ssh (#2067)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-07-22T14:40:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "afb7d6a9c9f726a91f46d19e9daf55e1484e2c2f",
          "body": "fix: recover credential for a model",
          "is_bot": false,
          "headline": "Merge pull request #2064 from SimoneDutto/recover-creds",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-07-16T15:39:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e62aaad8db951496c389007afe5e61ed0a0da8c",
          "body": null,
          "is_bot": false,
          "headline": "fix: ci",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-07-16T13:53:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "28590406a722ec708f7eb11c51367911007867ed",
          "body": null,
          "is_bot": false,
          "headline": "feat: add dry-run",
          "author_name": "Luci Brănescu",
          "author_login": "luci1900",
          "committed_at": "2026-07-16T13:20:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37acd419ecf74c453eef738ad28d375e12d50892",
          "body": null,
          "is_bot": false,
          "headline": "feat: recover-model-credential",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-07-16T13:19:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "25268d586e1c81f52e95afcbf9c12d3e15bcc1b5",
          "body": null,
          "is_bot": false,
          "headline": "fix: support client-credential login in stream handlers (#2062)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-07-13T07:53:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3c82f3407508c746b4fe76c10d5777daf8c3dd09",
          "body": "…2060)",
          "is_bot": false,
          "headline": "perf: improve ListModelSummaries by querying openfga a single time (#…",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-07-13T06:18:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff48de67e23ee0fc29cf01c681dbfe533fbc06e7",
          "body": null,
          "is_bot": false,
          "headline": "chore: fix snap builds for snapcraft v9 (#2059)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-07-10T08:49:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd6ab601cf2196edd0361108ecf1d9715d725c97",
          "body": "1. Require the same credential in JIMM as the importing model.\n2. Drop support for changing model owner, this causes issues when creating offers and doesn't align with 1. when importing a model using a credential owned by a local user.",
          "is_bot": false,
          "headline": "refactor: adjust model import (#2051)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-07-07T12:19:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "503224491fece37101c4aeb35e8771a360cbfcc8",
          "body": "* refactor: be more conservative when deleting models\n\n* chore: simplify CLI model deletion test\n\n* docs: add section on destroying models/offers and reconciling state\n\n* test: set life in test fixture",
          "is_bot": false,
          "headline": "refactor: model deletion tweaks (#2049)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-07-06T13:12:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef6e19c660ad8b2709d129e113f215880ac96d48",
          "body": "Add a jaas upgrade-controller <controller-name> command that upgrades the Juju agent running on a named backing controller registered with JIMM.\n\nUses a new UpgradeController RPC methods. The controller model UUID can't be directly exposed by JIMM since there is one for each backing controller, henc\n[…]\nt UUID, keeping the upgrade logic entirely on the backing controller.\n\nThe command is restricted to JIMM admins, consistent with AddController, RemoveController, and other controller-level operations.",
          "is_bot": false,
          "headline": "feat: jaas upgrade-controller (#2046)",
          "author_name": "Luci Brănescu",
          "author_login": "luci1900",
          "committed_at": "2026-07-01T15:41:05Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8bfc88e1fa0fb0982f9d19197765c6b9c0f915dd",
          "body": "Application offers in JIMM can dangle, where the record exists in JIMM's database and OpenFGA but the offer no longer exists on the Juju controller. The way this can happen is the destroying via JIMM where the request is made against the controller and succeeds, but JIMM never receives the response \n[…]\ng state in place indefinitely.\n\nThis adds the same cleanup on create (Offer). When the duplicate-URL check finds an existing record, JIMM now verifies whether the offer still exists on the controller.",
          "is_bot": false,
          "headline": "fix: also clean up dangling offer on creation (#2048)",
          "author_name": "Luci Brănescu",
          "author_login": "luci1900",
          "committed_at": "2026-07-01T08:46:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "955c9a19236a782a98455ce3a500fb356e76fefa",
          "body": null,
          "is_bot": false,
          "headline": "fix: fix authcode state cookie verification path (#2045)",
          "author_name": "Alex",
          "author_login": "ale8k",
          "committed_at": "2026-06-29T15:18:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e81b2e1441df8d0c96e67957634b992dc39bd6d8",
          "body": null,
          "is_bot": false,
          "headline": "chore: update snaps to core24 (#2042)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-26T12:45:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3d4c9e501382f7178020301723214e7210772f03",
          "body": "* ci: use newer dashboard in CI\n\n* chore: update dashboard version in docker compose",
          "is_bot": false,
          "headline": "ci: update juju dashboard tests (#2043)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-26T10:36:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c83a47d3d4d119822ae7115bb9ccbddf4cc20262",
          "body": "doc: add upgrade-to model management info",
          "is_bot": false,
          "headline": "Merge pull request #2038 from kian99/document-upgrade-to",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-23T13:53:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "08f16e59a8efe625204bf3aedb5aef3083641d6f",
          "body": "Merge idp group",
          "is_bot": false,
          "headline": "Merge pull request #2039 from kian99/merge-idp-group",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-23T08:55:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a4efe11ffc4590b41a27a83ea93c33ceef98c07",
          "body": null,
          "is_bot": false,
          "headline": "chore: remove test.env file",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-22T14:21:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7572c53c75554c5fc239c33e2c740af470da633a",
          "body": "Merge v3 feature OIDC",
          "is_bot": false,
          "headline": "Merge pull request #2036 from kian99/merge-v3-feature-oidc",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-22T13:18:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15175c765b52f6378dcbfcae0117fe2a4538630d",
          "body": null,
          "is_bot": false,
          "headline": "chore: remove duplication in testing/jimm_test.go",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-22T10:27:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1968606cfe0cd7c3d666b702152d2aa9dd91c98",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into merge-v3-feature-oidc",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-22T09:58:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0c2370481f8406f1b5c7afe03066d6abb697efaa",
          "body": "fix(jujumanager): close controller connections in PollModels",
          "is_bot": false,
          "headline": "Merge pull request #2012 from alesstimec/fix/poll-models-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-19T06:04:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a9fa878b91577077caa93ba1048623637219a409",
          "body": "PollModels dials each controller once to check its models, but never\ncloses the resulting API connection. PollModels runs on a periodic\nschedule, so every cycle leaks one connection (a websocket plus its\nbackground receive goroutine) per controller, steadily accumulating\nuntil file descriptors are e\n[…]\nundesirable when\nmany controllers are polled.\n\nAdds TestPollModelsClosesControllerConnections, which asserts via the\ntest dialer's open-connection counter that no connection is left open\nafter a poll.",
          "is_bot": false,
          "headline": "fix(jujumanager): close controller connections in PollModels",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-18T09:38:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d62cff15d814d0c0a2cc05b7642da13755224f48",
          "body": "openfga supports max of 20 contextual tuples, so we need to return an error if there are >20 idp\ngroups for a user. If somebody will complain about this we will find a solution, but for now we just\nreturn an error.",
          "is_bot": false,
          "headline": "feat: add max of idp groups per user (#2026)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-06-16T09:26:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9287b77d5226583e8d3c41e3b6fa9becfd9f6c7c",
          "body": "Migrate v3",
          "is_bot": false,
          "headline": "Merge pull request #2023 from tmihoc/migrate-v3",
          "author_name": "Teodora Mihoc",
          "author_login": "tmihoc",
          "committed_at": "2026-06-15T16:48:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2877efa87ba5b18d6084c8e9564cb6914c4059c",
          "body": null,
          "is_bot": false,
          "headline": "docs: configure JAAS for multi-version migration",
          "author_name": "Teodora Mihoc",
          "author_login": "tmihoc",
          "committed_at": "2026-06-15T14:41:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59579bfbda5093efe9b53df9636ff533259179db",
          "body": null,
          "is_bot": false,
          "headline": "docs: set sitemap_url_scheme to link-only",
          "author_name": "Teodora Mihoc",
          "author_login": "tmihoc",
          "committed_at": "2026-06-15T14:41:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9118b8f6f6129992a26b6e3fb0239689e8d7a388",
          "body": "Use the robust version from the migration guide that:\n- Uses regex with proper escaping for URL replacement\n- Handles both a[href] and link[href] elements\n- Uses MutationObserver to handle RTD flyout's shadow DOM properly",
          "is_bot": false,
          "headline": "docs: update overwrite_links.js to current best-practice version",
          "author_name": "Teodora Mihoc",
          "author_login": "tmihoc",
          "committed_at": "2026-06-15T14:41:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6b2b75f4f6758a5de9c688447a084f12761f7e55",
          "body": null,
          "is_bot": false,
          "headline": "docs: configure for canonical.com/juju/docs/jaas migration",
          "author_name": "Teodora Mihoc",
          "author_login": "tmihoc",
          "committed_at": "2026-06-15T14:41:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a6660b4aea9f278e1cf99892cbd073d98afe8087",
          "body": "idp groups are injected into the user obj to then use it as contextual tuples",
          "is_bot": false,
          "headline": "feat: inject contextual tuples from jwt groups (#2022)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-06-15T13:13:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7d05dc9253b90b2aa5ee9c92bad3ffd4dc96e969",
          "body": "fix(setclouddefaults): fixes a potential panic in SetCloudDefaults",
          "is_bot": false,
          "headline": "Merge pull request #2004 from alesstimec/fix/set-cloud-defaults-nil-map",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-15T11:18:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eec409eefd48ab3d89d86b12326eb0bad20fc1f6",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/set-cloud-defaults-nil-map",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-15T10:43:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f907ce23ce95d96f7a1bb75fe1c0c9dede52b824",
          "body": null,
          "is_bot": false,
          "headline": "docs: update suggested version of iam TF bundle (#2024)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-15T08:39:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "355cd9fc30fd9b2aff3d753e58000f43f5167aac",
          "body": "…… (#2018)\n\n* feat: extract service configured group claim key and add it to session and cookies\n\n* feat: use preseeded user for group tests and remove old keycloak generation logic\n\n* feat: normalise group claim key\n\n* feat: remove old overloads\n\nI kept the original functions as overloads but they \n[…]\ntoken.\n\n* test: update mocks\n\n* feat: rename group claim key env var\n\n* feat: simplify group parsing\n\n* feat: simplify group parsing\n\n* refactor: refactor group claim split call\n\n* fix: parse from any",
          "is_bot": false,
          "headline": "feat: extract service configured group claim key and add it to sessio…",
          "author_name": "Alex",
          "author_login": "ale8k",
          "committed_at": "2026-06-12T11:21:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "84bf15473a01a8f5f0c4b1577869f88bf3652b21",
          "body": "feat: allow add permission for idp-group",
          "is_bot": false,
          "headline": "Merge pull request #2021 from SimoneDutto/idp-group-id-impl",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-06-11T15:04:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a46091dc07e025e4d2415daa278058a8da455628",
          "body": null,
          "is_bot": false,
          "headline": "refactor: allow model admin to call ModelControllerInfo (#2020)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-11T12:42:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fe49e3bc574a22c1cfec472b0f9d9741fc99203f",
          "body": "…s-guard\n\nfix(jujuapi): check for models before destroying a controller",
          "is_bot": false,
          "headline": "Merge pull request #2014 from alesstimec/fix/destroy-controller-model…",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-09T13:23:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4ad7dbd9fe59d7b2cea110ad64ce3db4cf8ab03",
          "body": "* fix(log): fixes security logging for relation removal\n\nFixes security logging for relation removal.\n\n* fix(jujuclient): close the client when login-request creation fails\n\nDialer.Dial wraps the dialled connection in an rpc.Client, which owns the\nwebsocket and starts a background receive goroutine.\n[…]\nconfirming JIMM admins can still manage structural relations.\n\n---------\n\nCo-authored-by: Ales Stimec <ales.stimec@canonical.com>\nCo-authored-by: Kian Parvin <46668016+kian99@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Merge v3 (#2017)",
          "author_name": "Alex",
          "author_login": "ale8k",
          "committed_at": "2026-06-09T13:18:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "281bd5afea328aeff095e58edfcc2343ad6c87a4",
          "body": "StartDestroyController guards against tearing down a controller that\nstill hosts models with `if len(ctrl.Models) != 0`. The controller comes\nfrom ControllerInfo, which loads it via GetController; that query only\npreloads CloudRegions, never the Models association. ctrl.Models is\ntherefore always an\n[…]\nr call\nit instead of inspecting the never-populated association.\n\nTestStartDestroyControllerJob now drives the model count through the\nmanager rather than ctrl.Models, and fails against the old guard.",
          "is_bot": false,
          "headline": "fix(jujuapi): check for models before destroying a controller",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-09T12:26:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "da1ba74c2c753e52f25d41d4240314c60dbf0788",
          "body": "…-leak\n\nfix(upgrade): close the controller connection in UpgradeModel",
          "is_bot": false,
          "headline": "Merge pull request #2011 from alesstimec/fix/upgrade-model-connection…",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-09T11:15:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7aeb2f8a5c418586cfaef3841d5b3a0ac75da771",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/upgrade-model-connection-leak",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-09T09:40:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f7040d2e354d2f59da37e96604db2fcd9b6eeb9",
          "body": "…(#2007)\n\nThe \"broaden use of JAAS permissions\" change let a resource administrator\n(a non-JIMM-admin who administers a resource) manage relation tuples on\nthat resource. The authorization check, however, looked only at whether\nthe user administered the tuple's *target* — it never constrained the\n*r\n[…]\nach-model attack, the offer->model structural relation, and granting\nan access relation to a non-grantee object kind, plus a positive case\nconfirming JIMM admins can still manage structural relations.",
          "is_bot": false,
          "headline": "fix(permissions): restrict resource admins to access-grant relations …",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-09T09:39:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8439cb80b664ab949e09c624ccb1c7482aeefaf8",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/upgrade-model-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-09T08:58:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca30812a6703790a211a5e5119552bb0bfb0871b",
          "body": null,
          "is_bot": false,
          "headline": "fix: perform local charm uploads with admin token (#2016)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-09T08:03:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e5d36c7b5702e540c526bb5252899a2079965e41",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/upgrade-model-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-09T07:28:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2d91d6f8fd7dcb881f3edab560c4fed29079a624",
          "body": "* test: simplify keycloak setup for tests\n\n* test: re-add test-only user jimm_test@canonical.com",
          "is_bot": false,
          "headline": "test: simplify keycloak setup for tests (#2015)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-09T06:29:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e798e8228303b26e9505eb03f6a9dc139e1c7db6",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/upgrade-model-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T13:53:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "44ff51f7cacd8adc60370e6ef894703748bd31bb",
          "body": "…ction-leak\n\nfix(jujuclient): close the client when login-request creation fails",
          "is_bot": false,
          "headline": "Merge pull request #2013 from alesstimec/fix/dial-login-request-conne…",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T13:40:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "88da2a7ede4c9681f505c77958ca37a4c472cffd",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/dial-login-request-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T12:47:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "28ff1cab446cb61f0f49cc9c2e9ca91e5491f75e",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/upgrade-model-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T12:41:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8dfdf26175668c67853c4b4a73109a79bcb47dc2",
          "body": "fix(log): fixes security logging for relation removal",
          "is_bot": false,
          "headline": "Merge pull request #2001 from alesstimec/fix/log-user-updated",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T12:40:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be37fe291f4e67ec46b4f6514bda80b4fe90a4c5",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/log-user-updated",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T11:10:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "035697ba7dc7484ef6ad7f636d6827219917df87",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/dial-login-request-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T11:09:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "57ad23e7236184d7ca637b331df4381791b4ed8d",
          "body": "* feat: refactor upgradeTo river job\n\n* test: add ModelInfo with upgrade-to status integration test\n\n* chore: rename findUpgradeToRootJob to findUpgradeToJob",
          "is_bot": false,
          "headline": "feat: refactor upgradeTo river job (#2009)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-08T11:02:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bba8c778e8af62bf20aae72b85553996b3a98743",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/dial-login-request-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T09:41:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2d3c2ebdd62fb4c4c21177c6e0c79d0159f04cd7",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/log-user-updated",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T09:38:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a7e7cce4a7a6e651f8b6fa8fa6899fee7ed75faf",
          "body": "…tion-leak\n\nfix(jujumanager): fixes a connection leak in FullModelStatus",
          "is_bot": false,
          "headline": "Merge pull request #2002 from alesstimec/fix/full-model-status-connec…",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T09:38:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bbcfe9857f79bda753184fe3464ad647a48a4c54",
          "body": "Dialer.Dial wraps the dialled connection in an rpc.Client, which owns the\nwebsocket and starts a background receive goroutine. If the subsequent\ncreateLoginRequest call fails, Dial returns without closing that client,\nleaking both the socket and the goroutine. The adjacent Login-failure\nbranch alrea\n[…]\nhiccup these connections accumulate and\nfile descriptors are eventually exhausted.\n\nClose the client before returning on the createLoginRequest error path,\nmirroring the existing Login error handling.",
          "is_bot": false,
          "headline": "fix(jujuclient): close the client when login-request creation fails",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T07:18:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "358319f31675e9c132511382585ebacfdfffd1d2",
          "body": "UpgradeModel dials the target controller but never closes the resulting\nAPI connection. The connection (a websocket plus its background receive\ngoroutine) is leaked on every call, regardless of whether the upgrade\nsucceeds or fails. UpgradeModel runs as the second phase of an upgrade-to\njob and the \n[…]\ntern used by every other controller-dialling method in the juju\nmanager.\n\nEach UpgradeModel test that reaches a successful dial now asserts that\nClose is called, guarding against the leak reappearing.",
          "is_bot": false,
          "headline": "fix(upgrade): close the controller connection in UpgradeModel",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-08T06:56:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1c0208052eb5dd116274509ae389d4cd8c020d37",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/set-cloud-defaults-nil-map",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T12:52:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84b85f130e07f9c207076b644a551baf11b8d968",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/log-user-updated",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T12:52:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "251e7bcba28b5289670cd5258651a5c075ac8e6c",
          "body": null,
          "is_bot": false,
          "headline": "Merge branch 'v3' into fix/full-model-status-connection-leak",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T12:21:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a0bdcf993ba3aef93202eef6001dd775cc2e8610",
          "body": "fix: avoid race in shared err in SSH tunnel copy goroutines",
          "is_bot": false,
          "headline": "Merge pull request #2005 from alesstimec/fix/ssh-error-race",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T12:20:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cafd0336a546956070a5988495718f2bcd51d0a4",
          "body": "Two goroutines copying data between client and the controller shared the same error variable.",
          "is_bot": false,
          "headline": "fix: avoid race in shared err in SSH tunnel copy goroutines",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T10:40:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30f163bc48b80e20eaa14b6a6287ed2ad4d0421a",
          "body": "Fixes a potential panic in SetCloudDefaults if the defaults map is nil in the DB.",
          "is_bot": false,
          "headline": "fix(setclouddefaults): fixes a potential panic in SetCloudDefaults",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T10:29:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "22ae95156aca47d2f9b3d6da1a6c29306b631fa4",
          "body": "Fixes a connection leak in the FullModelStatus method of the JujuManager.",
          "is_bot": false,
          "headline": "fix(jujumanager): fixes a connection leak in FullModelStatus",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T10:16:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3bfb60790f93a822c2634ac2e78a2a8d33620aa3",
          "body": "Fixes security logging for relation removal.",
          "is_bot": false,
          "headline": "fix(log): fixes security logging for relation removal",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-06-05T10:13:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f2197dc7af98b3178584a9ced66641839125597a",
          "body": "* feat: broaden use of JAAS permissions\n\n* chore: use tuple.Target",
          "is_bot": false,
          "headline": "feat: broaden use of JAAS permissions (#2000)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-04T10:49:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b6a5d859a5b5c00168bc188c824dbe9e5f9bc900",
          "body": "* feat: add controller details struct\n\n* chore: rename functions",
          "is_bot": false,
          "headline": "feat: add controller details struct (#1999)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-06-04T08:54:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "958f84fd6d61ce509965333c3ab2ac41791b70ca",
          "body": "* feat: add ListModels to list models per users and their upgrade-to status\n\n* fix: pr comments\n\n* refactor: set status for a job based of the last attempt or schedule\n\n* feat(models): add jaas models cmd to list models with controller, model and upgrade-to status",
          "is_bot": false,
          "headline": "Add list models cmd (#1998)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-06-03T14:30:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8bd9a828980e04fd7f69880a1e791db14c811ef4",
          "body": "…atus (#1995)\n\n* feat: add ListModels to list models per users and their upgrade-to status\n\n* fix: pr comments\n\n* refactor: set status for a job based of the last attempt or schedule\n\n* feat(add completed jobs): add complete jobs to the list-models endpoint\n\n* feat: switch to two river queries to remove additional sorting logic",
          "is_bot": false,
          "headline": "feat: add ListModels to list models per users and their upgrade-to st…",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-06-03T11:14:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "73f7d47fddaad4aa5b1f9ac959b816a7f456ef53",
          "body": "* feat: jaas show-controller command\n\n* chore: update cmd help text",
          "is_bot": false,
          "headline": "feat: jaas show-controller command (#1996)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-29T15:04:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c6271a60ed2a67e8b5e749c69aa4c23b076bd449",
          "body": null,
          "is_bot": false,
          "headline": "feat: add show-controller api method (#1994)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-28T12:26:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "95888309d4d37ea73052bb80dcd3b4848d8d3204",
          "body": "* feat: upgrade-to details in show-model output\n\n* chore: add missing test mock\n\n* refactor: ensure we fetch any finalized state",
          "is_bot": false,
          "headline": "feat: upgrade-to details in show-model output (#1993)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-28T08:59:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5c8d4c481831ead76fb9410e074d4343e80fc960",
          "body": "…r format (#1992)\n\n* feat: modify upgrade-to CLI to support more models, and have a tabular format\n\n* fix: remove stress test script",
          "is_bot": false,
          "headline": "feat: modify upgrade-to CLI to support more models, and have a tabula…",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-27T14:59:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b4d9a3a0fc757eb7b8a8202c7e3993c176dbefb6",
          "body": "* feat: add bootstrap metadata to be queried later\n\n* test: add integration test with river to make sure it's queriable",
          "is_bot": false,
          "headline": "feat: add bootstrap metadata to be queried later (#1990)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-27T14:11:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a78e7d5de825278189b970552a016e7229e1af2",
          "body": null,
          "is_bot": false,
          "headline": "test: fix flaky test by allowing multiple calls to `Stop()` (#1991)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-27T11:12:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "54970cc39973df207b30b2fcb372c02cd8d7b101",
          "body": "* feat: allow multiple model-uuids for the upgrade-to facade\n\n* fix: remove Success from params, and test the code",
          "is_bot": false,
          "headline": "feat: allow multiple model-uuids for the upgrade-to facade (#1988)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-27T07:02:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b4080550c5a856ed25de97e025199cc4084b38da",
          "body": "* feat: store child jobs on supervisor job output\n\n* chore: add godoc",
          "is_bot": false,
          "headline": "feat: store child jobs on supervisor job output (#1989)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-26T11:02:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "777602b78cbd1759511c45fa9be25b9d51bfffda",
          "body": null,
          "is_bot": false,
          "headline": "feat: add params for job status (#1987)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-26T08:47:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6c7be3154b021d6789fb83e514017d2843f4aabc",
          "body": "* feat: insert controller into db during bootstrap\n\n* feat: add controller_bootstraps table\n\n* revert: avoid putting incomplete controllers in controllers table\n\n* chore: update copyright headers\n\n* chore: add clarifying comment",
          "is_bot": false,
          "headline": "feat: insert controller into db during bootstrap (#1983)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-25T06:50:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3a26f604bd3baf67fce9d9db54e69bf47b478f01",
          "body": "* feat: add support for description v11\n\n* feat: improve TryDetermineModelUUID function\n\n* test: use specific Juju versions for upgrade test",
          "is_bot": false,
          "headline": "feat: add support for description v11 (#1985)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-22T08:08:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5f4e59fd6f2413b99c598e553e93d57003f5ce4",
          "body": "…e (#1982)\n\n* feat(modelupgrader): add ModelUpgrader facade to support model upgrade\n\n* fix: adapt to @canonical user format",
          "is_bot": false,
          "headline": "feat(modelupgrader): add ModelUpgrader facade to support model upgrad…",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-20T13:11:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c92a60cf521ab8a9097d406f08973309e045cda",
          "body": "Switch tests from bare usernames like `bob` to qualified external usernames like `bob@canonical.com`.",
          "is_bot": false,
          "headline": "refactor: switch tests to explicit external usernames (#1981)",
          "author_name": "Luci Brănescu",
          "author_login": "luci1900",
          "committed_at": "2026-05-19T13:39:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d9e7f95c250bbf5df08b556259db0202d5312bd9",
          "body": null,
          "is_bot": false,
          "headline": "fix: ipv6 parsing for vault and publicdns (#1980)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-19T09:22:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b7d03d3461bb4c8ff6826cee46667ebfd6d1cf3",
          "body": "* feat: use JWT to authenticate to Juju where possible\n\n* chore: rename interface and field\n\n* chore: remove unused params\n\n* chore: ran go mod tidy\n\n* chore: remove unused fields\n\n* refactor: move authentication header generation\n\n* refactor: use jujuauth package\n\n* refactor: simplify jujuauth changes\n\n* refactor: use an interface in the httpproxy handlers\n\n* refactor: simplify changes to dial.go",
          "is_bot": false,
          "headline": "feat: (almost) always use jwt (#1977)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-05-07T14:18:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "51f291b0164e16842536cbf507c659ff68816977",
          "body": "* feat: cascade model access revocation\n\nJuju cascades model access to 0 on revokes, JIMM was simply removing it.\n\n* feat: follow juju sematics of revocation\n\n* test: admin cascades to reader when writer is removed",
          "is_bot": false,
          "headline": "feat: cascade model access revocation (#1979)",
          "author_name": "Alex",
          "author_login": "ale8k",
          "committed_at": "2026-05-07T11:05:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4434cb03a24b96c493e861d3dd990c1ff37fff3b",
          "body": "* fix: populate cache on feature branch\n\n* fix: populate the cache pulling images\n\nthe previous implementation of caching was wrong, because it was caching the output of the build\nprocess, and that is not correct for 2 reasons. 1. at built time we could potentially change the\nimages with something we weren't computing the hash for (e.g.  vault/policy.hcl). 2. we were caching\nthe jimm image, which shouldn't be cached because everytime we NEED to build it from scratch.",
          "is_bot": false,
          "headline": "fix: cache (#1974)",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-05T14:49:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "431265915bb68c8d3313c13c232149d56d520187",
          "body": "fix: fix cache key in github workflow",
          "is_bot": false,
          "headline": "Merge pull request #1973 from SimoneDutto/fix-cache-key",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-05-05T07:02:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c214e2ce0cd930eefd68ce71a455b97def99cf6",
          "body": null,
          "is_bot": false,
          "headline": "fix: fix cache key in github workflow",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-05-04T13:53:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3231a9521047ee92d5492d172078c40e357afbd5",
          "body": "* feat: accept JWKS as environment variables\n\n* chore: add missing godocs\n\n* refactor: use paths instead of JWK value in env var\n\n* refactor: use context to cleanup routine\n\n* refactor: simplify jimmjwx and use synctest\n\n* chore: remove unnecessary changes\n\n* chore: tweaks to docs, ctx check and must-revalidate directive\n\n* refactor: adjust key comparison logic\n\n* refactor: remove jwks nil check",
          "is_bot": false,
          "headline": "feat: accept JWKS as environment variables (#1918)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-04-30T12:42:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "150761f2dae75bdf556e09c2a944d3b099c1be1e",
          "body": "* feat: allow use of controller profiles during bootstrap\n\n* chore: add godocs",
          "is_bot": false,
          "headline": "feat: allow use of controller profiles during bootstrap (#1971)",
          "author_name": "Kian Parvin",
          "author_login": "kian99",
          "committed_at": "2026-04-30T08:58:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "44ef43cd84af79bec65d3329f666904de8af139e",
          "body": "Adds job ID to the response of the UpgradeTo call.\n\nCo-authored-by: SimoneDutto <simone.dutto@canonical.com>",
          "is_bot": false,
          "headline": "feat(upgradeto): upgradeto call now returns the job id (#1964)",
          "author_name": "Ales Stimec",
          "author_login": "alesstimec",
          "committed_at": "2026-04-29T09:55:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39f94b8628b7ea4cc11493fe42f9a49608b13483",
          "body": "… slow (#1967)\n\n* ci: add a docker cache because sometimes pulling from docker is super slow\n\n* fix(remove): remove read-only\n\n* refactor(different-approach): use bare action/cache\n\n* feat(cache): consolidate places where cache is used and populated\n\ncache should be filled only in the cache.yaml workflow, in all the other instances, it's only used.",
          "is_bot": false,
          "headline": "ci: add a docker cache because sometimes pulling from docker is super…",
          "author_name": "SimoneDutto",
          "author_login": "SimoneDutto",
          "committed_at": "2026-04-29T06:27:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "971abc87c21fe0c640ff460cd58ac6be0dd805fc",
          "body": "Update rock go version\nUpdate local dockerfile go version",
          "is_bot": false,
          "headline": "fix: update go version (#1968)",
          "author_name": "Luci Brănescu",
          "author_login": "luci1900",
          "committed_at": "2026-04-28T12:35:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "695ebcd35ad4103ff398811888cdf95083654a16",
          "body": "* feat: add cli commands for controller profiles\n\n* docs: update public godoc\n\n* docs: update purpose docs to remove \"in jimm\"\n\n* feat: add tabular formatting for list\n\n* docs: cli docs for controller profiles\n\n* chore: add links for new commands",
          "is_bot": false,
          "headline": "feat: add cli commands for controller profiles (#1959)",
          "author_name": "Alex",
          "author_login": "ale8k",
          "committed_at": "2026-04-27T12:33:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 75,
      "commits_last_year": 385,
      "latest_release_at": "2026-07-16T19:40:04Z",
      "latest_release_tag": "v3.4.3",
      "releases_from_tags": false,
      "days_since_last_push": 1,
      "active_weeks_last_year": 48,
      "days_since_latest_release": 15,
      "mean_days_between_releases": 9.4
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 75,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/canonical/jimm/v3",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/canonical/jimm/v3",
          "is_deprecated": false,
          "latest_version": "v3.4.3",
          "repository_url": "https://github.com/canonical/jimm",
          "versions_count": 68,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-16T15:39:57Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 15
        }
      ]
    },
    "popularity": {
      "forks": 13,
      "stars": 15,
      "watchers": 7,
      "fork_history": {
        "days": [
          {
            "date": "2024-09-02",
            "count": 1
          },
          {
            "date": "2024-09-03",
            "count": 1
          },
          {
            "date": "2024-09-04",
            "count": 2
          },
          {
            "date": "2024-10-04",
            "count": 1
          },
          {
            "date": "2024-10-21",
            "count": 1
          },
          {
            "date": "2024-12-19",
            "count": 1
          },
          {
            "date": "2025-04-07",
            "count": 1
          },
          {
            "date": "2025-08-07",
            "count": 1
          },
          {
            "date": "2025-12-18",
            "count": 1
          },
          {
            "date": "2026-01-13",
            "count": 2
          },
          {
            "date": "2026-04-09",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 13,
        "total_forks": 13
      },
      "star_history": null,
      "open_issues_and_prs": 12
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "docs/Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 111812,
      "source_files_sampled": 555,
      "oversized_source_files": 6,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "docs/requirements.txt",
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "github.com/canonical/lxd",
            "direct": true,
            "version": "v0.0.0-20251125210512-b190d213bd11",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 9.1,
            "advisory_ids": [
              "GHSA-c3h3-89qf-jqm5",
              "GHSA-crmg-9m86-636r",
              "GHSA-fm2x-c5qw-4h6f",
              "GHSA-q96j-3fmm-7fv4",
              "GO-2025-3999",
              "GO-2025-4003",
              "GO-2025-4121",
              "GO-2026-4595"
            ],
            "fixed_version": "0.0.0-20260224152359-d936c90d47cf",
            "advisory_count": 8,
            "oldest_advisory_days": 268
          },
          {
            "name": "github.com/juju/juju",
            "direct": true,
            "version": "v0.0.0-20260325121537-78832a31ad6b",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 10,
            "advisory_ids": [
              "GHSA-6vjm-54vp-mxhx",
              "GHSA-7m55-2hr4-pw78",
              "GHSA-gvrj-cjch-728p",
              "GHSA-w5fq-8965-c969",
              "GO-2024-3010",
              "GO-2024-3040",
              "GO-2024-3175",
              "GO-2025-3805",
              "GO-2026-4388",
              "GO-2026-4769"
            ],
            "fixed_version": "3.5.3",
            "advisory_count": 13,
            "oldest_advisory_days": 725
          },
          {
            "name": "golang.org/x/crypto",
            "direct": true,
            "version": "v0.50.0",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 10,
            "advisory_ids": [
              "GHSA-45gg-vh54-h5m9",
              "GHSA-5cgq-3rg8-m6cv",
              "GHSA-78mq-xcr3-xm33",
              "GHSA-89gr-r52h-f8rx",
              "GHSA-9m57-25v3-79x9",
              "GHSA-f5wc-c3c7-36mc",
              "GHSA-jppx-rxg9-jmrx",
              "GHSA-q4h4-gmj2-qvw2",
              "GHSA-qpw4-5x99-6vjp",
              "GHSA-rm3j-f69w-wqmq"
            ],
            "fixed_version": "0.52.0",
            "advisory_count": 27,
            "oldest_advisory_days": 71
          },
          {
            "name": "google.golang.org/grpc",
            "direct": true,
            "version": "v1.77.0",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 9.1,
            "advisory_ids": [
              "GHSA-hrxh-6v49-42gf",
              "GHSA-p77j-4mvh-x3m3",
              "GO-2026-4762",
              "GO-2026-6061"
            ],
            "fixed_version": "1.82.1",
            "advisory_count": 4,
            "oldest_advisory_days": 135
          },
          {
            "name": "github.com/getkin/kin-openapi",
            "direct": false,
            "version": "v0.131.0",
            "severity": "critical",
            "ecosystem": "go",
            "cvss_score": 9.1,
            "advisory_ids": [
              "GHSA-jpcw-4wr7-c3vq",
              "GHSA-r277-6w6q-xmqw"
            ],
            "fixed_version": "0.144.0",
            "advisory_count": 2,
            "oldest_advisory_days": 7
          },
          {
            "name": "github.com/go-jose/go-jose/v4",
            "direct": false,
            "version": "v4.1.3",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-78h2-9frx-2jm8",
              "GO-2026-4945"
            ],
            "fixed_version": "4.1.4",
            "advisory_count": 2,
            "oldest_advisory_days": 120
          },
          {
            "name": "github.com/jackc/pgproto3/v2",
            "direct": false,
            "version": "v2.3.3",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-jqcq-xjh3-6g23",
              "GO-2026-4518"
            ],
            "fixed_version": null,
            "advisory_count": 2,
            "oldest_advisory_days": 137
          },
          {
            "name": "github.com/moby/spdystream",
            "direct": false,
            "version": "v0.5.0",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-pc3f-x583-g7j2",
              "GO-2026-4958"
            ],
            "fixed_version": "0.5.1",
            "advisory_count": 2,
            "oldest_advisory_days": 106
          },
          {
            "name": "go.opentelemetry.io/otel",
            "direct": false,
            "version": "v1.38.0",
            "severity": "high",
            "ecosystem": "go",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-mh2q-q3fh-2475",
              "GO-2026-5506"
            ],
            "fixed_version": "1.41.0",
            "advisory_count": 2,
            "oldest_advisory_days": 115
          },
          {
            "name": "github.com/go-chi/chi/v5",
            "direct": true,
            "version": "v5.2.3",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 4.7,
            "advisory_ids": [
              "GHSA-mqqf-5wvp-8fh8",
              "GO-2026-4316",
              "GO-2026-5774",
              "GO-2026-5775",
              "GO-2026-5777"
            ],
            "fixed_version": "5.3.0",
            "advisory_count": 5,
            "oldest_advisory_days": 198
          },
          {
            "name": "golang.org/x/net",
            "direct": false,
            "version": "v0.53.0",
            "severity": "moderate",
            "ecosystem": "go",
            "cvss_score": 6.5,
            "advisory_ids": [
              "GHSA-5cv4-jp36-h3mw",
              "GO-2026-5025",
              "GO-2026-5026",
              "GO-2026-5027",
              "GO-2026-5028",
              "GO-2026-5029",
              "GO-2026-5030",
              "GO-2026-5942"
            ],
            "fixed_version": "0.56.0",
            "advisory_count": 8,
            "oldest_advisory_days": 71
          },
          {
            "name": "github.com/jackc/pgx/v4",
            "direct": true,
            "version": "v4.18.3",
            "severity": "low",
            "ecosystem": "go",
            "cvss_score": 3.1,
            "advisory_ids": [
              "GHSA-j88v-2chj-qfwx",
              "GO-2026-5004"
            ],
            "fixed_version": "5.9.2",
            "advisory_count": 2,
            "oldest_advisory_days": 100
          },
          {
            "name": "github.com/juju/utils/v3",
            "direct": false,
            "version": "v3.2.3",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2025-3798"
            ],
            "fixed_version": "4.0.4",
            "advisory_count": 1,
            "oldest_advisory_days": 368
          },
          {
            "name": "golang.org/x/sys",
            "direct": false,
            "version": "v0.43.0",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2026-5024"
            ],
            "fixed_version": "0.44.0",
            "advisory_count": 1,
            "oldest_advisory_days": 70
          },
          {
            "name": "golang.org/x/text",
            "direct": false,
            "version": "v0.37.0",
            "severity": "unknown",
            "ecosystem": "go",
            "cvss_score": null,
            "advisory_ids": [
              "GO-2026-5970"
            ],
            "fixed_version": "0.39.0",
            "advisory_count": 1,
            "oldest_advisory_days": 17
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "low": 1,
          "high": 4,
          "unknown": 3,
          "critical": 5,
          "moderate": 2
        },
        "advisory_count": 80,
        "affected_count": 15,
        "assessed_count": 291,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 38,
        "direct_affected_count": 6
      },
      "ecosystems": [
        "go",
        "pypi"
      ],
      "dependencies": [
        {
          "name": "github.com/juju/charm/v12",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v12.1.1"
        },
        {
          "name": "github.com/juju/cmd/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.2.2"
        },
        {
          "name": "github.com/juju/description/v9",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v9.0.0"
        },
        {
          "name": "github.com/juju/errors",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/juju/gnuflag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/juju/juju",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260325121537-78832a31ad6b"
        },
        {
          "name": "github.com/juju/names/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.0.0"
        },
        {
          "name": "github.com/juju/names/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.0.0"
        },
        {
          "name": "github.com/juju/rpcreflect",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.0"
        },
        {
          "name": "github.com/juju/utils/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.0.5"
        },
        {
          "name": "github.com/juju/version/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.0.1"
        },
        {
          "name": "github.com/juju/zaputil",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20190326175239-ef53049637ac"
        },
        {
          "name": "github.com/antonlindstrom/pgstore",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20220421113606-e3a6e3fed12a"
        },
        {
          "name": "github.com/canonical/go-service",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/canonical/ofga",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.17.1"
        },
        {
          "name": "github.com/canonical/rebac-admin-ui-handlers",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.1"
        },
        {
          "name": "github.com/coreos/go-oidc/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.11.0"
        },
        {
          "name": "github.com/dustinkirkland/golang-petname",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240428194347-eebcea082ee0"
        },
        {
          "name": "github.com/frankban/quicktest",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.6"
        },
        {
          "name": "github.com/gliderlabs/ssh",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.3.8"
        },
        {
          "name": "github.com/go-chi/chi/v5",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.2.3"
        },
        {
          "name": "github.com/go-chi/render",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.2"
        },
        {
          "name": "github.com/go-macaroon-bakery/macaroon-bakery/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "github.com/golang-migrate/migrate/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.17.1"
        },
        {
          "name": "github.com/google/go-cmp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/gorilla/sessions",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.1"
        },
        {
          "name": "github.com/gorilla/websocket",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.4-0.20250319132907-e064f32e3674"
        },
        {
          "name": "github.com/gosuri/uitable",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.4"
        },
        {
          "name": "github.com/hashicorp/vault/api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.13.0"
        },
        {
          "name": "github.com/hashicorp/vault/api/auth/approle",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.0"
        },
        {
          "name": "github.com/itchyny/gojq",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.12.12"
        },
        {
          "name": "github.com/jackc/pgx/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.18.3"
        },
        {
          "name": "github.com/lestrrat-go/jwx/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.1.6"
        },
        {
          "name": "github.com/mattn/go-colorable",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.14"
        },
        {
          "name": "github.com/oklog/ulid/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.1.1"
        },
        {
          "name": "github.com/openfga/go-sdk",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.3"
        },
        {
          "name": "github.com/openfga/language/pkg/go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.0-beta.2.0.20251027165255-0f8f255e5f6c"
        },
        {
          "name": "github.com/prometheus/client_golang",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.23.2"
        },
        {
          "name": "github.com/rogpeppe/fastuuid",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.0"
        },
        {
          "name": "github.com/rs/cors",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "go.uber.org/zap",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.27.1"
        },
        {
          "name": "golang.org/x/oauth2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.0"
        },
        {
          "name": "gopkg.in/errgo.v1",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.1"
        },
        {
          "name": "gopkg.in/httprequest.v1",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.1"
        },
        {
          "name": "gopkg.in/macaroon.v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.1.0"
        },
        {
          "name": "gopkg.in/yaml.v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.4.0"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "gorm.io/driver/postgres",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.9"
        },
        {
          "name": "gorm.io/gorm",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.25.12"
        },
        {
          "name": "sigs.k8s.io/yaml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/canonical/lxd",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20251125210512-b190d213bd11"
        },
        {
          "name": "github.com/juju/clock",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.1"
        },
        {
          "name": "github.com/juju/persistent-cookiejar",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/juju/retry",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.1"
        },
        {
          "name": "github.com/mitchellh/go-linereader",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20190213213312-1b945b3263eb"
        },
        {
          "name": "go.uber.org/mock",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.0"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.50.0"
        },
        {
          "name": "google.golang.org/grpc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.77.0"
        },
        {
          "name": "github.com/google/go-github/v69",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v69.2.0"
        },
        {
          "name": "github.com/juju/description/v10",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v10.0.0"
        },
        {
          "name": "github.com/juju/description/v11",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v11.0.1"
        },
        {
          "name": "github.com/riverqueue/river",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.39.0"
        },
        {
          "name": "github.com/riverqueue/river/riverdriver/riverdatabasesql",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.39.0"
        },
        {
          "name": "github.com/riverqueue/river/rivertype",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.39.0"
        },
        {
          "name": "github.com/ulikunitz/xz",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.5.15"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "github.com/antonlindstrom/pgstore",
            "direct": true,
            "version": "v0.0.0-20220421113606-e3a6e3fed12a",
            "ecosystem": "go"
          },
          {
            "name": "github.com/canonical/go-service",
            "direct": true,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/canonical/lxd",
            "direct": true,
            "version": "v0.0.0-20251125210512-b190d213bd11",
            "ecosystem": "go"
          },
          {
            "name": "github.com/canonical/ofga",
            "direct": true,
            "version": "v0.17.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/canonical/rebac-admin-ui-handlers",
            "direct": true,
            "version": "v0.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/coreos/go-oidc/v3",
            "direct": true,
            "version": "v3.11.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/dustinkirkland/golang-petname",
            "direct": true,
            "version": "v0.0.0-20240428194347-eebcea082ee0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/frankban/quicktest",
            "direct": true,
            "version": "v1.14.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gliderlabs/ssh",
            "direct": true,
            "version": "v0.3.8",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-chi/chi/v5",
            "direct": true,
            "version": "v5.2.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-chi/render",
            "direct": true,
            "version": "v1.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-macaroon-bakery/macaroon-bakery/v3",
            "direct": true,
            "version": "v3.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang-migrate/migrate/v4",
            "direct": true,
            "version": "v4.17.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/go-cmp",
            "direct": true,
            "version": "v0.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/go-github/v69",
            "direct": true,
            "version": "v69.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/uuid",
            "direct": true,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gorilla/sessions",
            "direct": true,
            "version": "v1.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gorilla/websocket",
            "direct": true,
            "version": "v1.5.4-0.20250319132907-e064f32e3674",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gosuri/uitable",
            "direct": true,
            "version": "v0.0.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/vault/api",
            "direct": true,
            "version": "v1.13.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/vault/api/auth/approle",
            "direct": true,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/itchyny/gojq",
            "direct": true,
            "version": "v0.12.12",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgx/v4",
            "direct": true,
            "version": "v4.18.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/charm/v12",
            "direct": true,
            "version": "v12.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/clock",
            "direct": true,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/cmd/v3",
            "direct": true,
            "version": "v3.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/description/v10",
            "direct": true,
            "version": "v10.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/description/v11",
            "direct": true,
            "version": "v11.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/description/v9",
            "direct": true,
            "version": "v9.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/errors",
            "direct": true,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/gnuflag",
            "direct": true,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/juju",
            "direct": true,
            "version": "v0.0.0-20260325121537-78832a31ad6b",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/names/v4",
            "direct": true,
            "version": "v4.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/names/v5",
            "direct": true,
            "version": "v5.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/persistent-cookiejar",
            "direct": true,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/retry",
            "direct": true,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/rpcreflect",
            "direct": true,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/utils/v4",
            "direct": true,
            "version": "v4.0.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/version/v2",
            "direct": true,
            "version": "v2.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/zaputil",
            "direct": true,
            "version": "v0.0.0-20190326175239-ef53049637ac",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat-go/jwx/v2",
            "direct": true,
            "version": "v2.1.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-colorable",
            "direct": true,
            "version": "v0.1.14",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/go-linereader",
            "direct": true,
            "version": "v0.0.0-20190213213312-1b945b3263eb",
            "ecosystem": "go"
          },
          {
            "name": "github.com/oklog/ulid/v2",
            "direct": true,
            "version": "v2.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/openfga/go-sdk",
            "direct": true,
            "version": "v0.7.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/openfga/language/pkg/go",
            "direct": true,
            "version": "v0.2.0-beta.2.0.20251027165255-0f8f255e5f6c",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/client_golang",
            "direct": true,
            "version": "v1.23.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/riverqueue/river",
            "direct": true,
            "version": "v0.39.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/riverqueue/river/riverdriver/riverdatabasesql",
            "direct": true,
            "version": "v0.39.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/riverqueue/river/rivertype",
            "direct": true,
            "version": "v0.39.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rogpeppe/fastuuid",
            "direct": true,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rs/cors",
            "direct": true,
            "version": "v1.11.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/stretchr/testify",
            "direct": true,
            "version": "v1.11.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/ulikunitz/xz",
            "direct": true,
            "version": "v0.5.15",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/mock",
            "direct": true,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/zap",
            "direct": true,
            "version": "v1.27.1",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/crypto",
            "direct": true,
            "version": "v0.50.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/oauth2",
            "direct": true,
            "version": "v0.36.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/sync",
            "direct": true,
            "version": "v0.20.0",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/grpc",
            "direct": true,
            "version": "v1.77.0",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/errgo.v1",
            "direct": true,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/httprequest.v1",
            "direct": true,
            "version": "v1.2.1",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/macaroon.v2",
            "direct": true,
            "version": "v2.1.0",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/yaml.v3",
            "direct": true,
            "version": "v3.0.1",
            "ecosystem": "go"
          },
          {
            "name": "gorm.io/driver/postgres",
            "direct": true,
            "version": "v1.5.9",
            "ecosystem": "go"
          },
          {
            "name": "gorm.io/gorm",
            "direct": true,
            "version": "v1.25.12",
            "ecosystem": "go"
          },
          {
            "name": "sigs.k8s.io/yaml",
            "direct": true,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/adrg/xdg",
            "direct": false,
            "version": "v0.3.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/ajg/form",
            "direct": false,
            "version": "v1.5.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/anmitsu/go-shlex",
            "direct": false,
            "version": "v0.0.0-20200514113438-38f4b401e2be",
            "ecosystem": "go"
          },
          {
            "name": "github.com/antlr4-go/antlr/v4",
            "direct": false,
            "version": "v4.13.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/apapsch/go-jsonmerge/v2",
            "direct": false,
            "version": "v2.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2",
            "direct": false,
            "version": "v1.36.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/config",
            "direct": false,
            "version": "v1.29.9",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/credentials",
            "direct": false,
            "version": "v1.17.62",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/feature/ec2/imds",
            "direct": false,
            "version": "v1.16.30",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/internal/configsources",
            "direct": false,
            "version": "v1.3.34",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/internal/endpoints/v2",
            "direct": false,
            "version": "v2.6.34",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/internal/ini",
            "direct": false,
            "version": "v1.8.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/ecr",
            "direct": false,
            "version": "v1.43.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding",
            "direct": false,
            "version": "v1.12.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/internal/presigned-url",
            "direct": false,
            "version": "v1.12.15",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/sso",
            "direct": false,
            "version": "v1.25.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/ssooidc",
            "direct": false,
            "version": "v1.29.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/aws-sdk-go-v2/service/sts",
            "direct": false,
            "version": "v1.33.17",
            "ecosystem": "go"
          },
          {
            "name": "github.com/aws/smithy-go",
            "direct": false,
            "version": "v1.22.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/azure/go-ansiterm",
            "direct": false,
            "version": "v0.0.0-20230124172434-306776ec8161",
            "ecosystem": "go"
          },
          {
            "name": "github.com/beorn7/perks",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cenkalti/backoff/v3",
            "direct": false,
            "version": "v3.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/cespare/xxhash/v2",
            "direct": false,
            "version": "v2.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/clipperhouse/stringish",
            "direct": false,
            "version": "v0.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/clipperhouse/uax29/v2",
            "direct": false,
            "version": "v2.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/coreos/go-systemd/v22",
            "direct": false,
            "version": "v22.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/creack/pty",
            "direct": false,
            "version": "v1.1.24",
            "ecosystem": "go"
          },
          {
            "name": "github.com/davecgh/go-spew",
            "direct": false,
            "version": "v1.1.2-0.20180830191138-d8f796af33cc",
            "ecosystem": "go"
          },
          {
            "name": "github.com/decred/dcrd/dcrec/secp256k1/v4",
            "direct": false,
            "version": "v4.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/distribution/reference",
            "direct": false,
            "version": "v0.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/docker/distribution",
            "direct": false,
            "version": "v2.8.3+incompatible",
            "ecosystem": "go"
          },
          {
            "name": "github.com/dustin/go-humanize",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/emicklei/go-restful/v3",
            "direct": false,
            "version": "v3.12.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/envoyproxy/protoc-gen-validate",
            "direct": false,
            "version": "v1.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fatih/color",
            "direct": false,
            "version": "v1.16.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fsnotify/fsnotify",
            "direct": false,
            "version": "v1.9.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/fxamacker/cbor/v2",
            "direct": false,
            "version": "v2.9.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gabriel-vasile/mimetype",
            "direct": false,
            "version": "v1.4.12",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gdamore/encoding",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gdamore/tcell/v2",
            "direct": false,
            "version": "v2.5.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/getkin/kin-openapi",
            "direct": false,
            "version": "v0.131.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-jose/go-jose/v4",
            "direct": false,
            "version": "v4.1.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-logr/logr",
            "direct": false,
            "version": "v1.4.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-logr/stdr",
            "direct": false,
            "version": "v1.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-macaroon-bakery/macaroonpb",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-openapi/jsonpointer",
            "direct": false,
            "version": "v0.21.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-openapi/jsonreference",
            "direct": false,
            "version": "v0.20.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-openapi/swag",
            "direct": false,
            "version": "v0.23.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-playground/locales",
            "direct": false,
            "version": "v0.14.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-playground/universal-translator",
            "direct": false,
            "version": "v0.18.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-playground/validator/v10",
            "direct": false,
            "version": "v10.30.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/go-viper/mapstructure/v2",
            "direct": false,
            "version": "v2.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gobwas/glob",
            "direct": false,
            "version": "v0.2.4-0.20181002190808-e7a84e9525fe",
            "ecosystem": "go"
          },
          {
            "name": "github.com/goccy/go-json",
            "direct": false,
            "version": "v0.10.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/godbus/dbus/v5",
            "direct": false,
            "version": "v5.0.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gogo/protobuf",
            "direct": false,
            "version": "v1.3.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang/mock",
            "direct": false,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/golang/protobuf",
            "direct": false,
            "version": "v1.5.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/gnostic-models",
            "direct": false,
            "version": "v0.7.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/google/go-querystring",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/gorilla/securecookie",
            "direct": false,
            "version": "v1.1.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/grpc-ecosystem/grpc-gateway/v2",
            "direct": false,
            "version": "v2.27.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/errwrap",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-cleanhttp",
            "direct": false,
            "version": "v0.5.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-multierror",
            "direct": false,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-retryablehttp",
            "direct": false,
            "version": "v0.7.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-rootcerts",
            "direct": false,
            "version": "v1.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-secure-stdlib/parseutil",
            "direct": false,
            "version": "v0.1.8",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-secure-stdlib/strutil",
            "direct": false,
            "version": "v0.1.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/go-sockaddr",
            "direct": false,
            "version": "v1.0.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/hashicorp/hcl",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/itchyny/timefmt-go",
            "direct": false,
            "version": "v0.1.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/chunkreader/v2",
            "direct": false,
            "version": "v2.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgconn",
            "direct": false,
            "version": "v1.14.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgio",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgpassfile",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgproto3/v2",
            "direct": false,
            "version": "v2.3.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgservicefile",
            "direct": false,
            "version": "v0.0.0-20240606120523-5a60cdf6a761",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgtype",
            "direct": false,
            "version": "v1.14.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/pgx/v5",
            "direct": false,
            "version": "v5.9.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jackc/puddle/v2",
            "direct": false,
            "version": "v2.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jinzhu/inflection",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/jinzhu/now",
            "direct": false,
            "version": "v1.1.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/josharian/intern",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/json-iterator/go",
            "direct": false,
            "version": "v1.1.12",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/ansiterm",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/blobstore/v3",
            "direct": false,
            "version": "v3.2.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/collections",
            "direct": false,
            "version": "v1.0.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/featureflag",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/go4",
            "direct": false,
            "version": "v0.0.0-20160222163258-40d72ab9641a",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/gojsonpointer",
            "direct": false,
            "version": "v0.0.0-20150204194629-afe8b77aa08f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/gojsonreference",
            "direct": false,
            "version": "v0.0.0-20150204194633-f0d24ac5ee33",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/gojsonschema",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/http/v2",
            "direct": false,
            "version": "v2.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/idmclient/v2",
            "direct": false,
            "version": "v2.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/jsonschema",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/loggo",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/loggo/v2",
            "direct": false,
            "version": "v2.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/lru",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/lumberjack/v2",
            "direct": false,
            "version": "v2.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/mgo/v3",
            "direct": false,
            "version": "v3.0.9",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/mutex/v2",
            "direct": false,
            "version": "v2.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/os/v2",
            "direct": false,
            "version": "v2.2.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/packaging/v4",
            "direct": false,
            "version": "v4.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/proxy",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/pubsub/v2",
            "direct": false,
            "version": "v2.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/replicaset/v3",
            "direct": false,
            "version": "v3.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/rfc/v2",
            "direct": false,
            "version": "v2.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/romulus",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/schema",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/testing",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/txn/v3",
            "direct": false,
            "version": "v3.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/usso",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/utils/v3",
            "direct": false,
            "version": "v3.2.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/viddy",
            "direct": false,
            "version": "v0.0.0-beta5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/webbrowser",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/juju/worker/v3",
            "direct": false,
            "version": "v3.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/julienschmidt/httprouter",
            "direct": false,
            "version": "v1.3.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/kr/pretty",
            "direct": false,
            "version": "v0.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/kr/text",
            "direct": false,
            "version": "v0.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/leodido/go-urn",
            "direct": false,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat-go/blackmagic",
            "direct": false,
            "version": "v1.0.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat-go/httpcc",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat-go/httprc",
            "direct": false,
            "version": "v1.0.6",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat-go/iter",
            "direct": false,
            "version": "v1.0.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat-go/option",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat/go-jspointer",
            "direct": false,
            "version": "v0.0.0-20160229021354-f4881e611bdb",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat/go-jsref",
            "direct": false,
            "version": "v0.0.0-20160601013240-e452c7b5801d",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat/go-jsschema",
            "direct": false,
            "version": "v0.0.0-20160903131957-b09d7650b822",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat/go-jsval",
            "direct": false,
            "version": "v0.0.0-20161012045717-b1258a10419f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat/go-pdebug",
            "direct": false,
            "version": "v0.0.0-20160817063333-2e6eaaa5717f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lestrrat/go-structinfo",
            "direct": false,
            "version": "v0.0.0-20160308131105-f74c056fe41f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lib/pq",
            "direct": false,
            "version": "v1.12.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lucasb-eyer/go-colorful",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/lunixbochs/vtclean",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mailru/easyjson",
            "direct": false,
            "version": "v0.7.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-isatty",
            "direct": false,
            "version": "v0.0.20",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mattn/go-runewidth",
            "direct": false,
            "version": "v0.0.19",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/go-homedir",
            "direct": false,
            "version": "v1.1.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mitchellh/mapstructure",
            "direct": false,
            "version": "v1.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/spdystream",
            "direct": false,
            "version": "v0.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/sys/mountinfo",
            "direct": false,
            "version": "v0.7.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/moby/term",
            "direct": false,
            "version": "v0.5.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/modern-go/concurrent",
            "direct": false,
            "version": "v0.0.0-20180306012644-bacd9c7ef1dd",
            "ecosystem": "go"
          },
          {
            "name": "github.com/modern-go/reflect2",
            "direct": false,
            "version": "v1.0.3-0.20250322232337-35a7c28c31ee",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mohae/deepcopy",
            "direct": false,
            "version": "v0.0.0-20170929034955-c48cc78d4826",
            "ecosystem": "go"
          },
          {
            "name": "github.com/munnerz/goautoneg",
            "direct": false,
            "version": "v0.0.0-20191010083416-a7dc8b61c822",
            "ecosystem": "go"
          },
          {
            "name": "github.com/mxk/go-flowrate",
            "direct": false,
            "version": "v0.0.0-20140419014527-cca7078d478f",
            "ecosystem": "go"
          },
          {
            "name": "github.com/oapi-codegen/runtime",
            "direct": false,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/oasdiff/yaml",
            "direct": false,
            "version": "v0.0.0-20250309154309-f31be36b4037",
            "ecosystem": "go"
          },
          {
            "name": "github.com/oasdiff/yaml3",
            "direct": false,
            "version": "v0.0.0-20250309153720-d2182401db90",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opencontainers/go-digest",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/opencontainers/image-spec",
            "direct": false,
            "version": "v1.1.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/openfga/api/proto",
            "direct": false,
            "version": "v0.0.0-20251105142303-feed3db3d69d",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pelletier/go-toml/v2",
            "direct": false,
            "version": "v2.2.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/perimeterx/marshmallow",
            "direct": false,
            "version": "v1.1.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pkg/errors",
            "direct": false,
            "version": "v0.9.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/pmezard/go-difflib",
            "direct": false,
            "version": "v1.0.1-0.20181226105442-5d4384ee4fb2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/client_model",
            "direct": false,
            "version": "v0.6.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/common",
            "direct": false,
            "version": "v0.67.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/prometheus/procfs",
            "direct": false,
            "version": "v0.19.2",
            "ecosystem": "go"
          },
          {
            "name": "github.com/riverqueue/river/riverdriver",
            "direct": false,
            "version": "v0.39.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/riverqueue/river/rivershared",
            "direct": false,
            "version": "v0.39.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rivo/tview",
            "direct": false,
            "version": "v0.0.0-20220610163003-691f46d6f500",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rivo/uniseg",
            "direct": false,
            "version": "v0.4.7",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rogpeppe/go-internal",
            "direct": false,
            "version": "v1.14.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/rs/xid",
            "direct": false,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/ryanuber/go-glob",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/sagikazarmark/locafero",
            "direct": false,
            "version": "v0.12.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/segmentio/asm",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/sergi/go-diff",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/shopspring/decimal",
            "direct": false,
            "version": "v1.4.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/sirupsen/logrus",
            "direct": false,
            "version": "v1.9.3",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/afero",
            "direct": false,
            "version": "v1.15.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/cast",
            "direct": false,
            "version": "v1.10.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/pflag",
            "direct": false,
            "version": "v1.0.10",
            "ecosystem": "go"
          },
          {
            "name": "github.com/spf13/viper",
            "direct": false,
            "version": "v1.21.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/subosito/gotenv",
            "direct": false,
            "version": "v1.6.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tidwall/gjson",
            "direct": false,
            "version": "v1.19.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tidwall/match",
            "direct": false,
            "version": "v1.2.0",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tidwall/pretty",
            "direct": false,
            "version": "v1.2.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/tidwall/sjson",
            "direct": false,
            "version": "v1.2.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/vishvananda/netlink",
            "direct": false,
            "version": "v1.3.1",
            "ecosystem": "go"
          },
          {
            "name": "github.com/vishvananda/netns",
            "direct": false,
            "version": "v0.0.5",
            "ecosystem": "go"
          },
          {
            "name": "github.com/x448/float16",
            "direct": false,
            "version": "v0.8.4",
            "ecosystem": "go"
          },
          {
            "name": "github.com/xdg-go/stringprep",
            "direct": false,
            "version": "v1.0.4",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/auto/sdk",
            "direct": false,
            "version": "v1.2.1",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel",
            "direct": false,
            "version": "v1.38.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/metric",
            "direct": false,
            "version": "v1.38.0",
            "ecosystem": "go"
          },
          {
            "name": "go.opentelemetry.io/otel/trace",
            "direct": false,
            "version": "v1.38.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/atomic",
            "direct": false,
            "version": "v1.11.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/goleak",
            "direct": false,
            "version": "v1.3.0",
            "ecosystem": "go"
          },
          {
            "name": "go.uber.org/multierr",
            "direct": false,
            "version": "v1.11.0",
            "ecosystem": "go"
          },
          {
            "name": "go.yaml.in/yaml/v2",
            "direct": false,
            "version": "v2.4.3",
            "ecosystem": "go"
          },
          {
            "name": "go.yaml.in/yaml/v3",
            "direct": false,
            "version": "v3.0.4",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/exp",
            "direct": false,
            "version": "v0.0.0-20251113190631-e25ba8c21ef6",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/mod",
            "direct": false,
            "version": "v0.36.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/net",
            "direct": false,
            "version": "v0.53.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/sys",
            "direct": false,
            "version": "v0.43.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/term",
            "direct": false,
            "version": "v0.42.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/text",
            "direct": false,
            "version": "v0.37.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/time",
            "direct": false,
            "version": "v0.15.0",
            "ecosystem": "go"
          },
          {
            "name": "golang.org/x/tools",
            "direct": false,
            "version": "v0.44.0",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto/googleapis/api",
            "direct": false,
            "version": "v0.0.0-20251111163417-95abcf5c77ba",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/genproto/googleapis/rpc",
            "direct": false,
            "version": "v0.0.0-20251111163417-95abcf5c77ba",
            "ecosystem": "go"
          },
          {
            "name": "google.golang.org/protobuf",
            "direct": false,
            "version": "v1.36.10",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/check.v1",
            "direct": false,
            "version": "v1.0.0-20201130134442-10cb98267c6c",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/evanphx/json-patch.v4",
            "direct": false,
            "version": "v4.12.0",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/gobwas/glob.v0",
            "direct": false,
            "version": "v0.2.3",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/inf.v0",
            "direct": false,
            "version": "v0.9.1",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/juju/environschema.v1",
            "direct": false,
            "version": "v1.0.1",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/retry.v1",
            "direct": false,
            "version": "v1.0.3",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/tomb.v1",
            "direct": false,
            "version": "v1.0.0-20141024135613-dd632973f1e7",
            "ecosystem": "go"
          },
          {
            "name": "gopkg.in/tomb.v2",
            "direct": false,
            "version": "v2.0.0-20161208151619-d5d1b5820637",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/api",
            "direct": false,
            "version": "v0.34.2",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/apiextensions-apiserver",
            "direct": false,
            "version": "v0.34.2",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/apimachinery",
            "direct": false,
            "version": "v0.34.2",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/client-go",
            "direct": false,
            "version": "v0.34.2",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/klog/v2",
            "direct": false,
            "version": "v2.130.1",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/kube-openapi",
            "direct": false,
            "version": "v0.0.0-20250710124328-f3f2b991d03b",
            "ecosystem": "go"
          },
          {
            "name": "k8s.io/utils",
            "direct": false,
            "version": "v0.0.0-20251002143259-bc988d571ff4",
            "ecosystem": "go"
          },
          {
            "name": "sigs.k8s.io/json",
            "direct": false,
            "version": "v0.0.0-20241014173422-cfa47c3a1cc8",
            "ecosystem": "go"
          },
          {
            "name": "sigs.k8s.io/randfill",
            "direct": false,
            "version": "v1.0.0",
            "ecosystem": "go"
          },
          {
            "name": "sigs.k8s.io/structured-merge-diff/v6",
            "direct": false,
            "version": "v6.3.0",
            "ecosystem": "go"
          },
          {
            "name": "canonical-sphinx",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "charmhelpers",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "cosl",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "coverage",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "flake8",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "hvac",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "jinja2",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "jsonschema",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "markupsafe",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "myst-parser",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "ops",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "packaging",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pydantic",
            "direct": false,
            "version": "1.10.*",
            "ecosystem": "pypi"
          },
          {
            "name": "rst2html",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-autobuild",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-config-options",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-contributor-listing",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-design",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-filtered-toctree",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-last-updated-by-git",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-llm",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-new-tab-link",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-notfound-page",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-related-links",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-reredirects",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-roles",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-sitemap",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-tabs",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-terminal",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-ubuntu-images",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinx-youtube-links",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinxcontrib-jquery",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinxcontrib-lightbox2",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinxcontrib-mermaid",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinxcontrib-svg2pdfconverter",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinxext-opengraph",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sphinxext-rediraffe",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "vale",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 329,
        "direct_count": 67,
        "indirect_count": 262
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 7,
        "merged_prs": 1768,
        "open_issues": 5,
        "closed_ratio": 0.964,
        "closed_issues": 133,
        "closed_unmerged_prs": 158
      },
      "bus_factor": 3,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "mhilton",
          "commits": 701,
          "avatar_url": "https://avatars.githubusercontent.com/u/1136018?v=4"
        },
        {
          "type": "User",
          "login": "alesstimec",
          "commits": 664,
          "avatar_url": "https://avatars.githubusercontent.com/u/5555154?v=4"
        },
        {
          "type": "User",
          "login": "kian99",
          "commits": 583,
          "avatar_url": "https://avatars.githubusercontent.com/u/46668016?v=4"
        },
        {
          "type": "User",
          "login": "jujugui",
          "commits": 313,
          "avatar_url": "https://avatars.githubusercontent.com/u/6012845?v=4"
        },
        {
          "type": "User",
          "login": "SimoneDutto",
          "commits": 165,
          "avatar_url": "https://avatars.githubusercontent.com/u/16577187?v=4"
        },
        {
          "type": "User",
          "login": "ale8k",
          "commits": 155,
          "avatar_url": "https://avatars.githubusercontent.com/u/42068202?v=4"
        },
        {
          "type": "User",
          "login": "rogpeppe",
          "commits": 141,
          "avatar_url": "https://avatars.githubusercontent.com/u/66491?v=4"
        },
        {
          "type": "User",
          "login": "pkulik0",
          "commits": 72,
          "avatar_url": "https://avatars.githubusercontent.com/u/70904851?v=4"
        },
        {
          "type": "User",
          "login": "babakks",
          "commits": 69,
          "avatar_url": "https://avatars.githubusercontent.com/u/36728931?v=4"
        },
        {
          "type": "User",
          "login": "fabricematrat",
          "commits": 29,
          "avatar_url": "https://avatars.githubusercontent.com/u/1395842?v=4"
        }
      ],
      "contributors_sampled": 21,
      "top_contributor_share": 0.234
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "automatic-doc-checks.yaml",
        "cache.yaml",
        "check-signed-commits.yaml",
        "ci.yaml",
        "dashboard-tests.yaml",
        "e2e-test.yaml",
        "golangci-lint.yaml",
        "integration-test.yaml",
        "release-binaries.yaml",
        "release-server-rock.yaml",
        "release-snaps.yaml",
        "release.yaml",
        "security-scan-weekly.yaml",
        "snap-release.yaml",
        "tiobe-scan.yaml",
        "update-sdk.yaml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".flake8",
        ".golangci.yaml",
        "tox.ini"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": true
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 10,
            "reason": "all changesets reviewed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 20 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 1,
            "reason": "dependency not pinned by hash detected -- score normalized to 1",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "57 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "5939d5251c3d3bdf94f59a97273176eddb5faf31",
        "ran_at": "2026-08-01T07:05:01Z",
        "aggregate_score": 5.2,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-30T10:42:09Z",
      "oldest_open_prs": [
        {
          "number": 1811,
          "created_at": "2026-01-16T14:21:46Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1914,
          "created_at": "2026-03-23T15:12:22Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1997,
          "created_at": "2026-05-29T10:27:15Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 2030,
          "created_at": "2026-06-18T09:55:51Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 2052,
          "created_at": "2026-07-07T10:41:58Z",
          "last_comment_at": "2026-07-30T09:34:54Z",
          "last_comment_author": "luci1900"
        },
        {
          "number": 2065,
          "created_at": "2026-07-16T13:42:55Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 2066,
          "created_at": "2026-07-17T09:20:00Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-07-30T10:40:48Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 1358,
          "created_at": "2024-09-10T03:07:16Z",
          "last_comment_at": "2024-12-16T09:57:58Z",
          "last_comment_author": "ale8k"
        },
        {
          "number": 1756,
          "created_at": "2025-12-04T05:32:14Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1930,
          "created_at": "2026-04-01T13:47:15Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 2055,
          "created_at": "2026-07-07T16:58:04Z",
          "last_comment_at": "2026-07-13T14:43:59Z",
          "last_comment_author": "ale8k"
        },
        {
          "number": 2072,
          "created_at": "2026-07-30T15:04:53Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/canonical/jimm",
    "host": "github.com",
    "name": "jimm",
    "owner": "canonical"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "excellent",
      "name": "Overall health",
      "note": "The weighted overall 75 is calibrated to 89 on the published index scale (record calibration 2026-08-02).",
      "notes": [
        {
          "code": "overall_calibration",
          "params": {
            "raw": 75,
            "calibrated": 89,
            "calibration": "2026-08-02"
          }
        }
      ],
      "value": 89,
      "inputs": {
        "security": 47,
        "vitality": 94,
        "community": 50,
        "governance": 87,
        "calibration": "2026-08-02",
        "engineering": 86,
        "ai_readiness": 66,
        "weighted_overall_raw": 75
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "exceptional",
        "name": "Vitality",
        "value": 94,
        "weight": 0.21,
        "metrics": [
          {
            "key": "development_activity",
            "band": "exceptional",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 97,
            "inputs": {
              "commits_last_year": 385,
              "human_commit_share": 1,
              "days_since_last_push": 1,
              "active_weeks_last_year": 48
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 1 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 1
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "48/52 weeks with commits",
                "points": 33.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 48
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "385 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 385
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 75,
              "latest_release_tag": "v3.4.3",
              "releases_from_tags": false,
              "days_since_latest_release": 15,
              "mean_days_between_releases": 9.4
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "75 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 75
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 15 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 15
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~9.4 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 9.4
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "exceptional",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 3,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 3 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 3
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 50,
        "weight": 0.17,
        "metrics": [
          {
            "key": "popularity",
            "band": "at_risk",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 32,
            "inputs": {
              "forks": 13,
              "stars": 15,
              "watchers": 7,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "15 stars",
                "points": 18.6,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 15
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "13 forks",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 13
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "7 watchers",
                "points": 4.3,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 7
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "good",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 71,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "readme_badges": null,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "readme_badge_services": [],
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "excellent",
        "name": "Sustainability & Governance",
        "value": 87,
        "weight": 0.23,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "good",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "bus_factor": 3,
              "contributors_sampled": 21,
              "top_contributor_share": 0.234
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "3 contributor(s) cover half of all commits",
                "points": 36,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 23% of commits",
                "points": 17.2,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 23
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "21 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 21
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 20 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "exceptional",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Newcomer PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "newcomer_pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 95,
            "inputs": {
              "merged_prs": 1768,
              "open_issues": 5,
              "closed_issues": 133,
              "prs_merged_7d": null,
              "prs_decided_7d": null,
              "prs_merged_30d": null,
              "prs_decided_30d": null,
              "issue_closed_ratio": 0.964,
              "closed_unmerged_prs": 158,
              "first_time_authors_30d": null,
              "first_time_prs_merged_30d": null,
              "first_time_prs_decided_30d": null
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "96% of issues closed",
                "points": 40.5,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 96
                    }
                  }
                ],
                "max_points": 42
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "1768/1926 decided PRs merged",
                "points": 27.5,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 1768,
                      "decided": 1926
                    }
                  }
                ],
                "max_points": 30
              },
              {
                "key": "newcomer_pr_acceptance",
                "name": "Newcomer PR acceptance",
                "detail": "no first-time contributor's PR decided in 30d",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_newcomer_prs",
                    "params": {
                      "days": 30
                    }
                  }
                ],
                "max_points": 13
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "all changesets reviewed",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "excellent",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 80,
            "inputs": {
              "followers": 3894,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "canonical",
              "public_repos": 2386,
              "account_age_days": 2570
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "3,894 followers of canonical",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 3894,
                      "login": "canonical"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "2386 public repos, account ~7 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 2386
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 7
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "exceptional",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/canonical/jimm/v3"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 15
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 15 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 15
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "68 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 68
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 86,
        "weight": 0.19,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "exceptional",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 94,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": true
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "16 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 16
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".flake8, .golangci.yaml, tox.ini",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".flake8, .golangci.yaml, tox.ini"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 9.6,
                "status": "met",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "good",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "weak",
        "name": "Security",
        "value": 47,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 51,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 5.2
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "all changesets reviewed",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 20 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 0.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "57 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "at_risk",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 291 resolved dependencies against OSV; 38 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 291
                }
              },
              {
                "code": "advisories_unassessed",
                "params": {
                  "count": 38
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 33,
            "inputs": {
              "source": "osv",
              "advisories": 80,
              "affected_packages": 15,
              "assessed_packages": 291,
              "unassessed_packages": 38,
              "affected_by_severity": "critical 5, high 4, moderate 2, low 1, unknown 3",
              "direct_affected_packages": 6
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "6 affected: github.com/canonical/lxd v0.0.0-20251125210512-b190d213bd11 (critical 9.1), github.com/juju/juju v0.0.0-20260325121537-78832a31ad6b (critical 10.0), golang.org/x/crypto v0.50.0 (critical 10.0), +3 more",
                "points": 3.7,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_affected",
                    "params": {
                      "count": 6,
                      "packages": "github.com/canonical/lxd v0.0.0-20251125210512-b190d213bd11 (critical 9.1), github.com/juju/juju v0.0.0-20260325121537-78832a31ad6b (critical 10.0), golang.org/x/crypto v0.50.0 (critical 10.0)"
                    }
                  },
                  {
                    "code": "advisories_affected_more",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "5 advisory-carrying package(s) unaddressed past 90 days; oldest published 725 days ago",
                "points": 21.1,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_stale",
                    "params": {
                      "days": 90,
                      "count": 5,
                      "oldest": 725
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "exceptional",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 291,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "exceptional",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "commit_weight_rule": {
                "min_commits": 50,
                "min_commit_share": 0.1
              },
              "review_only_matches": 0,
              "below_threshold_exposures": [],
              "assessed_self_published_locations": 12
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 66,
        "weight": 0.04,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "weak",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.85,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "85 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 85,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 73,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "docs/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, docs/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, docs/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".flake8, .golangci.yaml, tox.ini",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".flake8, .golangci.yaml, tox.ini"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 1",
                "points": 1,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "exceptional",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 99,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 111812,
              "source_files_sampled": 555,
              "oversized_source_files": 6
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "6/555 source files over 60KB",
                "points": 54.4,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 555,
                      "oversized": 6
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
      }
    ],
    "classification": {
      "labels": [
        "library"
      ],
      "scores": {
        "library": 6
      },
      "primary": "library",
      "evidence": [
        {
          "tier": "distribution",
          "label": "library",
          "source": "registry:go",
          "weight": 6
        }
      ],
      "artifacts": [],
      "confidence": "medium",
      "host_extension": false,
      "runs_as_process": false,
      "consumed_by_code": true
    },
    "metrics_version": "2.3.1"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
  ],
  "report_type": "repository",
  "generated_at": "2026-08-01T07:05:27.525173Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/c/canonical/jimm.svg",
  "full_name": "canonical/jimm",
  "license_state": "custom",
  "license_spdx": null
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v2.3.1, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsGo.