Public record
Software health reportschema 0.27.0 · metrics 2.3.1 · 2026-07-28 21:10 UTC

conda-incubator / unidep

Single source of truth with requirements for pip and conda

PythonBSD-3-Clause★ 243 stars⑂ 10 forkssince Nov 2023View on GitHub ↗

conda-incubator/unidep holds a health index of 83 out of 100, placing it in the Excellent band. It scores highest on Engineering Quality (95/100) and lowest on Community & Adoption (57/100). It was last updated 31 days ago. A single contributor accounts for most of its recent work.

83
overall / 100
Excellent

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean, calibrated against the distribution of the public record so bands carry percentile meaning; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At Risk ceiling of 34.

83
Exceptional93-100The record's top tier (≈ top 5%); essentially all checked criteria met
Excellent80-92Strong across the board; minor gaps
Good65-79Healthy; gaps are limited and manageable
Moderate50-64Acceptable with notable gaps; review recommended
Weak35-49Material weaknesses across several areas
At Risk20-34Significant weaknesses; adoption warrants caution
Critical1-19Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

The weighted overall 70 is calibrated to 83 on the published index scale (record calibration 2026-08-02).

Ownership

conda-incubatorOrganization
75 followers80 public repossince Jul 2020

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
PyPIunidep3.4.267,8288533 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

74Good · 21% of overall
How it's scored
18/36Push recency — last push 31 days ago
11.1/36Commit cadence — 16/52 weeks with commits
17/18Commit volume — 78 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year78
human_commit_share0.67
days_since_last_push31
active_weeks_last_year16

Release discipline

100Exceptional
How it's scored
27/27Ships releases — 98 releases published
36/36Release recency — latest release 33 days ago
27/27Release cadence — a release every ~5.5 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count98
latest_release_tagv3.4.2
releases_from_tagsno
days_since_latest_release33
mean_days_between_releases5.5
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

57Moderate · 17% of overall
How it's scored
38.7/60Stars — 243 stars
8/25Forks — 10 forks
2.7/15Watchers — 4 watchers
Inputs used
forks10
stars243
watchers4
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (BSD-3-Clause)
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
readme_badges
has_contributingno
has_issue_templateno
has_code_of_conductno
readme_badge_services
has_pull_request_templateno
How it's scored
64.4/80Monthly downloads — 67,828 downloads/month across pypi
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesunidep
dependents
ecosystemspypi
total_downloads
monthly_downloads67,828
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

61Moderate · 23% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0.1/22.5Commit distribution — top contributor authored 100% of commits
5.4/13.5Contributor breadth — 4 contributors
10/10OpenSSF Scorecard: Contributors — project has 3 contributing companies or organizations -- score normalized to 10
Inputs used
bus_factor1
contributors_sampled4
top_contributor_share0.995
How it's scored
27.8/42Issue resolution — 66% of issues closed
29.2/30PR acceptance — 230/236 decided PRs merged
0/13Newcomer PR acceptance — no first-time contributor's PR decided in 30d
0/15OpenSSF Scorecard: Code-Review — Found 0/28 approved changesets -- score normalized to 0
Inputs used
merged_prs230
open_issues20
closed_issues39
prs_merged_7d
prs_decided_7d
prs_merged_30d
prs_decided_30d
issue_closed_ratio0.661
closed_unmerged_prs6
first_time_authors_30d
first_time_prs_merged_30d
first_time_prs_decided_30d
Excluded from scoring (no data or not applicable): newcomer_pr_acceptance. Remaining weights renormalized.
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
13.5/25Owner reach — 75 followers of conda-incubator
25/25Track record — 80 public repos, account ~6 yr old
Inputs used
followers75
owner_typeOrganization
is_verified
owner_loginconda-incubator
public_repos80
account_age_days2,198

Package maintenance

100Exceptional
How it's scored
25/25Published & resolvable — 1 package(s) on pypi
35/35Publish recency — latest publish 33 days ago
20/20Version history — 85 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesunidep
ecosystemspypi
any_deprecatedno
min_days_since_publish33

Engineering Quality

Are baseline engineering and documentation practices in place?

95Exceptional · 19% of overall
How it's scored
24/24CI workflows — 6 workflow(s)
24/24Tests present
16/16Linter config
9.6/9.6Pre-commit hooks
0/6.4.editorconfig
18/20OpenSSF Scorecard: CI-Tests — 16 out of 17 merged PRs checked by a CI test -- score normalized to 9
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configyes

Documentation

100Exceptional
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://unidep.readthedocs.io
10/10Repository description
10/10Topics — 6 topics
10/10Wiki
Inputs used
topicsconda, conda-environment, conda-lock, pip, pip-compile, setuptools
has_wikiyes
homepagehttps://unidep.readthedocs.io
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

63Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
2.2/2.5CI-Tests — 16 out of 17 merged PRs checked by a CI test -- score normalized to 9
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/28 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 3 contributing companies or organizations -- score normalized to 10
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate5.4
Excluded from scoring (no data or not applicable): signed_releases. Remaining weights renormalized.

Dependency advisories

100Exceptional
How it's scored
35/35Direct dependencies free of known advisories — no direct dependency carries a known advisory
25/25Indirect dependencies free of known advisories — no indirect dependency carries a known advisory
0/40No advisories left outstanding — no advisory carries a publication date
Inputs used
sourceosv
advisories0
affected_packages0
assessed_packages2
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the pypi:unidep@3.4.2 runtime dependency closure — what installing the published package pulls in — 2 packages. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight (4%): agent tooling is a real maintenance signal, but a repository with none can still reach 100/100.

58Moderate · 4% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
39.8/40Legible commit history — 50 of 67 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.746
agent_instruction_files
agent_instruction_max_bytes
How it's scored
18/18One-command bootstrap — docs/Makefile
22/22Automated tests
11/11Lint / format config
11/11Static type checking — unidep/py.typed
0/10Reproducible environment
0/10Demonstrated agent practice — no agent-authored commits among the last 100
8/8Automated maintenance — 12 of the last 100 commits are automated dependency updates
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileno
typed_languageno
bootstrap_filesdocs/Makefile
has_devcontainerno
has_linter_configyes
typecheck_configsunidep/py.typed
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0.12
How it's scored
27/45Type-checkable code — Python with type-check config (unidep/py.typed)
51.1/55Manageable file sizes — 4/57 source files over 60KB
Inputs used
primary_languagePython
largest_source_bytes96,653
source_files_sampled57
oversized_source_files4
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — example
Inputs used
example_dirsexample
has_mcp_signalno
api_schema_files

Key facts

243GitHub stars
4contributors
78commits, last 12 months
31days since last push
98releases
1bus factor
20open issues
PyPIpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token

More detail

Star and fork history 0 ★ / 10 ⇿
0Stars
10Forks
46Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

02468101022023-122025-022026-04
Major 3Minor 32Patch 10

Each point covers 3 days.

OpenSSF Scorecard 5.4 / 10
5.4aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-28 21:10 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
9CI-Tests16 out of 17 merged PRs checked by a CI test -- score normalized to 9
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/28 approved changesets -- score normalized to 0
10Contributorsproject has 3 contributing companies or organizations -- score normalized to 10
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
n/aSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 3
RegistryPackageVersion constraintManifest
PyPIpackagingpyproject.toml
PyPIruamel.yamlpyproject.toml
PyPItomlipyproject.toml
All dependencies 1

Full resolved dependency set from the GitHub dependency graph: 0 direct and 1 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
PyPIsetuptoolsindirect
Dependency advisories 0

Installing pypi:unidep@3.4.2 pulls in 2 packages, direct and transitive: 0 carry known advisories, of which 0 are direct dependencies.

No known advisories affect the assessed dependencies.

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "conda",
        "conda-environment",
        "conda-lock",
        "pip",
        "pip-compile",
        "setuptools"
      ],
      "is_fork": false,
      "size_kb": 1390,
      "has_wiki": true,
      "homepage": "https://unidep.readthedocs.io",
      "languages": {
        "Shell": 3668,
        "Python": 844270
      },
      "pushed_at": "2026-06-26T22:00:14Z",
      "created_at": "2023-11-16T04:23:01Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-21T17:13:53Z",
      "description": "Single source of truth with requirements for pip and conda",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "BSD-3-Clause",
      "default_branch": "main",
      "license_spdx_raw": "BSD-3-Clause",
      "primary_language": "Python",
      "significant_languages": [
        "Python"
      ]
    },
    "owner": {
      "blog": "https://conda.io",
      "name": "conda-incubator",
      "type": "Organization",
      "login": "conda-incubator",
      "company": null,
      "location": null,
      "followers": 75,
      "avatar_url": "https://avatars.githubusercontent.com/u/68608217?v=4",
      "created_at": "2020-07-21T16:53:20Z",
      "is_verified": null,
      "public_repos": 80,
      "account_age_days": 2198
    },
    "license": {
      "state": "standard",
      "spdx_id": "BSD-3-Clause",
      "raw_spdx": "BSD-3-Clause",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v3.4.2",
          "kind": "patch",
          "published_at": "2026-06-25T19:34:48Z"
        },
        {
          "tag": "v3.4.1",
          "kind": "patch",
          "published_at": "2026-06-24T06:21:00Z"
        },
        {
          "tag": "v3.4.0",
          "kind": "minor",
          "published_at": "2026-06-23T23:23:13Z"
        },
        {
          "tag": "v3.3.4",
          "kind": "patch",
          "published_at": "2026-06-08T17:15:21Z"
        },
        {
          "tag": "v3.3.3",
          "kind": "patch",
          "published_at": "2026-06-08T17:15:08Z"
        },
        {
          "tag": "v3.3.2",
          "kind": "patch",
          "published_at": "2026-05-12T21:17:04Z"
        },
        {
          "tag": "v3.3.1",
          "kind": "patch",
          "published_at": "2026-05-10T17:00:54Z"
        },
        {
          "tag": "v3.3.0",
          "kind": "minor",
          "published_at": "2026-05-10T03:59:15Z"
        },
        {
          "tag": "v3.2.1",
          "kind": "patch",
          "published_at": "2026-05-07T17:50:19Z"
        },
        {
          "tag": "v3.2.0",
          "kind": "minor",
          "published_at": "2026-05-07T17:49:59Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2026-04-23T02:38:23Z"
        },
        {
          "tag": "v3.0.1",
          "kind": "patch",
          "published_at": "2026-04-15T22:40:13Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2026-04-06T19:46:30Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2026-02-24T23:07:23Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2026-02-17T01:03:03Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2025-11-12T02:59:48Z"
        },
        {
          "tag": "v1.1.0b0",
          "kind": "other",
          "published_at": "2025-08-04T22:35:27Z"
        },
        {
          "tag": "v1.0.1",
          "kind": "patch",
          "published_at": "2025-06-16T20:53:39Z"
        },
        {
          "tag": "v1.0.0",
          "kind": "major",
          "published_at": "2025-03-31T18:38:47Z"
        },
        {
          "tag": "v0.69.0",
          "kind": "minor",
          "published_at": "2025-03-11T19:52:36Z"
        },
        {
          "tag": "v0.68.0",
          "kind": "minor",
          "published_at": "2025-02-21T19:45:14Z"
        },
        {
          "tag": "v0.67.3",
          "kind": "patch",
          "published_at": "2025-01-09T22:48:56Z"
        },
        {
          "tag": "v0.67.2",
          "kind": "patch",
          "published_at": "2025-01-09T22:51:39Z"
        },
        {
          "tag": "v0.67.1",
          "kind": "patch",
          "published_at": "2025-01-07T00:42:06Z"
        },
        {
          "tag": "v0.67.0",
          "kind": "minor",
          "published_at": "2025-01-06T19:55:38Z"
        },
        {
          "tag": "v0.66.0",
          "kind": "minor",
          "published_at": "2025-01-05T21:45:34Z"
        },
        {
          "tag": "v0.65.0",
          "kind": "minor",
          "published_at": "2025-01-03T04:52:07Z"
        },
        {
          "tag": "v0.64.0",
          "kind": "minor",
          "published_at": "2024-12-31T06:03:55Z"
        },
        {
          "tag": "v0.63.2",
          "kind": "patch",
          "published_at": "2024-09-18T18:40:04Z"
        },
        {
          "tag": "v0.63.1",
          "kind": "patch",
          "published_at": "2024-08-30T16:41:39Z"
        },
        {
          "tag": "v0.63.0",
          "kind": "minor",
          "published_at": "2024-08-20T04:37:14Z"
        },
        {
          "tag": "v0.62.0",
          "kind": "minor",
          "published_at": "2024-08-19T20:08:55Z"
        },
        {
          "tag": "v0.61.0",
          "kind": "minor",
          "published_at": "2024-08-17T04:55:15Z"
        },
        {
          "tag": "v0.60.0",
          "kind": "minor",
          "published_at": "2024-08-17T01:03:26Z"
        },
        {
          "tag": "v0.59.0",
          "kind": "minor",
          "published_at": "2024-07-03T19:51:47Z"
        },
        {
          "tag": "v0.58.0",
          "kind": "minor",
          "published_at": "2024-06-26T18:22:14Z"
        },
        {
          "tag": "v0.57.0",
          "kind": "minor",
          "published_at": "2024-04-19T14:18:05Z"
        },
        {
          "tag": "v0.56.0",
          "kind": "minor",
          "published_at": "2024-04-04T12:37:06Z"
        },
        {
          "tag": "v0.55.0",
          "kind": "minor",
          "published_at": "2024-02-21T20:35:27Z"
        },
        {
          "tag": "v0.54.1",
          "kind": "patch",
          "published_at": "2024-02-13T05:47:35Z"
        },
        {
          "tag": "v0.54.0",
          "kind": "minor",
          "published_at": "2024-02-13T05:24:10Z"
        },
        {
          "tag": "v0.53.0",
          "kind": "minor",
          "published_at": "2024-02-01T20:43:27Z"
        },
        {
          "tag": "v0.52.0",
          "kind": "minor",
          "published_at": "2024-02-01T19:39:50Z"
        },
        {
          "tag": "v0.51.0",
          "kind": "minor",
          "published_at": "2024-01-31T19:51:12Z"
        },
        {
          "tag": "v0.50.0",
          "kind": "minor",
          "published_at": "2024-01-25T00:54:11Z"
        },
        {
          "tag": "v0.49.1",
          "kind": "patch",
          "published_at": "2024-01-23T07:00:24Z"
        },
        {
          "tag": "v0.49.0",
          "kind": "minor",
          "published_at": "2024-01-23T00:36:13Z"
        },
        {
          "tag": "v0.48.0",
          "kind": "minor",
          "published_at": "2024-01-17T21:17:37Z"
        },
        {
          "tag": "v0.47.1",
          "kind": "patch",
          "published_at": "2024-01-16T21:30:27Z"
        },
        {
          "tag": "v0.47.0",
          "kind": "minor",
          "published_at": "2024-01-16T19:32:27Z"
        },
        {
          "tag": "v0.46.0",
          "kind": "minor",
          "published_at": "2024-01-12T20:14:07Z"
        },
        {
          "tag": "v0.45.0",
          "kind": "minor",
          "published_at": "2023-12-31T20:08:48Z"
        },
        {
          "tag": "v0.44.0",
          "kind": "minor",
          "published_at": "2023-12-29T20:31:30Z"
        },
        {
          "tag": "v0.43.0",
          "kind": "minor",
          "published_at": "2023-12-26T23:23:06Z"
        },
        {
          "tag": "v0.42.0",
          "kind": "minor",
          "published_at": "2023-12-25T23:19:22Z"
        },
        {
          "tag": "v0.41.0",
          "kind": "minor",
          "published_at": "2023-12-25T00:14:36Z"
        },
        {
          "tag": "v0.40.0",
          "kind": "minor",
          "published_at": "2023-12-14T23:55:36Z"
        },
        {
          "tag": "v0.39.0",
          "kind": "minor",
          "published_at": "2023-12-14T04:59:52Z"
        },
        {
          "tag": "v0.38.0",
          "kind": "minor",
          "published_at": "2023-12-12T20:32:15Z"
        },
        {
          "tag": "v0.37.0",
          "kind": "minor",
          "published_at": "2023-12-11T18:52:30Z"
        },
        {
          "tag": "v0.36.0",
          "kind": "minor",
          "published_at": "2023-12-11T17:17:11Z"
        },
        {
          "tag": "v0.35.0",
          "kind": "minor",
          "published_at": "2023-12-10T16:54:52Z"
        },
        {
          "tag": "v0.34.0",
          "kind": "minor",
          "published_at": "2023-12-10T07:08:55Z"
        },
        {
          "tag": "v0.33.0",
          "kind": "minor",
          "published_at": "2023-12-09T01:57:46Z"
        },
        {
          "tag": "v0.32.1",
          "kind": "patch",
          "published_at": "2023-12-08T22:53:25Z"
        },
        {
          "tag": "v0.32.0",
          "kind": "minor",
          "published_at": "2023-12-08T22:27:38Z"
        },
        {
          "tag": "v0.31.0",
          "kind": "minor",
          "published_at": "2023-12-07T23:08:42Z"
        },
        {
          "tag": "v0.30.0",
          "kind": "minor",
          "published_at": "2023-12-07T20:14:54Z"
        },
        {
          "tag": "v0.29.0",
          "kind": "minor",
          "published_at": "2023-12-07T03:43:23Z"
        },
        {
          "tag": "v0.28.0",
          "kind": "minor",
          "published_at": "2023-12-06T19:33:52Z"
        },
        {
          "tag": "v0.27.0",
          "kind": "minor",
          "published_at": "2023-12-06T07:51:20Z"
        },
        {
          "tag": "v0.26.0",
          "kind": "minor",
          "published_at": "2023-12-05T20:15:32Z"
        },
        {
          "tag": "v0.25.1",
          "kind": "patch",
          "published_at": "2023-12-04T17:53:39Z"
        },
        {
          "tag": "v0.25.0",
          "kind": "minor",
          "published_at": "2023-12-04T05:39:08Z"
        },
        {
          "tag": "v0.24.0",
          "kind": "minor",
          "published_at": "2023-12-04T02:00:14Z"
        },
        {
          "tag": "v0.23.0",
          "kind": "minor",
          "published_at": "2023-11-30T18:21:17Z"
        },
        {
          "tag": "v0.22.0",
          "kind": "minor",
          "published_at": "2023-11-30T08:00:02Z"
        },
        {
          "tag": "v0.21.0",
          "kind": "minor",
          "published_at": "2023-11-30T03:16:35Z"
        },
        {
          "tag": "v0.20.0",
          "kind": "minor",
          "published_at": "2023-11-30T01:43:03Z"
        },
        {
          "tag": "v0.19.0",
          "kind": "minor",
          "published_at": "2023-11-29T04:28:33Z"
        },
        {
          "tag": "v0.18.0",
          "kind": "minor",
          "published_at": "2023-11-28T20:18:34Z"
        },
        {
          "tag": "v0.17.0",
          "kind": "minor",
          "published_at": "2023-11-26T05:09:49Z"
        },
        {
          "tag": "v0.16.0",
          "kind": "minor",
          "published_at": "2023-11-25T20:09:37Z"
        },
        {
          "tag": "v0.15.0",
          "kind": "minor",
          "published_at": "2023-11-25T00:14:30Z"
        },
        {
          "tag": "v0.14.0",
          "kind": "minor",
          "published_at": "2023-11-25T00:14:03Z"
        },
        {
          "tag": "v0.13.0",
          "kind": "minor",
          "published_at": "2023-11-24T07:41:16Z"
        },
        {
          "tag": "v0.12.0",
          "kind": "minor",
          "published_at": "2023-11-22T19:09:29Z"
        },
        {
          "tag": "v0.11.0",
          "kind": "minor",
          "published_at": "2023-11-22T05:52:06Z"
        },
        {
          "tag": "v0.10.0",
          "kind": "minor",
          "published_at": "2023-11-22T05:12:31Z"
        },
        {
          "tag": "v0.9.0",
          "kind": "minor",
          "published_at": "2023-11-22T00:59:45Z"
        },
        {
          "tag": "v0.8.0",
          "kind": "minor",
          "published_at": "2023-11-22T00:58:32Z"
        },
        {
          "tag": "v0.7.0",
          "kind": "minor",
          "published_at": "2023-11-17T21:16:35Z"
        },
        {
          "tag": "v0.6.0",
          "kind": "minor",
          "published_at": "2023-11-17T20:51:40Z"
        },
        {
          "tag": "v0.5.0",
          "kind": "minor",
          "published_at": "2023-11-17T20:49:36Z"
        },
        {
          "tag": "v0.4.0",
          "kind": "minor",
          "published_at": "2023-11-17T20:35:33Z"
        },
        {
          "tag": "v0.3.1",
          "kind": "patch",
          "published_at": "2023-11-17T20:18:31Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2023-11-17T20:14:39Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2023-11-16T17:41:09Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "80c417c336fc1b76211b2428a09ffe82d575fea2",
          "body": null,
          "is_bot": false,
          "headline": "Fix ruff style for Python 3.9 baseline (#314)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-26T21:00:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0295767a6d3c69949ea994fe4cb3fe2c466db1f",
          "body": null,
          "is_bot": false,
          "headline": "Handle missing rich in CLI output (#312)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-25T19:34:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3091402a3d83a4a56d59bcb5aaee6fd427c7bf23",
          "body": "* feat: support minimum unidep version config\n\n* refactor: use requires_unidep specifier",
          "is_bot": false,
          "headline": "Add requires_unidep version config (#309)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-24T19:17:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89d1bf65b3ec846072e76b95f1aea656381b41d2",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-24T06:21:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "47b8cb7d4c9e50b9d94596d43844f82481693d57",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.4.0 → 3.4.1",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-24T06:20:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1c9705cc9d50f0a0ca3de331942a2bda4876071",
          "body": "* Handle missing pip index env vars gracefully\n\n* Move pip index env handling to CLI commands\n\n* Revert \"Move pip index env handling to CLI commands\"\n\nThis reverts commit 78f3af630e41309ae64919aae329230ad9698da6.",
          "is_bot": false,
          "headline": "Handle missing pip index env vars gracefully (#308)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-24T04:07:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f49da784f1c8184516b33d7226148d98ef86d43",
          "body": null,
          "is_bot": false,
          "headline": "Clarify uv editable local dependency handling (#307)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-24T03:00:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d3cb3f1834b3e19050dac34e04ec24c757eb9355",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-23T23:24:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97c7de04f0ea96b83358e1a6271d152daf021909",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.3.4 → 3.4.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-23T23:22:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "746e16c159f54eb1dbf8937b51f20b8e1e5dabd0",
          "body": "* Fix uv editable local dependency resolution\n\n* Clean up editable local dependency install paths",
          "is_bot": false,
          "headline": "Fix uv editable local dependency resolution (#306)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-23T23:21:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ba5f238617bcfce099ea4a8b8b8fa3271109fb89",
          "body": null,
          "is_bot": false,
          "headline": "Cover README docs fallback paths (#305)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-23T22:44:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef4eae76a64dbb7832bf344c4102a5df9c2eea7c",
          "body": null,
          "is_bot": false,
          "headline": "feat: add rich install output (#302)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-23T22:44:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "93e4145f8d4c74a14a2c1264fc87f6bd5c82b30e",
          "body": "* docs: design rich install output\n\n* Handle private index and local fallback edge cases\n\n* Remove generated design spec from PR\n\n* Avoid leaking expanded pip index secrets\n\n* Redact pip index credentials in printed commands\n\n* Polish private index regression coverage\n\n* Extract pip index helpers\n\n* Clarify skipped lock dependency plumbing\n\n* Mark internal pip index helpers private\n\n* Restore coverage for private index helpers",
          "is_bot": false,
          "headline": "Handle private index and local fallback edge cases (#301)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-23T22:42:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e970729c29fd6378e58cf8b6848dba6e7144477f",
          "body": "* feat: add docs command\n\n* fix: include docs build hook in sdist\n\n* Update files from markdown-code-runner",
          "is_bot": false,
          "headline": "Add unidep docs command (#303)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-23T22:17:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cf4acef86fa29f6c4c7807dccaf5723cb1b320e8",
          "body": null,
          "is_bot": false,
          "headline": "Drop Python 3.8 support (#304)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-23T21:42:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bcbd64faf4980bb942097c79337165b28f0c3138",
          "body": "* ⬆️ Update codecov/codecov-action action to v6\n\n* Update files from markdown-code-runner\n\n---------\n\nCo-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>\nCo-authored-by: Bas Nijholt <bas@nijho.lt>",
          "is_bot": true,
          "headline": "⬆️ Update codecov/codecov-action action to v6 (#281)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-06-10T19:21:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1832ed7d9ddd750235db8b6a70ed66cc9c86769a",
          "body": "* ⬆️ Update mamba-org/setup-micromamba action to v3\n\n* Update files from markdown-code-runner\n\n---------\n\nCo-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>\nCo-authored-by: Bas Nijholt <bas@nijho.lt>",
          "is_bot": true,
          "headline": "⬆️ Update mamba-org/setup-micromamba action to v3 (#282)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-06-10T19:21:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7265069321d666e45dff6788983a38b3b36af937",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-08T17:16:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15d90ce0f8766ab1bf040324328bb8de44fafc39",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.3.3 → 3.3.4",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-08T17:14:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6ae38bb50af6fad0a957483b458ceb04dc81b59d",
          "body": null,
          "is_bot": false,
          "headline": "Fix pixi URL dependency output (#300)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-08T17:14:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "265cb5bc0be45b062afd4f1d5bb3a7b5d12e5e89",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-05T19:41:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8de7caf67a4737f90c715701b6612e529470ade4",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.3.2 → 3.3.3",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-05T19:40:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f33f84401260dbf436f354a1ed16fe7423d45ac9",
          "body": null,
          "is_bot": false,
          "headline": "Fix doctor uv tool runtime warnings (#299)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-06-05T19:02:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "497a8d062003bc6abe5ff8b38b570bbb658c59c4",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-12T21:17:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "531f5aed768e6cbc7754064eb251b55a22e20e67",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.3.1 → 3.3.2",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-12T21:16:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b0959073fe10b94924015183c2e62c93d914231b",
          "body": "* Detect uninitialized local submodules in doctor\n\n* Style doctor recommendation commands in rich\n\n* Fix rich inline command span parsing",
          "is_bot": false,
          "headline": "Detect uninitialized local submodules in doctor (#298)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-12T21:16:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b473ee9264c949d457f5a402b12a955ff28d0688",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-10T17:01:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f9eb925393a0d1f0a21ebecb574be6fa2a70f2b",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.3.0 → 3.3.1",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-10T17:00:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "52a536bcafb1d91f6c13c580e2c4d6dc6a45c3bc",
          "body": "* Add doctor tool version context\n\n* Style doctor tool versions in rich output\n\n* Avoid normal Python shadowing noise in doctor\n\n* Update files from markdown-code-runner\n\n* Suppress expected pip shadowing in doctor\n\n* Make doctor version probe tests portable",
          "is_bot": false,
          "headline": "Add doctor tool version context (#297)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-10T17:00:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9922659e5d3cae91bf67f41467eef7fdd51107be",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-10T03:59:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2eecbb2ad9b2529e4002fc7f66f2ba8887ab82a",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.2.1 → 3.3.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-10T03:58:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b3816cd241eda8e8f48a83e4ef0fa34bfaede84f",
          "body": "* Refine doctor conda root parsing\n\n* Fix doctor conda root false positives\n\n* Handle custom conda doctor roots",
          "is_bot": false,
          "headline": "Refine doctor Conda root parsing (#296)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-10T03:58:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ed525768747a08ecbd7e40798c957c9a1f3befb",
          "body": null,
          "is_bot": false,
          "headline": "Polish pip requirement detection (#291)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-09T23:32:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ecd0f14eeef65f83e5f1756df12580b446dbd23f",
          "body": "* Improve doctor diagnostics\n\n* Update files from markdown-code-runner\n\n* Add doctor interpreter mismatch checks\n\n* Update files from markdown-code-runner\n\n* Fix doctor path mismatch review findings\n\n* Detect stale conda initializer roots\n\n* Update files from markdown-code-runner\n\n* Fix conda prefix containment check\n\n* Parse all conda roots in shell profiles\n\n* Fix doctor CI regressions",
          "is_bot": false,
          "headline": "Improve doctor diagnostics (#295)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-09T23:29:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "947fc8c6ea685a95bd9b69961ac16fa5087ff684",
          "body": null,
          "is_bot": false,
          "headline": "Add read-only doctor command (#294)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-09T22:03:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "19f276cf3de16cf6b8e49d5fd0b250c1a3ba5c56",
          "body": null,
          "is_bot": false,
          "headline": "Fix README logo URL (#293)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-07T20:42:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8d67fcdc2c6210afce25f3f3d217e97399567134",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-07T20:35:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a4fa7f70063481164f3e630fd752a65cc7aaacb",
          "body": "* Update repository URLs\n\n* Update files from markdown-code-runner",
          "is_bot": false,
          "headline": "Update repository URLs (#292)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-07T20:34:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4189af4179fa2ee6c6ef50ac4f0d06e61189edb2",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-07T17:49:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6b2372c88f97dfae1fd6fb1280067de74e96b988",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.2.0 → 3.2.1",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-07T17:49:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e4f54b7b307da1c67a43e2d35c8951ef6e8dc52",
          "body": "* Ensure pip is installed for target env installs\n\n* Update files from markdown-code-runner\n\n* Allow platform-specific micromamba executable in test\n\n* Only add pip when pip installs are needed\n\n* Update files from markdown-code-runner\n\n* Clarify pip requirement detection",
          "is_bot": false,
          "headline": "Ensure pip is installed for target env installs (#290)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-07T16:36:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c918609aadc83abac256f8feab66934c54324e6a",
          "body": "* ⬆️ Update conda-incubator/setup-miniconda action to v4\n\n* Update files from markdown-code-runner\n\n---------\n\nCo-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Update conda-incubator/setup-miniconda action to v4 (#288)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-05-07T16:36:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5741a585ad402ec342bd428c5b6b5cea88b8fd25",
          "body": "* Add new logo to README\n\n* Remove logo background\n\n* Tighten logo canvas\n\n* Increase README logo size\n\n* Remove emojis from README title",
          "is_bot": false,
          "headline": "Add new logo to README (#289)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-05-06T21:56:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef030c208627c6a76b1ebfe013a2c56fd4df1277",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-24T20:14:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "90ee820500d966508fe05ad9e5e98a09e7b25aa7",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.1.0 → 3.2.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-04-24T19:05:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8bd7e419ed3d48bb8e48819c4e1849cdea1645a",
          "body": "* chore: add *.code-workspace to .gitignore\n\n* Add optional dependency selection to unidep merge\n\nSupport including selected optional dependency groups when generating\nenvironment.yaml files from requirements.yaml or pyproject.toml.\n\n- add --optional-dependencies GROUP [GROUP ...]\n- add --all-option\n[…]\nt and update _conda_lock function signature\n\n* Fix merge validation for local-only optional groups\n\n* fix: keep merge command backward compatible\n\n---------\n\nCo-authored-by: Bas Nijholt <bas@nijho.lt>",
          "is_bot": false,
          "headline": "Add optional dependency selection to unidep merge (#285)",
          "author_name": "Taylor James Bell",
          "author_login": "taylorbell57",
          "committed_at": "2026-04-24T19:04:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1a4a2b9cc05d9cdbdf6baad9c0d1b92c5a925641",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-23T02:40:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0b8eb89833defe82bfccf2845e0a9709b28c9ee0",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 3.0.0 → 3.1.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-04-23T02:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "da0243fc1bce2d22ad741c00abd3b2a46735ddb5",
          "body": "* feat: add pip_indices support for custom PyPI repositories (#257)\n\n- Add pip_indices field to ParsedRequirements and CondaEnvironmentSpec\n- Parse pip_indices from both requirements.yaml and pyproject.toml\n- Support environment variable expansion for credentials ( syntax)\n- Map pip_indices to pip_r\n[…]\ny be used\nby conda-lock or other tools, but it's not a formal specification.\n\n* feat: finish pip indices rebase\n\n---------\n\nCo-authored-by: Guen Prawiroatmodjo <4041805+guenp@users.noreply.github.com>",
          "is_bot": false,
          "headline": "feat: add pip_indices support for custom PyPI repositories (#258)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-04-23T02:36:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d1af869b16a9d23709e04bef555f721922672387",
          "body": "* Fix repeated local depenency noise\n\n* test: satisfy pre-commit for PR 286\n\n---------\n\nCo-authored-by: Bas Nijholt <bas@nijho.lt>",
          "is_bot": false,
          "headline": "Deduplicate repeated local install targets in CLI installs (#286)",
          "author_name": "Evelyn King",
          "author_login": "evelyn-king",
          "committed_at": "2026-04-15T22:36:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "def07802c6ad919cef1b19a7ae327adba569bb55",
          "body": "Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Update ad-m/github-push-action action to v1.1.0 (#284)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-04-10T13:20:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "547f169ce3e588e2c104ff0866bee2d99a5a1a15",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-06T19:52:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "87d2b2f5542da7f149ca7efa70f7726c60885f67",
          "body": null,
          "is_bot": false,
          "headline": "release: bump version to 3.0.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-04-06T19:45:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "66d1f75ffcdc7d9b4ab8306f9532b717f53a6bd7",
          "body": "* don't drop deps\n\n* refactor: unify conda and pip dependency selection\n\n* fix: avoid typing_extensions runtime import\n\n* fix selection edge cases\n\n* clean up legacy selection surfaces\n\n* remove legacy conflict scaffolding\n\n* Fix merge platform inference after selection\n\n* Tighten renderer pin diagn\n[…]\nPython 3.8 pytest workflow\n\n* Limit pytest coverage gate to ubuntu 3.11\n\n* Refine dependency selection coverage\n\n---------\n\nCo-authored-by: Guen Prawiroatmodjo <4041805+guenp@users.noreply.github.com>",
          "is_bot": false,
          "headline": "refactor: unify conda and pip dependency selection (#283)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-04-06T19:40:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f164e6cb688692fde55db66382282fabecc1179a",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-02-24T23:01:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa42bc99798779f88cd6cf4127e6820beb1fa07f",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 2.0.1 → 2.1.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-24T22:59:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bbb80311d1c8c6a7fbf18759e40d3cc2894d192f",
          "body": "…on (#260)\n\nThis commit adds first-class `pixi.toml` generation to UniDep via `unidep pixi`, for both single-file and monorepo workflows, with platform-target awareness, editable local packages, and deterministic feature/environment generation.\n\nIt also includes multiple review-loop correctness fixe\n[…]\n.name`.\n\n## Testing\n- Added/updated extensive Pixi coverage in `tests/test_pixi.py`.\n- Local validation performed on this branch:\n  - `pytest -q tests/test_pixi.py --no-cov`\n  - Result: **107 passed**",
          "is_bot": false,
          "headline": "feat(pixi): generate pixi.toml for monorepos with robust reconciliati…",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-24T22:58:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b48c26cd7b700cb6cda8f9840d1281323339fe70",
          "body": "Add `extract_version_operator` and `ALL_VERSION_OPERATORS` to\n`_conflicts.py` to provide a single source of truth for operator\nprefix extraction. Refactor `_parse_pinning` to use the new helper.\n\nCloses #274",
          "is_bot": false,
          "headline": "Unify version operator extraction with shared helper (#275)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-19T08:26:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "25c8df7d80782d18629b2688737a516b5aa8e21e",
          "body": null,
          "is_bot": false,
          "headline": "fix: harden package name resolution fallbacks (#273)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-18T22:41:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "44a06b5f7ee80b7dbb74268f3278689e1f4ea912",
          "body": null,
          "is_bot": false,
          "headline": "test: deduplicate platform helper coverage (#271)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-18T22:41:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e50306071d1b5fa7d6b596547069b1825b1c26fe",
          "body": null,
          "is_bot": false,
          "headline": "test: cover pinned tie branches in reconcile helper (#272)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-18T22:39:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1690c5db1b96b1a999fc739db3430eba1eeae9ae",
          "body": "* Refactor shared local dependency parsing helpers\n\n* Fix duplicate test name in utils tests\n\n* Keep parser refactor focused and preserve wheel warning behavior",
          "is_bot": false,
          "headline": "refactor: deduplicate shared local-dependency parsing logic (#270)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-18T21:52:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec7a88393f4cd666f8dd96551cdc42b6a03c14fe",
          "body": "* ⬆️ Update python to v3.14.2\n\n* Update files from markdown-code-runner\n\n---------\n\nCo-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Update python to v3.14.2 (#264)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-02-18T21:15:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "56a236e208ce325162ff11c6665e10fd21127be0",
          "body": null,
          "is_bot": false,
          "headline": "Extract shared platform resolution helpers (#268)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-18T21:15:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb0b4d2ad223d3dc10af49a6923df87b6bc517b1",
          "body": "* Deduplicate package-name resolution helpers\n\n* Add coverage for shared platform resolution helpers",
          "is_bot": false,
          "headline": "refactor: deduplicate package-name resolution helpers (#267)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-18T21:14:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "500906f4fc752cfa19eeb660bfa8cbef1ff68d05",
          "body": "* Extract shared conda/pip pair reconciliation core\n\n* Add missing-source conflict reconciliation coverage",
          "is_bot": false,
          "headline": "refactor: extract shared conda/pip reconciliation core (#266)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-18T21:14:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "056ed1842243cba6da0b97bfd9137eb84728f672",
          "body": "* Add pre-commit hook for generating environment.yaml\n\nUsers can add this to their .pre-commit-config.yaml to automatically\nregenerate environment.yaml from requirements.yaml using unidep merge.\n\n* Rename hook id to unidep-environment-yaml",
          "is_bot": false,
          "headline": "Add pre-commit hook for generating environment.yaml (#265)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2026-02-11T00:54:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "69e9e31a1e64a0e86bc7e93d4ad13fdffa9ba75a",
          "body": null,
          "is_bot": true,
          "headline": "⬆️ Update python to v3.13.7 (#253)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-01-13T08:26:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1ae19d2e4e1d2aa5107d655333869481df7fd65e",
          "body": null,
          "is_bot": true,
          "headline": "⬆️ Update ad-m/github-push-action action to v1 (#259)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-01-13T08:26:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0071b3942cf88467795e6edc04cf766ba86ba0ff",
          "body": null,
          "is_bot": true,
          "headline": "⬆️ Update actions/checkout action to v6 (#263)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2026-01-13T08:26:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "128981609e9da5cc4c02d0ee8426e4f194719ca1",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2025-11-12T02:18:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c2c8a00d45655523c026da40c796a8fc9c952098",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 1.1.0b0 → 2.0.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-11-12T02:14:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cf5d4578ad350f04206aa28e1f8174cca16a7427",
          "body": null,
          "is_bot": false,
          "headline": "support local dependency use modes (#261)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-11-12T02:07:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec5359b60b32138fc16ddf8e5fa462d09d829f13",
          "body": null,
          "is_bot": false,
          "headline": "Fix Windows file URIs for local deps (#262)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-11-11T22:26:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c430c5bf62f7c47a89a798e1feb5387a8b2e1498",
          "body": "Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Update actions/setup-python action to v6 (#256)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2025-10-30T21:00:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00f1915a4b4842a9dc5423b6e32ce0fe53c3ff96",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2025-08-04T22:35:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "06be4a87fbfd1d84856f8501061b01856c683e15",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 1.0.1 → 1.1.0b0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-08-04T22:34:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4a4cee31bc9da140b2908aa9bd5bc96362f6b72",
          "body": null,
          "is_bot": false,
          "headline": "Add PyPI alternatives for local dependencies in requirements.yaml (#252)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-08-04T22:27:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cddf104b0773f950223d60a8e177c87e1371b08a",
          "body": "- Clarify that UNIDEP_SKIP_LOCAL_DEPS is primarily needed for Hatchling projects\n- Explain that Setuptools automatically filters invalid file:// URLs\n- Add backend-specific behavior section showing the key difference:\n  * Setuptools: Automatic filtering (environment variable not needed)\n  * Hatchling: Includes all dependencies as specified (requires explicit filtering)\n- Provide context that this is a backend difference, not a UniDep limitation",
          "is_bot": false,
          "headline": "Document build backend differences for local dependencies (#251)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-07-24T20:08:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "acf423a3612ec22132c96a0ac8f1625d718b51c3",
          "body": "…le (#250)",
          "is_bot": false,
          "headline": "Enhance UNIDEP_SKIP_LOCAL_DEPS documentation with context and rationa…",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-07-24T19:32:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "336e8eb48131af4ca8f17973603c453b23046062",
          "body": "* Document UNIDEP_SKIP_LOCAL_DEPS environment variable\n\n- Add comprehensive documentation for UNIDEP_SKIP_LOCAL_DEPS in Build System Integration section\n- Include usage examples for hatch build, uv build, and python -m build\n- Explain the purpose: avoiding hardcoded file paths in wheel metadata when\n[…]\nlarify that actual dependencies are still included while local dependency references are skipped\n\n* chore(docs): update TOC\n\n---------\n\nCo-authored-by: basnijholt <basnijholt@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Document UNIDEP_SKIP_LOCAL_DEPS environment variable (#249)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-07-24T19:20:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3af858ce1212bda0682273b939010c432ba82f2b",
          "body": "* Add missing Hatch metadata configuration for direct references\n\n- Add `[tool.hatch.metadata] allow-direct-references = true` to both hatch example projects\n- Update documentation in main README and example READMEs to include the required configuration\n- This is necessary for Hatchling to handle VC\n[…]\nby UniDep\n\n* Add explanatory comments to Hatch configuration sections in README\n\n- Add comment explaining allow-direct-references purpose\n- Add comment explaining the UniDep metadata hook registration",
          "is_bot": false,
          "headline": "Add missing Hatch metadata configuration for direct references (#248)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-07-24T18:37:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e599787248cd14de71401fdc9ad95ce2946e9918",
          "body": "* ⬆️ Update python to v3.13.5\n\n* Update files from markdown-code-runner\n\n---------\n\nCo-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Update python to v3.13.5 (#246)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2025-06-27T21:41:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "adfaf5f76200daba9e9159c9ea69ef9b154ffaa6",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2025-06-16T20:54:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d39941608790149185f230bca8124004ba931173",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 1.0.0 → 1.0.1",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-06-16T20:52:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf0ae644230e91a3f2537af6fcfa1bb15b717428",
          "body": null,
          "is_bot": false,
          "headline": "Fix(windows): Normalize micromamba executable path (#247)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-06-16T20:52:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "78db3687a6e621028b9811d99918a0a8525cee3a",
          "body": "* ⬆️ Update python to v3.13.3\n\n* Update files from markdown-code-runner\n\n---------\n\nCo-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "⬆️ Update python to v3.13.3 (#245)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2025-05-28T19:23:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "10b311fe022bacc56528d80a947d7f4122b86d33",
          "body": "* ⬆️ Pin python to 3.13.2\n\n---------\n\nCo-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>\nCo-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>\nCo-authored-by: Bas Nijholt <bas@nijho.lt>",
          "is_bot": true,
          "headline": "⬆️ Pin python to 3.13.2 (#240)",
          "author_name": "renovate[bot]",
          "author_login": "renovate[bot]",
          "committed_at": "2025-04-22T06:14:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2395354fbbd77945d25a3cde90f935c83c2a259",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2025-03-31T18:38:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "563da3c4acc5627e904b092f0a6daf3454113314",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 0.69.0 → 1.0.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-03-31T18:37:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "90207540312ef929afc4b8dab187f9031da55990",
          "body": null,
          "is_bot": false,
          "headline": "Make `tomli` a dependency for <3.11 (#244)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-03-31T18:32:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d89f3c31e907a0dd73d70ea81398eeed347531d",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2025-03-24T23:10:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "939246571b65004391c425eb6df713303663054a",
          "body": "Seems to work now https://github.com/mamba-org/mamba/issues/3740#issuecomment-2749401730",
          "is_bot": false,
          "headline": "Don't restrict micromamba 1.5.12-0 bootstrap.sh (#243)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-03-24T23:10:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9237ea8b727575251aef3f53735d78a10ddddfa5",
          "body": null,
          "is_bot": false,
          "headline": "Add a warning about running scripts from the internet (#242)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-03-14T17:08:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd2bbf6958da33c481c0878d2af9becb9da04b85",
          "body": null,
          "is_bot": true,
          "headline": "Update files from markdown-code-runner",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2025-03-11T19:50:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "343d6597a314ea41b53fd6c824bcca5222dde25d",
          "body": null,
          "is_bot": false,
          "headline": "Bump version: 0.68.0 → 0.69.0",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-03-11T19:49:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e942b8c68bb52b8142321a722dc89fc7738ff13a",
          "body": null,
          "is_bot": false,
          "headline": "Sort dependencies in sublock files (#241)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-03-11T19:46:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "608ab3c9e9983b9ab85f55a223a53d5b864c8f30",
          "body": "updates:\n- [github.com/astral-sh/ruff-pre-commit: v0.9.7 → v0.9.9](https://github.com/astral-sh/ruff-pre-commit/compare/v0.9.7...v0.9.9)\n\nCo-authored-by: pre-commit-ci[bot] <66853113+pre-commit-ci[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "[pre-commit.ci] pre-commit autoupdate (#236)",
          "author_name": "pre-commit-ci[bot]",
          "author_login": "pre-commit-ci[bot]",
          "committed_at": "2025-03-06T22:01:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7995f517f3b30c81a9af25930507e4b180443775",
          "body": "updates:\n- [github.com/astral-sh/ruff-pre-commit: v0.9.6 → v0.9.7](https://github.com/astral-sh/ruff-pre-commit/compare/v0.9.6...v0.9.7)\n\nCo-authored-by: pre-commit-ci[bot] <66853113+pre-commit-ci[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "[pre-commit.ci] pre-commit autoupdate (#234)",
          "author_name": "pre-commit-ci[bot]",
          "author_login": "pre-commit-ci[bot]",
          "committed_at": "2025-02-25T19:23:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0e6b57113a5595f6560eef45d19fa44077cebe7f",
          "body": null,
          "is_bot": false,
          "headline": "Pass bootstrap script to the right shell (#232)",
          "author_name": "Bas Nijholt",
          "author_login": "basnijholt",
          "committed_at": "2025-02-21T20:04:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 98,
      "commits_last_year": 78,
      "latest_release_at": "2026-06-25T19:34:48Z",
      "latest_release_tag": "v3.4.2",
      "releases_from_tags": false,
      "days_since_last_push": 31,
      "active_weeks_last_year": 16,
      "days_since_latest_release": 33,
      "mean_days_between_releases": 5.5
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 37,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "unidep",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "pypi",
          "matches_repo": true,
          "registry_url": "https://pypi.org/project/unidep/",
          "is_deprecated": false,
          "latest_version": "3.4.2",
          "repository_url": "https://github.com/conda-incubator/unidep",
          "versions_count": 85,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": 67828,
          "first_published_at": "2023-11-24T22:25:14.174302Z",
          "latest_published_at": "2026-06-25T19:36:05.150443Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 33
        }
      ]
    },
    "popularity": {
      "forks": 10,
      "stars": 243,
      "watchers": 4,
      "fork_history": {
        "days": [
          {
            "date": "2023-12-13",
            "count": 1
          },
          {
            "date": "2023-12-21",
            "count": 1
          },
          {
            "date": "2024-03-05",
            "count": 1
          },
          {
            "date": "2024-04-08",
            "count": 1
          },
          {
            "date": "2024-04-18",
            "count": 1
          },
          {
            "date": "2024-10-27",
            "count": 1
          },
          {
            "date": "2025-07-08",
            "count": 1
          },
          {
            "date": "2026-03-15",
            "count": 1
          },
          {
            "date": "2026-04-15",
            "count": 2
          }
        ],
        "complete": true,
        "collected": 10,
        "total_forks": 10
      },
      "star_history": null,
      "open_issues_and_prs": 40
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "example"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "docs/Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "unidep/py.typed"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 96653,
      "source_files_sampled": 57,
      "oversized_source_files": 4,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "pyproject.toml"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 2,
        "malicious_count": 0,
        "assessed_package": "pypi:unidep@3.4.2",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "pypi"
      ],
      "dependencies": [
        {
          "name": "packaging",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "ruamel.yaml",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "tomli",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "setuptools",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 1,
        "direct_count": 0,
        "indirect_count": 1
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 20,
        "merged_prs": 230,
        "open_issues": 20,
        "closed_ratio": 0.661,
        "closed_issues": 39,
        "closed_unmerged_prs": 6
      },
      "bus_factor": 1,
      "bot_contributors": 3,
      "top_contributors": [
        {
          "type": "User",
          "login": "basnijholt",
          "commits": 571,
          "avatar_url": "https://avatars.githubusercontent.com/u/6897215?v=4"
        },
        {
          "type": "User",
          "login": "evelyn-king",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/153469488?v=4"
        },
        {
          "type": "User",
          "login": "sbalk",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/6737811?v=4"
        },
        {
          "type": "User",
          "login": "taylorbell57",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/24514122?v=4"
        }
      ],
      "contributors_sampled": 4,
      "top_contributor_share": 0.995
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "documentation-links.yml",
        "install-example-projects.yml",
        "pytest.yml",
        "release.yml",
        "toc.yaml",
        "update-readme.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": true
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 9,
            "reason": "16 out of 17 merged PRs checked by a CI test -- score normalized to 9",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/28 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 3 contributing companies or organizations -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "80c417c336fc1b76211b2428a09ffe82d575fea2",
        "ran_at": "2026-07-28T21:10:38Z",
        "aggregate_score": 5.4,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-06-26T21:01:26Z",
      "oldest_open_prs": [
        {
          "number": 54,
          "created_at": "2023-12-07T04:04:44Z",
          "last_comment_at": "2023-12-07T04:05:42Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 77,
          "created_at": "2023-12-13T20:00:25Z",
          "last_comment_at": "2023-12-13T20:01:21Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 78,
          "created_at": "2023-12-14T05:15:15Z",
          "last_comment_at": "2023-12-15T07:03:32Z",
          "last_comment_author": "basnijholt"
        },
        {
          "number": 136,
          "created_at": "2024-01-12T18:44:55Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 202,
          "created_at": "2024-09-26T18:09:40Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 204,
          "created_at": "2024-10-04T20:43:07Z",
          "last_comment_at": "2025-01-03T03:16:17Z",
          "last_comment_author": "basnijholt"
        },
        {
          "number": 223,
          "created_at": "2025-02-08T21:49:41Z",
          "last_comment_at": "2025-02-08T21:50:34Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 224,
          "created_at": "2025-02-09T05:09:40Z",
          "last_comment_at": "2025-02-13T20:52:19Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 233,
          "created_at": "2025-02-21T21:18:01Z",
          "last_comment_at": "2025-02-21T21:23:52Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 235,
          "created_at": "2025-02-25T20:56:29Z",
          "last_comment_at": "2025-02-25T23:17:01Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 238,
          "created_at": "2025-03-07T05:13:22Z",
          "last_comment_at": "2025-03-07T05:21:40Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 239,
          "created_at": "2025-03-10T18:29:19Z",
          "last_comment_at": "2025-03-10T19:42:05Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 254,
          "created_at": "2025-08-11T13:12:05Z",
          "last_comment_at": "2025-11-20T16:45:46Z",
          "last_comment_author": "renovate"
        },
        {
          "number": 255,
          "created_at": "2025-08-28T19:06:25Z",
          "last_comment_at": "2025-08-28T19:09:04Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 269,
          "created_at": "2026-02-18T21:16:30Z",
          "last_comment_at": "2026-02-18T21:32:40Z",
          "last_comment_author": "renovate"
        },
        {
          "number": 276,
          "created_at": "2026-02-25T22:08:26Z",
          "last_comment_at": "2026-02-25T22:50:29Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 277,
          "created_at": "2026-03-06T23:55:53Z",
          "last_comment_at": "2026-03-07T00:05:27Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 278,
          "created_at": "2026-03-09T18:59:17Z",
          "last_comment_at": "2026-03-10T00:41:22Z",
          "last_comment_author": "codecov"
        },
        {
          "number": 310,
          "created_at": "2026-06-24T19:44:50Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 313,
          "created_at": "2026-06-26T17:30:05Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-06-26T21:00:37Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 5,
          "created_at": "2023-11-22T02:11:52Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 7,
          "created_at": "2023-11-24T18:36:51Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 49,
          "created_at": "2023-12-06T19:49:23Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 95,
          "created_at": "2023-12-25T17:33:47Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 97,
          "created_at": "2023-12-25T18:45:26Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 98,
          "created_at": "2023-12-25T19:05:43Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 99,
          "created_at": "2023-12-25T19:05:51Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 100,
          "created_at": "2023-12-25T19:06:52Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 101,
          "created_at": "2023-12-25T19:07:17Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 103,
          "created_at": "2023-12-25T20:17:37Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 107,
          "created_at": "2023-12-25T20:27:49Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 108,
          "created_at": "2023-12-25T21:23:12Z",
          "last_comment_at": "2026-02-26T16:10:27Z",
          "last_comment_author": "basnijholt"
        },
        {
          "number": 121,
          "created_at": "2023-12-29T06:44:58Z",
          "last_comment_at": "2023-12-29T06:47:00Z",
          "last_comment_author": "basnijholt"
        },
        {
          "number": 128,
          "created_at": "2023-12-30T00:42:03Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 130,
          "created_at": "2023-12-30T00:54:42Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 138,
          "created_at": "2024-01-12T20:33:08Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 157,
          "created_at": "2024-03-07T18:17:37Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 158,
          "created_at": "2024-03-12T16:56:22Z",
          "last_comment_at": "2024-03-12T18:38:03Z",
          "last_comment_author": "basnijholt"
        },
        {
          "number": 199,
          "created_at": "2024-09-18T18:16:51Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 315,
          "created_at": "2026-06-28T11:01:18Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/conda-incubator/unidep",
    "host": "github.com",
    "name": "unidep",
    "owner": "conda-incubator"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "excellent",
      "name": "Overall health",
      "note": "The weighted overall 70 is calibrated to 83 on the published index scale (record calibration 2026-08-02).",
      "notes": [
        {
          "code": "overall_calibration",
          "params": {
            "raw": 70,
            "calibrated": 83,
            "calibration": "2026-08-02"
          }
        }
      ],
      "value": 83,
      "inputs": {
        "security": 63,
        "vitality": 74,
        "community": 57,
        "governance": 61,
        "calibration": "2026-08-02",
        "engineering": 95,
        "ai_readiness": 58,
        "weighted_overall_raw": 70
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 74,
        "weight": 0.21,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 56,
            "inputs": {
              "commits_last_year": 78,
              "human_commit_share": 0.67,
              "days_since_last_push": 31,
              "active_weeks_last_year": 16
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 31 days ago",
                "points": 18,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 31
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "16/52 weeks with commits",
                "points": 11.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 16
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "78 commits in the last year",
                "points": 17,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 78
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "exceptional",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 98,
              "latest_release_tag": "v3.4.2",
              "releases_from_tags": false,
              "days_since_latest_release": 33,
              "mean_days_between_releases": 5.5
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "98 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 98
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 33 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 33
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~5.5 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 5.5
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "exceptional",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 37,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 37 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 37
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 57,
        "weight": 0.17,
        "metrics": [
          {
            "key": "popularity",
            "band": "weak",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 49,
            "inputs": {
              "forks": 10,
              "stars": 243,
              "watchers": 4,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "243 stars",
                "points": 38.7,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 243
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "10 forks",
                "points": 8,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "4 watchers",
                "points": 2.7,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "readme_badges": null,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "readme_badge_services": [],
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (BSD-3-Clause)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "BSD-3-Clause"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "excellent",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 81,
            "inputs": {
              "packages": [
                "unidep"
              ],
              "dependents": null,
              "ecosystems": "pypi",
              "total_downloads": null,
              "monthly_downloads": 67828
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "67,828 downloads/month across pypi",
                "points": 64.4,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 67828,
                      "ecosystems": "pypi"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 61,
        "weight": 0.23,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "at_risk",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 24,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 4,
              "top_contributor_share": 0.995
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0.1,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "4 contributors",
                "points": 5.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 3 contributing companies or organizations -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Newcomer PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "newcomer_pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 66,
            "inputs": {
              "merged_prs": 230,
              "open_issues": 20,
              "closed_issues": 39,
              "prs_merged_7d": null,
              "prs_decided_7d": null,
              "prs_merged_30d": null,
              "prs_decided_30d": null,
              "issue_closed_ratio": 0.661,
              "closed_unmerged_prs": 6,
              "first_time_authors_30d": null,
              "first_time_prs_merged_30d": null,
              "first_time_prs_decided_30d": null
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "66% of issues closed",
                "points": 27.8,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 66
                    }
                  }
                ],
                "max_points": 42
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "230/236 decided PRs merged",
                "points": 29.2,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 230,
                      "decided": 236
                    }
                  }
                ],
                "max_points": 30
              },
              {
                "key": "newcomer_pr_acceptance",
                "name": "Newcomer PR acceptance",
                "detail": "no first-time contributor's PR decided in 30d",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_newcomer_prs",
                    "params": {
                      "days": 30
                    }
                  }
                ],
                "max_points": 13
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 68,
            "inputs": {
              "followers": 75,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "conda-incubator",
              "public_repos": 80,
              "account_age_days": 2198
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "75 followers of conda-incubator",
                "points": 13.5,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 75,
                      "login": "conda-incubator"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "80 public repos, account ~6 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 80
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 6
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "exceptional",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "unidep"
              ],
              "ecosystems": "pypi",
              "any_deprecated": false,
              "min_days_since_publish": 33
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on pypi",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "pypi"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 33 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 33
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "85 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 85
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "exceptional",
        "name": "Engineering Quality",
        "value": 95,
        "weight": 0.19,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": true
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "6 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 16,
                "status": "met",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 9.6,
                "status": "met",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "16 out of 17 merged PRs checked by a CI test -- score normalized to 9",
                "points": 18,
                "status": "partial",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "exceptional",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "topics": [
                "conda",
                "conda-environment",
                "conda-lock",
                "pip",
                "pip-compile",
                "setuptools"
              ],
              "has_wiki": true,
              "homepage": "https://unidep.readthedocs.io",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://unidep.readthedocs.io",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "6 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 63,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 54,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 5.4
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "16 out of 17 merged PRs checked by a CI test -- score normalized to 9",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 3 contributing companies or organizations -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "exceptional",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the pypi:unidep@3.4.2 runtime dependency closure — what installing the published package pulls in — 2 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "pypi:unidep@3.4.2",
                  "assessed": 2
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 2,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "exceptional",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 2,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "exceptional",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "commit_weight_rule": {
                "min_commits": 50,
                "min_commit_share": 0.1
              },
              "review_only_matches": 0,
              "below_threshold_exposures": [],
              "assessed_self_published_locations": 4
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 58,
        "weight": 0.04,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "weak",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.746,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "50 of 67 human commits state their intent (structured subject or explanatory body)",
                "points": 39.8,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 50,
                      "sampled": 67
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 70,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [
                "docs/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "unidep/py.typed"
              ],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0.12
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "docs/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "docs/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 11,
                "status": "met",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "unidep/py.typed",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "unidep/py.typed"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "12 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 12,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "good",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 78,
            "inputs": {
              "primary_language": "Python",
              "largest_source_bytes": 96653,
              "source_files_sampled": 57,
              "oversized_source_files": 4
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Python with type-check config (unidep/py.typed)",
                "points": 27,
                "status": "partial",
                "details": [
                  {
                    "code": "typecheck_config_language",
                    "params": {
                      "files": "unidep/py.typed",
                      "language": "Python"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "4/57 source files over 60KB",
                "points": 51.1,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 57,
                      "oversized": 4
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "weak",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "example"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "example",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "example"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight: agent tooling is a real maintenance signal, but its absence must never gate the top of the scale (calibration saturates at raw 91, so 100/100 remains reachable with AI Readiness at zero)."
      }
    ],
    "classification": {
      "labels": [
        "library"
      ],
      "scores": {
        "library": 6
      },
      "primary": "library",
      "evidence": [
        {
          "tier": "distribution",
          "label": "library",
          "source": "registry:pypi",
          "weight": 6
        }
      ],
      "artifacts": [],
      "confidence": "medium",
      "host_extension": false,
      "runs_as_process": false,
      "consumed_by_code": true
    },
    "metrics_version": "2.3.1"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-28T21:10:53.198855Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/c/conda-incubator/unidep.svg",
  "full_name": "conda-incubator/unidep",
  "license_state": "standard",
  "license_spdx": "BSD-3-Clause"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v2.3.1, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsPyPI.