Public record
Software health reportschema 0.26.0 · metrics 1.13.0 · 2026-07-22 03:11 UTC

dl-alexandre / Google-Play-Developer-CLI

A fast, lightweight, AI-agent friendly CLI for Google Play

GoMIT★ 33 stars⑂ 3 forkssince Jan 2026View on GitHub ↗

dl-alexandre/Google-Play-Developer-CLI holds a health index of 64 out of 100, placing it in the Moderate band. It scores highest on Engineering Quality (85/100) and lowest on Security (46/100). It was last updated 1 day ago. A single contributor accounts for most of its recent work.

64
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

64
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

Dalton AlexandrePersonal account
18 followers142 public repossince Apr 2024

This repository is owned by a personal account. A single-owner project carries more continuity risk than an organization-backed one.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
Gogithub.com/dl-alexandre/Google-Play-Developer-CLIv0.6.5-314 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

80Good · 22% of overall
How it's scored
36/36Push recency — last push 1 days ago
10.4/36Commit cadence — 15/52 weeks with commits
18/18Commit volume — 122 commits in the last year
10/10OpenSSF Scorecard: Maintained — 21 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year122
human_commit_share0.94
days_since_last_push1
active_weeks_last_year15
How it's scored
27/27Ships releases — 21 releases published
36/36Release recency — latest release 4 days ago
27/27Release cadence — a release every ~16.4 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count21
latest_release_tagv0.6.5
releases_from_tagsno
days_since_latest_release4
mean_days_between_releases16.4

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

50Moderate · 18% of overall
How it's scored
24.4/60Stars — 33 stars
2.5/25Forks — 3 forks
0/15Watchers — 0 watchers
Inputs used
forks3
stars33
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonbelow_threshold
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (MIT)
18/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductno
has_pull_request_templateyes

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

56Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
1.8/22.5Commit distribution — top contributor authored 92% of commits
4.1/13.5Contributor breadth — 3 contributors
3/10OpenSSF Scorecard: Contributors — project has 1 contributing companies or organizations -- score normalized to 3
Inputs used
bus_factor1
contributors_sampled3
top_contributor_share0.922
How it's scored
46.8/46.8Issue resolution — 100% of issues closed
30.1/38.3PR acceptance — 11/14 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 1/21 approved changesets -- score normalized to 0
Inputs used
merged_prs11
open_issues0
closed_issues4
issue_closed_ratio1
closed_unmerged_prs3
How it's scored
10/30Ownership backing — personal (user) account
0/20Verified domain — not applicable to user accounts
9.2/25Owner reach — 18 followers of dl-alexandre
17.6/25Track record — 142 public repos, account ~2 yr old
Inputs used
followers18
owner_typeUser
is_verified
owner_logindl-alexandre
public_repos142
account_age_days838
Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.
How it's scored
25/25Published & resolvable — 1 package(s) on go
35/35Publish recency — latest publish 4 days ago
20/20Version history — 31 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesgithub.com/dl-alexandre/Google-Play-Developer-CLI
ecosystemsgo
any_deprecatedno
min_days_since_publish4

Engineering Quality

Are baseline engineering and documentation practices in place?

85Excellent · 20% of overall
How it's scored
24/24CI workflows — 9 workflow(s)
24/24Tests present
16/16Linter config — .golangci.yml
0/9.6Pre-commit hooks
0/6.4.editorconfig
18/20OpenSSF Scorecard: CI-Tests — 9 out of 10 merged PRs checked by a CI test -- score normalized to 9
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configno

Documentation

90Excellent
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://dl-alexandre.github.io/Google-Play-Developer-CLI/
10/10Repository description
0/10Topics
10/10Wiki
Inputs used
topics
has_wikiyes
homepagehttps://dl-alexandre.github.io/Google-Play-Developer-CLI/
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

46At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
2.2/2.5CI-Tests — 9 out of 10 merged PRs checked by a CI test -- score normalized to 9
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 1/21 approved changesets -- score normalized to 0
0.8/2.5Contributors — project has 1 contributing companies or organizations -- score normalized to 3
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
5/5Fuzzing — project is fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 21 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 10 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated18
scorecard_versionv5.5.0
checks_inconclusive0
scorecard_aggregate4.6

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

80Good · 0% of overall
How it's scored
45/45Agent instructions — docs/development/AGENTS.md, docs/development/CLAUDE.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 91 of 94 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.968
agent_instruction_filesdocs/development/AGENTS.md, docs/development/CLAUDE.md
agent_instruction_max_bytes8,602
How it's scored
18/18One-command bootstrap — Makefile
22/22Automated tests
11/11Lint / format config — .golangci.yml
11/11Static type checking — Go (statically typed)
10/10Reproducible environment — lockfile
4/10Demonstrated agent practice — 2 of the last 100 commits agent-authored or agent-credited
8/8Automated maintenance — 6 of the last 100 commits are automated dependency updates
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfilesgo.sum
has_dockerfileno
typed_languageyes
bootstrap_filesMakefile
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0.02
toolchain_manifestsgo.mod
dependency_bot_commit_share0.06
How it's scored
45/45Type-checkable code — Go (statically typed)
53.8/55Manageable file sizes — 3/133 source files over 60KB
Inputs used
primary_languageGo
largest_source_bytes153,835
source_files_sampled133
oversized_source_files3
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — examples
Inputs used
example_dirsexamples
has_mcp_signalno
api_schema_files

Key facts

33GitHub stars
3contributors
122commits, last 12 months
1days since last push
21releases
1bus factor
0open issues
Gopackage ecosystems

Data collection warnings

  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

More detail

Star and fork history 33 ★ / 3 ⇿
33Stars
3Forks
19Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

013253833392026-012026-042026-07
Major 0Minor 4Patch 15
OpenSSF Scorecard 4.6 / 10
4.6aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-22 03:11 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
9CI-Tests9 out of 10 merged PRs checked by a CI test -- score normalized to 9
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 1/21 approved changesets -- score normalized to 0
3Contributorsproject has 1 contributing companies or organizations -- score normalized to 3
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
10Fuzzingproject is fuzzed
10Licenselicense file detected
10Maintained21 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities10 existing vulnerabilities detected
Direct dependencies 10
RegistryPackageVersion constraintManifest
Gogithub.com/99designs/keyringv1.2.2go.mod
Gogithub.com/alecthomas/kongv1.15.0go.mod
Gogithub.com/pkg/browserv0.0.0-20240102092130-5ac0b6a4141cgo.mod
Gogithub.com/xuri/excelize/v2v2.10.1go.mod
Gogolang.org/x/oauth2v0.36.0go.mod
Gogolang.org/x/syncv0.21.0go.mod
Gogolang.org/x/termv0.44.0go.mod
Gogolang.org/x/textv0.38.0go.mod
Gogoogle.golang.org/apiv0.286.0go.mod
Gogopkg.in/yaml.v3v3.0.1go.mod
All dependencies not collected

The resolved dependency set could not be collected for this report: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 4986,
      "has_wiki": true,
      "homepage": "https://dl-alexandre.github.io/Google-Play-Developer-CLI/",
      "languages": {
        "Go": 2226659,
        "Shell": 42829,
        "Makefile": 15469
      },
      "pushed_at": "2026-07-20T10:18:12Z",
      "created_at": "2026-01-23T22:00:41Z",
      "owner_type": "User",
      "updated_at": "2026-07-17T06:00:01Z",
      "description": "A fast, lightweight, AI-agent friendly CLI for Google Play",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "master",
      "license_spdx_raw": "MIT",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": "https://daltonalexandre.carrd.co",
      "name": "Dalton Alexandre",
      "type": "User",
      "login": "dl-alexandre",
      "company": null,
      "location": "San Luis Obispo, California",
      "followers": 18,
      "avatar_url": "https://avatars.githubusercontent.com/u/166029845?v=4",
      "created_at": "2024-04-04T13:47:20Z",
      "is_verified": null,
      "public_repos": 142,
      "account_age_days": 838
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.6.5",
          "kind": "patch",
          "published_at": "2026-07-17T05:59:26Z"
        },
        {
          "tag": "v0.6.4",
          "kind": "patch",
          "published_at": "2026-07-06T16:05:12Z"
        },
        {
          "tag": "v0.5.11",
          "kind": "patch",
          "published_at": "2026-03-16T00:30:39Z"
        },
        {
          "tag": "v0.5.2",
          "kind": "patch",
          "published_at": "2026-03-09T23:20:25Z"
        },
        {
          "tag": "v0.5.1",
          "kind": "patch",
          "published_at": "2026-03-02T14:43:49Z"
        },
        {
          "tag": "v0.5.0",
          "kind": "minor",
          "published_at": "2026-03-01T05:03:01Z"
        },
        {
          "tag": "v0.4.8",
          "kind": "patch",
          "published_at": "2026-02-25T04:53:58Z"
        },
        {
          "tag": "v0.4.7",
          "kind": "patch",
          "published_at": "2026-02-25T02:26:01Z"
        },
        {
          "tag": "v0.4.6",
          "kind": "patch",
          "published_at": "2026-02-23T15:03:15Z"
        },
        {
          "tag": "v0.4.5",
          "kind": "patch",
          "published_at": "2026-02-19T22:44:23Z"
        },
        {
          "tag": "v0.4.4",
          "kind": "patch",
          "published_at": "2026-02-19T22:37:13Z"
        },
        {
          "tag": "v0.4.3",
          "kind": "patch",
          "published_at": "2026-02-19T15:07:58Z"
        },
        {
          "tag": "v0.4.2",
          "kind": "patch",
          "published_at": "2026-02-19T07:40:47Z"
        },
        {
          "tag": "v0.4.1",
          "kind": "patch",
          "published_at": "2026-02-19T07:22:33Z"
        },
        {
          "tag": "v0.4.0",
          "kind": "minor",
          "published_at": "2026-02-17T21:44:33Z"
        },
        {
          "tag": "v0.3.3",
          "kind": "patch",
          "published_at": "2026-02-04T19:51:19Z"
        },
        {
          "tag": "v0.3.2",
          "kind": "patch",
          "published_at": "2026-01-28T16:48:16Z"
        },
        {
          "tag": "v0.3.1",
          "kind": "patch",
          "published_at": "2026-01-27T18:04:56Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2026-01-27T16:28:18Z"
        },
        {
          "tag": "v0.2.1",
          "kind": "patch",
          "published_at": "2026-01-25T06:32:46Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2026-01-25T06:23:35Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "c1bc83aee44f47ed3751a9b988e8fa72516355a2",
          "body": "v0.6.5 is published with install.sh-compatible archives and SHA-256 checksums.",
          "is_bot": false,
          "headline": "docs: pin CI examples to v0.6.5 after release",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-07-17T05:59:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6b452ae613b47c764137acce81d80378caace9ee",
          "body": "feat: ASC-style parity ops (auth, validate, install, setup-gpd)",
          "is_bot": false,
          "headline": "Merge pull request #18 from dl-alexandre/feat/asc-parity-ops-batch",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-07-17T05:55:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d33621b23d96af592c362142fddc2ae874746c8",
          "body": "Ship the high-value product and ops gaps for dual-store teams: TTY-aware\noutput, multi-profile auth (including delete/logout), validate readiness\nwith optional network probes, publish play track assignment, checksum\nreleases aligned with install.sh, setup-gpd composite action, agent\nskills pack, and domain package extractions (outfmt, playship).",
          "is_bot": false,
          "headline": "feat: ASC-style parity ops — auth profiles, validate, install, setup-gpd",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-07-17T05:31:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b72ce4c095a0c6d03285cf2a890aadb3f78b2311",
          "body": "Avoid duplicate tag push failures from GoReleaser 409 conflicts when\nhomebrew/scoop were already updated by a prior successful run.",
          "is_bot": false,
          "headline": "fix(release): skip publish when release assets already exist",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-07-06T17:40:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6024e46343525971277683cb77beb792505c4351",
          "body": null,
          "is_bot": false,
          "headline": "fix(release): remove auto-release workflow that created orphan tags",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-07-06T16:00:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8fa9267db95d9980bd8ffcf8cad51274db690d1",
          "body": "…retry",
          "is_bot": false,
          "headline": "fix(release): remove auto-release orphan tags; add workflow_dispatch …",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-07-06T16:00:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9b5ca89fde09d0698f2a2ba6b109505f52081950",
          "body": "Bumps the github-actions group with 1 update: [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action).\n\n\nUpdates `golangci/golangci-lint-action` from 9.2.1 to 9.3.0\n- [Release notes](https://github.com/golangci/golangci-lint-action/releases)\n- [Commits](https://github.com/g\n[…]\nsion-update:semver-minor\n  dependency-group: github-actions\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(ci)(deps): bump golangci/golangci-lint-action (#16)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T14:59:01Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c3185f8c38cf7b1ac9fac1b60bc09962f40cf1d4",
          "body": "…I errors (#15)\n\n* fix(cli): print APIError before exiting instead of failing silently\n\nRunKongCLI returned an *errors.APIError's exit code without printing the\nerror message, so any command that hit an API error exited with only a\nstatus code and no output. Print the error (matching the generic-err\n[…]\nedia type 'application/zip' is not supported\" above; without it the\ncommand exits silently with no output. After this change the upload succeeds\n(then assign it to a track with `gpd publish release`).",
          "is_bot": false,
          "headline": "fix(publish): upload AAB/APK as application/octet-stream + surface AP…",
          "author_name": "Janne Kytömäki",
          "author_login": "jkytomaki",
          "committed_at": "2026-07-06T14:58:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0e5d2836435ce8d240b91ebc756ae10eb3aae924",
          "body": "… (#14)\n\nBumps the go-modules group with 1 update: [google.golang.org/api](https://github.com/googleapis/google-api-go-client).\n\n\nUpdates `google.golang.org/api` from 0.284.0 to 0.286.0\n- [Release notes](https://github.com/googleapis/google-api-go-client/releases)\n- [Changelog](https://github.com/go\n[…]\n version-update:semver-minor\n  dependency-group: go-modules\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps)(deps): bump google.golang.org/api in the go-modules group…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T14:58:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2a90491ff351ec2b8623f9d8d5b10564ec8f10d2",
          "body": "Bumps the go-modules group with 3 updates: [golang.org/x/sync](https://github.com/golang/sync), [golang.org/x/text](https://github.com/golang/text) and [google.golang.org/api](https://github.com/googleapis/google-api-go-client).\n\n\nUpdates `golang.org/x/sync` from 0.20.0 to 0.21.0\n- [Commits](https:/\n[…]\n version-update:semver-minor\n  dependency-group: go-modules\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps)(deps): bump the go-modules group with 3 updates (#12)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-22T20:39:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "dc375f83d09296292b92a0f5de2bdcbe7d3421db",
          "body": "Bumps the github-actions group with 1 update: [actions/checkout](https://github.com/actions/checkout).\n\n\nUpdates `actions/checkout` from 6 to 7\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https:\n[…]\nsion-update:semver-major\n  dependency-group: github-actions\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(ci)(deps): bump actions/checkout in the github-actions group (#13)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-22T20:39:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c48d6101ad7e1a26fb15636c1fdf06dc7bed71c2",
          "body": "golangci-lint v2.8.0 was built with Go 1.25 and refuses go 1.26.0\ntargets (config load error: 'Go language version ... is lower').",
          "is_bot": false,
          "headline": "fix(ci): bump golangci-lint to v2.12.2 for go 1.26 support",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-06-11T03:46:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fbdde259846468737371e37c72cd2334b8d8b19d",
          "body": null,
          "is_bot": false,
          "headline": "chore: align go directive to fleet baseline 1.26.0",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-06-11T03:27:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "07f95105cf575ce1f0fe4f67fb2d546dc7e4c1d7",
          "body": "- Add fleet baseline .golangci.yml (v2 format)\n- errorlint: use errors.As/errors.Is/%w instead of type assertions,\n  == comparisons, and non-wrapping format verbs (27 sites)\n- unparam: drop unused params and always-constant results\n  (tryRunExtension, installLocal, installFromRelease,\n  installFromRepoClone, createTestExtension)",
          "is_bot": false,
          "headline": "feat(lint): add golangci-lint v2 config and fix all findings",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-06-11T02:55:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "78a48e4d80401769583b12589d7657f31c4e470e",
          "body": "… (#9)\n\nBumps the go-modules group with 1 update: [google.golang.org/api](https://github.com/googleapis/google-api-go-client).\n\n\nUpdates `google.golang.org/api` from 0.278.0 to 0.279.0\n- [Release notes](https://github.com/googleapis/google-api-go-client/releases)\n- [Changelog](https://github.com/goo\n[…]\n version-update:semver-minor\n  dependency-group: go-modules\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps)(deps): bump google.golang.org/api in the go-modules group…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-08T15:36:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0c5813736497c81dd5029dd0d047a76adf5cd4e6",
          "body": "…h 2 updates (#11)\n\nBumps the github-actions group with 2 updates in the / directory: [codecov/codecov-action](https://github.com/codecov/codecov-action) and [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action).\n\n\nUpdates `codecov/codecov-action` from 6 to 7\n- [Release n\n[…]\nsion-update:semver-patch\n  dependency-group: github-actions\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(ci)(deps): bump the github-actions group across 1 directory wit…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-08T14:51:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bca2fcdf259ce96c0e6ec88b0c7f6f93a04203c2",
          "body": null,
          "is_bot": false,
          "headline": "chore(deps): refresh Go dependencies",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-05-11T14:31:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "345db363b45a1ed669651a4480906bd613288eec",
          "body": "…improvements\n\nchore: improve maintenance automation",
          "is_bot": false,
          "headline": "Merge pull request #8 from dl-alexandre/codex/maintenance-automation-…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-05-04T17:47:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bd17127c4d9e6d3fe9bf620a2bf1b2d6474581b1",
          "body": null,
          "is_bot": false,
          "headline": "chore: improve maintenance automation",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-05-04T17:33:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4587ef1c5a9b2d5922e0691168f6d030b51644bd",
          "body": "…-05-04\n\n[codex] refresh dependencies and workflow actions",
          "is_bot": false,
          "headline": "Merge pull request #7 from dl-alexandre/codex/dependency-refresh-2026…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-05-04T16:51:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "237f70545f16ec68005e8398985fc7a0ba97bd5e",
          "body": null,
          "is_bot": false,
          "headline": "deps: refresh dependencies and workflow actions",
          "author_name": "dl-alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-05-04T16:33:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a58f0fbe8a779a033bcf1ad6748b884f1821e93",
          "body": null,
          "is_bot": false,
          "headline": "deps: update go.sum for kong v1.15.0",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-04-20T16:42:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa976c965abca193eb18af855f9467e056e26219",
          "body": null,
          "is_bot": false,
          "headline": "deps: bump kong to v1.15.0 (with go.sum update)",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-04-20T16:42:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bd830f754ec67f6ce9055cd7844d7412a479c4bb",
          "body": null,
          "is_bot": false,
          "headline": "chore: add dependabot configuration for automated dependency updates",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-04-20T16:32:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "770ea5114189a320d1596535eb50c74e619cf409",
          "body": null,
          "is_bot": false,
          "headline": "deps: bump github.com/alecthomas/kong from v1.14.0 to v1.15.0",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-04-20T16:30:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3014a2351b2154b6fdade74363aa7362acd89de",
          "body": "… step",
          "is_bot": false,
          "headline": "fix(ci): use unique artifact names per matrix job and add aggregation…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-04-20T14:36:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc4a7d646044b0b4961095ebd905ce696ec7ea65",
          "body": "Add check for existing tag before attempting to create it.\nPrevents failure when workflow is re-triggered or tag already exists.",
          "is_bot": false,
          "headline": "fix(ci): handle duplicate tag in auto-release workflow",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-30T06:10:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fefc29b5188bfd9511739a486355533c7e033dcb",
          "body": null,
          "is_bot": false,
          "headline": "Update GoReleaser config: BLAKE3 checksums, Flatpak, Source RPMs",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-30T06:10:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dc8e58258a9950986700cff3398ab93494f457ac",
          "body": "Auto-generated release preparation.\n\nChanges:\nf6f5012 fix(ci): update Go version from 1.24.x to 1.25.x in all workflows",
          "is_bot": false,
          "headline": "chore(release): prepare v0.6.4",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-30T04:22:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f6f5012c7dbaf88b80f7b7e350178c3b5371c796",
          "body": null,
          "is_bot": false,
          "headline": "fix(ci): update Go version from 1.24.x to 1.25.x in all workflows",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-23T14:14:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "03fe2a62d2c7cb8af861d648041c7b9b1f5815bb",
          "body": "Auto-generated release preparation.\n\nChanges:\ne293e4f feat(release): add GoReleaser with homebrew and scoop distribution\n8c97529 chore(release): prepare v0.5.8",
          "is_bot": false,
          "headline": "chore(release): prepare v0.6.3",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-15T21:52:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e293e4fe3b4350b7c9d68201e6aceb1c4bf8736a",
          "body": null,
          "is_bot": false,
          "headline": "feat(release): add GoReleaser with homebrew and scoop distribution",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-15T21:47:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c975292777e548e152b47e2c8ca71a9f83ea85c",
          "body": "Auto-generated release preparation.\n\nChanges:\n74718d4 fix(auth): status command now loads existing credentials",
          "is_bot": false,
          "headline": "chore(release): prepare v0.5.8",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-14T21:36:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74718d4adf40447ed0c06e0afa704ef31a0be306",
          "body": "The auth status command was not loading existing credentials from\nstorage/environment/ADC before checking status, causing it to always\nreport as unauthenticated even after a successful login.\n\nNow it calls Authenticate() first (with empty key path) to load\nany available credentials, matching the behavior of other commands.\n\nFixes #5",
          "is_bot": false,
          "headline": "fix(auth): status command now loads existing credentials",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-14T21:32:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0a1dffc3eceae28b064459d1a3df0b19a89cd280",
          "body": "Auto-generated release preparation.\n\nChanges:\na4acdbc test: add Windows CI skip to TestDetectExtensionType and TestStateManager\n060a0d5 Fix Windows CI failures - skip Unix-specific tests on Windows CI\nc42d319 test: add Windows CI skip to watcher tests\n71e19e7 fix(workflow): close stopChan on timeout\n[…]\n\n0eba079 fix: resolve errcheck linter errors in extension system\na07e89c feat(extensions): implement gh-style extension system for gpd\nfb58ddc feat(workflow): add declarative workflow execution system",
          "is_bot": false,
          "headline": "chore(release): prepare v0.5.7",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-12T14:39:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a4acdbc38cbdbbc0192240408e13ba35f3e8c618",
          "body": "…ager",
          "is_bot": false,
          "headline": "test: add Windows CI skip to TestDetectExtensionType and TestStateMan…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T14:32:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "060a0d5bfad643d2f9b240c658db411e6ba62bdc",
          "body": null,
          "is_bot": false,
          "headline": "Fix Windows CI failures - skip Unix-specific tests on Windows CI",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T14:28:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c42d3196869df11e3fdbea6dae3a835e2fd574a9",
          "body": "Add skipIfWindowsCI helper function and use it in TestNewWatcher,\nTestWatcherLifecycle, and TestWatcherEvents to prevent goroutine\nleaks on Windows CI.\n\nThe watcher tests create background goroutines that may not clean\nup properly on Windows, causing the package to report FAIL even\nthough all individual tests pass.\n\nRefs: CI fix for Windows workflow tests",
          "is_bot": false,
          "headline": "test: add Windows CI skip to watcher tests",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T14:22:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71e19e753e23fc57803c828a4502af51e23d33ee",
          "body": "When the 30-second timeout triggered in executeParallelSteps, the code\nclosed the results and errChan channels but did NOT close stopChan. This\nmeant worker goroutines that were blocked on r.executeStep() or the\nsemaphore never received the signal to exit, causing wg.Wait() to hang\nforever and the p\n[…]\nproperly.\n\nThis resolves the Windows CI failure where the workflow package would\nreport FAIL with exit code 1 even though all individual tests passed.\n\nRefs: critical goroutine leak fix for Windows CI",
          "is_bot": false,
          "headline": "fix(workflow): close stopChan on timeout to prevent goroutine leak",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T14:09:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "235c88d008e89ff947aee00d28b7a08280c48911",
          "body": "Skip TestEndToEndWorkflowExecution on Windows CI since shell command\nexecution differs between platforms and can cause test failures.\n\nThe runner.go fixes for Windows process cleanup are still applied:\n- Platform-specific shell commands (cmd /c vs sh -c)\n- Explicit process kill on context cancellation\n- Timeout protection for parallel step execution\n\nRefs: CI stabilization",
          "is_bot": false,
          "headline": "test: skip integration tests on Windows CI",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T14:04:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7c3c25f7c904eeccbcf19ed15b6603e146f11b9a",
          "body": "Fix the Windows CI failure where workflow package reported FAIL even\nthough all individual tests passed.\n\nRoot causes fixed:\n1. Goroutine leak in executeParallelSteps - workers could block indefinitely\n   when stopChan was closed, causing wg.Wait() to hang\n   Solution: Added timeout protection and f\n[…]\npecific shell commands\n- internal/workflow/runner.go: Explicit process kill on cancellation\n- internal/workflow/runner.go: Better command execution with select\n\nRefs: CI fix for Windows workflow tests",
          "is_bot": false,
          "headline": "fix(workflow): resolve goroutine leaks and Windows process cleanup",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T14:00:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fd6a8b3f0c920cd663e462bf005e593e2b70fd38",
          "body": "Skip TestWatcherEvents on Windows CI to avoid goroutine timing issues\nthat cause the package to report FAIL even though individual tests pass.\n\nThe race condition fix has been applied but Windows CI may still have\ntiming-related cleanup issues with the eventLoop goroutine.\n\nAll tests pass on Linux and macOS.\n\nRefs: CI stabilization for workflow package",
          "is_bot": false,
          "headline": "test: skip watcher tests on Windows CI",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T13:54:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e985115b4e4e5b828c29ab746722a994af80e1bc",
          "body": "This reverts commit f5c88db66d398635c5ae931db1f76baa8ac5c5fc.",
          "is_bot": false,
          "headline": "Revert \"ci: allow Windows tests to have non-blocking failures\"",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T13:53:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f5c88db66d398635c5ae931db1f76baa8ac5c5fc",
          "body": "Temporarily allow Windows CI tests to complete even if some packages\nhave issues. This prevents the extension system PR from being blocked\nby pre-existing Windows workflow test issues.\n\nThe workflow package tests all pass individually but report FAIL at the\npackage level on Windows CI (likely a goro\n[…]\n but Windows CI may still have\ntiming-related issues.\n\nThis is a temporary workaround while the root cause is investigated.\nLinux and macOS CI continue to enforce test success.\n\nRefs: CI stabilization",
          "is_bot": false,
          "headline": "ci: allow Windows tests to have non-blocking failures",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T13:53:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8ce31c6739cdf159c35e113f684d59145a4ef143",
          "body": "Fix data race in internal/workflow package that caused Windows CI failures:\n\n1. Add outputMu mutex to Watcher struct to synchronize output writes\n2. Lock outputMu in outputText(), outputJSON(), and outputTUI() methods\n3. Call drainEvents() in Stop() to ensure all output completes before return\n4. Fi\n[…]\nm bytes.Buffer while the eventLoop\ngoroutine was still writing to it. Tests using 'defer w.Stop()' followed\nby immediate buffer reads created a race condition.\n\nRefs: CI fix for Windows workflow tests",
          "is_bot": false,
          "headline": "fix(workflow): resolve data race in watcher tests",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T13:50:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "47c0c23936c5ddfcb686a13b753242b96dc124f9",
          "body": "Fix Windows CI failures by skipping tests that attempt network operations:\n- Skip TestExtensionInstallCmd on Windows CI (avoids git clone failures)\n- Skip TestInstallTimeout in CI environments\n- Update test expectations to account for install failures\n\nThese tests were failing on Windows CI because git cannot prompt for\ncredentials in non-interactive environments. The core functionality\nis still tested on Linux/macOS and locally.\n\nRefs: CI fix for extension system",
          "is_bot": false,
          "headline": "test: skip network-dependent tests on Windows CI",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T05:07:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "19f1fdd3152fde61a429785e76b5aa35eca4b2fe",
          "body": null,
          "is_bot": false,
          "headline": "ci: trigger rebuild to check Windows workflow tests",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T05:03:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0eba07997992703d846f31d753577c168d8f4c42",
          "body": "Fix all unchecked error return values identified by golangci-lint:\n- Add error handling for fmt.Fprintln, fmt.Fprintf, w.Flush calls\n- Add error handling for os.Setenv, os.Unsetenv in tests\n- Add error handling for file.Close(), resp.Body.Close() defer calls\n- Add error handling for os.Remove, os.RemoveAll defer calls\n\nAll 31 errcheck issues resolved. Tests passing. CI should now pass.\n\nRefs: extension system PR",
          "is_bot": false,
          "headline": "fix: resolve errcheck linter errors in extension system",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T04:31:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a07e89ced5f20ac6b02ce6985dcd119b68f91f8b",
          "body": "Add a complete extension system that allows third-party developers to\nship installable subcommands for gpd, similar to GitHub CLI's extension\nmechanism.\n\nFeatures:\n- Extension install from GitHub repos (owner/repo format)\n- Local path installation for development\n- GitHub Release artifact download w\n[…]\nmanagement\n- internal/cli/kong_extensions.go - CLI commands\n- internal/cli/extension_runner*.go - Platform-specific execution\n- *_test.go - Comprehensive test coverage\n\nRefs: gh-style extension system",
          "is_bot": false,
          "headline": "feat(extensions): implement gh-style extension system for gpd",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T04:02:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fb58ddc57bf7b6310a1792e334e16e94919a9d28",
          "body": "Implement comprehensive workflow engine with step outputs, variable interpolation,\nand resumable execution. Similar to ASC-CLI PR #966.\n\nFeatures:\n- JSON workflow definitions with multi-step pipelines\n- Step output capture from JSON stdout\n- Variable interpolation: ${steps.name.field} and ${env.VAR}\n[…]\ning\n\nTests:\n- 29 integration tests covering end-to-end execution, resume,\n  variable interpolation, state persistence, error scenarios\n- 76% code coverage\n\nCloses: declarative workflow feature request",
          "is_bot": false,
          "headline": "feat(workflow): add declarative workflow execution system",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-12T04:02:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9bddde91fa5f731323d92cab92f828703b049209",
          "body": "Auto-generated release preparation.\n\nChanges:",
          "is_bot": false,
          "headline": "chore(release): prepare v0.5.6",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-10T01:59:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d9391ddcaa90ceddb9e2e21ee4d8445534642878",
          "body": "Auto-generated release preparation.\n\nChanges:\n1a94654 chore: reorganize top-level files\n43482b2 chore: clean up duplicate files and test binaries",
          "is_bot": false,
          "headline": "chore(release): prepare v0.5.5",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-10T01:58:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a94654ede81a6008e6184c542fb1d49e807dac2",
          "body": "- Move development docs to docs/development/\n  - AGENTS.md, CLAUDE.md, MASTER_PLAN.md, memory.md\n  - MIGRATION_COMPLETE.md, TEST_SUMMARY.md\n\n- Move Arch Linux packaging to dist/arch/\n  - PKGBUILD, .SRCINFO\n\n- Move helper scripts to scripts/\n  - collaborate.sh\n\n- Move CI config to .github/config/\n  - .golangci.yml, .goreleaser.yml, .gosec.json\n\n- Update workflow and Makefile references",
          "is_bot": false,
          "headline": "chore: reorganize top-level files",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:55:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "43482b2f1fd88a2639597d224d1dbf55274cfb01",
          "body": null,
          "is_bot": false,
          "headline": "chore: clean up duplicate files and test binaries",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:53:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b90e71d5d245b231a6299600f73bab5cb561f39",
          "body": "Auto-generated release preparation.\n\nChanges:\na229139 fix: use correct secret name TAP_GITHUB_TOKEN for homebrew tap",
          "is_bot": false,
          "headline": "chore(release): prepare v0.5.4",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-10T01:41:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a229139e6ef5ee4d440e69425e6938649a475844",
          "body": null,
          "is_bot": false,
          "headline": "fix: use correct secret name TAP_GITHUB_TOKEN for homebrew tap",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:36:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8664852366285941e1f65f9defc653222b62381e",
          "body": "Auto-generated release preparation.\n\nChanges:\n4cbe725 ci: exclude internal/apidrift from gosec linting\n59fc26f fix: exclude G122 from gosec and remove nolint directives\nbfe8126 ci: add gosec config and make security scan tolerant\n88c0a44 fix: inline nolint:gosec directives to suppress unused warning\n[…]\n14eb ci: fix workflow to tolerate CLI test failures\n28aceb0 fix: correct nolint:gosec directives for path traversal\n8a72a43 feat: Complete 100% Google Play Developer API coverage with optimized builds",
          "is_bot": false,
          "headline": "chore(release): prepare v0.5.3",
          "author_name": "GitHub Actions",
          "author_login": "actions-user",
          "committed_at": "2026-03-10T01:29:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4cbe725da7a4f628d5f448c1f8d33ff9d3b000bf",
          "body": null,
          "is_bot": false,
          "headline": "ci: exclude internal/apidrift from gosec linting",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:24:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59fc26f849e93938a339c7381be2368e7e36430e",
          "body": null,
          "is_bot": false,
          "headline": "fix: exclude G122 from gosec and remove nolint directives",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:19:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bfe81263bc6101423e97d56524d5e4ff34538d6c",
          "body": null,
          "is_bot": false,
          "headline": "ci: add gosec config and make security scan tolerant",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:12:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "88c0a443ea999c7bc983dc7745d2adb42efc50aa",
          "body": null,
          "is_bot": false,
          "headline": "fix: inline nolint:gosec directives to suppress unused warning",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:04:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "22514eb3d76c05a5ae9eeb69283248a48eedc3af",
          "body": null,
          "is_bot": false,
          "headline": "ci: fix workflow to tolerate CLI test failures",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T01:00:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "28aceb08c3f91957d027946ec73f6b53d5637c01",
          "body": null,
          "is_bot": false,
          "headline": "fix: correct nolint:gosec directives for path traversal",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T00:57:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a72a4333f721ba38fdf3a7e42f09c78e8144750",
          "body": "… builds\n\nThis release includes:\n\nNew Features:\n- System APKs management (list, get, create, download)\n- Purchases Subscriptions V2 (get, cancel, defer, revoke)\n- Orders management (get, refund, batch-get)\n- External transactions for alternative billing\n- Edit validation and expansion files manageme\n[…]\n(30MB → 21MB, ~30% smaller)\n- Optimized CI/CD builds with -trimpath -ldflags='-s -w'\n- Full API coverage: 280 CLI commands covering 137 endpoints\n\nBreaking Changes: None\n\nCloses: All API coverage gaps",
          "is_bot": false,
          "headline": "feat: Complete 100% Google Play Developer API coverage with optimized…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-10T00:54:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "98f11eaa8838ead9332f4b6eed095a64be0ecacc",
          "body": "- Replace http.Client.Get with http.NewRequest + Do (noctx)\n- Add context import for proper request handling\n- Fix resp.Body.Close error handling (errcheck)\n- Rename min() to minInt() to avoid shadowing builtin (gocritic)\n- Combine append chains to reduce allocations (gocritic)\n- Simplify regex pattern (gocritic)\n- Fix range loop variable copying (gocritic)\n- Fix resource iteration to use index access",
          "is_bot": false,
          "headline": "fix: resolve lint and security issues in apidrift detector",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-09T23:14:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9635bac4f7bcb0bc6981c0fb8e775e283f5b7e62",
          "body": "…lint directive\n\nSecurity scan fixes:\n- Suppress G703 path traversal warning in auth.go (user-provided key file path is expected)\n- Suppress G117 marshal warning in token_source.go (token stored in secure storage)\n- Suppress G122 symlink warnings in cache.go (cache directory is application-controlled)\n- Remove unused nolint:gosec directive in update.go\n\nIncludes additional API drift detection tooling that was in the working directory.",
          "is_bot": false,
          "headline": "chore: suppress false positive security warnings and remove unused no…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-09T23:09:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f312c23dd0e6fa69fca9c166e9f30a20167a717",
          "body": "Implements support for the Google Play Developer API's monetization.onetimeproducts\nendpoint as requested in #3.\n\nAdded commands:\n- monetization one-time-products list\n- monetization one-time-products get <product-id>\n- monetization one-time-products create --product-id <id> --file <json>\n- monetiza\n[…]\ngle.golang.org/api from v0.199.0 to v0.270.0 to access new API types.\nAdded 7 unit tests covering all new commands.\nAdded OneTimeProducts capabilities to the monetization capabilities list.\n\nCloses #3",
          "is_bot": false,
          "headline": "feat: add support for monetization.onetimeproducts API",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-09T23:05:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "155555f03566bd88fadd7017fa2b18ce47b7a092",
          "body": "Installs pre-commit hook that runs:\n- go fmt (formatting check)\n- goimports (import formatting)\n- go vet (static analysis)\n- golangci-lint (comprehensive linting)\n- gosec (security scanning)\n- go test -short (tests)\n\nThis ensures commits match CI quality standards.",
          "is_bot": false,
          "headline": "ci: install comprehensive pre-commit hooks",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-04T17:29:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "218ae844bb0b5f21fd6852d73e7eba058fd2bbfb",
          "body": null,
          "is_bot": false,
          "headline": "feat: add automatic update checking",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-04T15:28:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "10abd6293aa29bce2d54db4c4ebc9a74bc34d188",
          "body": "- Add security scanning to Makefile\n- Add security scanning to CI workflow\n- Enhance pre-commit hooks with security checks",
          "is_bot": false,
          "headline": "chore: add security scanning",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-03T23:21:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "094427dc161641f8faca3c5b6168b8c79d7ca146",
          "body": null,
          "is_bot": false,
          "headline": "chore: add internal/cli/.gitignore for sensitive files",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-03T14:49:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "986549649d522d941702f555bc2768d3ae6319a2",
          "body": "- Replace manual multi-job build with goreleaser/goreleaser-action@v6\n- Add HOMEBREW_TAP_GITHUB_TOKEN environment variable for automatic homebrew-tap updates",
          "is_bot": false,
          "headline": "ci: migrate release workflow to GoReleaser v6 with Homebrew tap support",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-03T14:49:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9e8257cec44e95490d30a777c84ffa75295e11de",
          "body": "…n commands",
          "is_bot": false,
          "headline": "docs: update asc-parity matrix with bulk, compare, testing, automatio…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-03T01:41:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "083e75d02332b52ec3312af10f70d11449084af0",
          "body": null,
          "is_bot": false,
          "headline": "fix: correct README link to master branch",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-03T01:35:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6990a5c81b8baff5126c7108f47682667d921184",
          "body": null,
          "is_bot": false,
          "headline": "fix: trigger on master branch",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-03T01:15:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c0c6b8c8f8928f9a50f024511435405cef5fce2f",
          "body": null,
          "is_bot": false,
          "headline": "feat: add GitHub Pages landing site",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-03T01:09:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b0da4108fc1965431ab837528afc5294cac0ed2",
          "body": "Create auto-release.yml that triggers when CI passes on master/main:\n- Detects commits since last tag\n- Respects [skip-release] in commit messages\n- Auto-bumps patch version (detects minor/major from commit prefixes)\n- Updates CHANGELOG.md with new version section\n- Creates git tag which triggers ex\n[…]\nsed on semantic versioning\n- Changelog generation from commit messages\n- Skip support via [skip-release] tag\n- Manual trigger for controlled releases\n\nNext merge to master will trigger v0.5.2 release.",
          "is_bot": false,
          "headline": "ci: add auto-release workflow for automatic patch releases",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-02T16:51:02Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2d068abe7bd1e309ef98f1952df3d851140801b2",
          "body": "- Rewrite hero section with benefit-focused value props\n- Add comparison table (gpd vs Fastlane) for search visibility\n- Streamline Quick Start to one-block copy-paste\n- Add Go Report Card and Stars badges\n- Create collapsible 'Why gpd over Fastlane?' section\n- Elevate AI Agent Integration section with JSON example\n- Add stronger CTAs (star, issue, sponsor)\n\nThis positions gpd as the fast, modern alternative to Fastlane with clear differentiation on speed, security, and DX.",
          "is_bot": false,
          "headline": "docs: Optimize README for conversion and Fastlane positioning",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-02T16:46:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "26112d341fb0b5504c7bc5b264f9946a3d809024",
          "body": "1. Fix infinite loop in calculateRolloutSteps when stepSize=0\n   - Add guard to prevent infinite loop and return target directly\n\n2. Fix nil pointer dereference in parseDecimalValue\n   - Add nil check for parameter m before accessing fields\n\n3. Fix test configurations that caused hangs\n   - Automati\n[…]\nrue\n   - AutomationMonitorCmd: Set DryRun=true to avoid blocking\n   - KongCheckDoctorCredentials tests: Add parsedConfig initialization\n\nFixes CI failures where tests would hang indefinitely or panic.",
          "is_bot": false,
          "headline": "fix: resolve test failures and infinite loops",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-02T16:32:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1804c8cef8fb3d95027232b067f9eab5a6d9d266",
          "body": "- Update local-prefixes to use correct module path\n- Disable gosec linter for cmd/ directory (already disabled forbidigo)\n- Remove unnecessary //nolint:gosec directives from benchcheck/main.go\n\nFixes CI failures after module path migration.",
          "is_bot": false,
          "headline": "ci: update golangci-lint config for new module path",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-02T14:51:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0efce851b5998abbb86cfa7a3bbb1f6d9581f314",
          "body": "The //nolint:gosec directives must be on the same line as the statement\nto properly suppress the linter warnings. Previously they were on separate\nlines which caused 'nolintlint' to flag them as unused.",
          "is_bot": false,
          "headline": "fix: correct nolint directives for gosec linter",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-02T14:48:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc7f559f653d56a44fd42963f5a29093d2bef944",
          "body": null,
          "is_bot": false,
          "headline": "ci: update release workflow with correct module path",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-02T14:42:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "483512a796f759c183869cfdcec917b258ca8b4d",
          "body": "Fixes #2 - Module path mismatch prevented 'go install' from working.\n\nThe go.mod file declared the module path as 'github.com/dl-alexandre/gpd'\nbut the repository URL is 'github.com/dl-alexandre/Google-Play-Developer-CLI'.\nGo requires these to match exactly for 'go install' to work.\n\nChanges:\n- Updated go.mod module declaration\n- Updated all 47 Go source files with corrected import paths\n\nVerified: Project builds and all tests pass.",
          "is_bot": false,
          "headline": "fix: correct module path to match repository URL",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-02T14:41:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "96ed8d6acec4305a3753adb76a394ffa1ec94fe9",
          "body": "Fix goconst warnings in kong_release_mgmt.go:\n- Add constants: trackAll, eventTypeRelease, eventTypeRollout,\n  recommendContinue, actionCopy\n- Replace repeated string literals with constants\n- Use existing constants: releaseStatusDraft\n\nFix gosec warnings in cmd/benchcheck/main.go:\n- Add nolint:gose\n[…]\n os.Args[0] is program name, not user input (false positive)\n\nFix staticcheck warnings in testutil/golden.go:\n- Replace WriteString(fmt.Sprintf(...)) with fmt.Fprintf(...)\n\nAll linter checks now pass.",
          "is_bot": false,
          "headline": "style: fix linter warnings in source files",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-01T19:21:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "db7745f4808d0d05724ed52b1c07cec0707e787a",
          "body": "Add 15 new test files covering ~14,000 lines of previously untested code:\n- mock_client_test.go: Mock API client infrastructure tests\n- kong_analytics_apps_games_test.go: Analytics, apps, games commands (103 tests)\n- kong_automation_test.go: Automation commands (39 tests)\n- kong_bulk_test.go: Bulk o\n[…]\n(28 tests)\n- Remove kong_new_commands_test.go (replaced by comprehensive tests)\n\nAll tests follow Go conventions with table-driven tests, proper error handling,\nand build tags. Total: ~800+ new tests.",
          "is_bot": false,
          "headline": "test: add comprehensive test coverage for CLI commands",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-01T19:09:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "92534def17eac8919c16b8d0fa6c1da5b0f43f24",
          "body": "Fix 55 lint issues across 11 files:\n- Extract helper methods to reduce function length (funlen) and\n  cyclomatic complexity (gocyclo) in bulk, compare, vitals, release\n  management, testing, and publish commands\n- Replace repeated string literals with named constants (goconst)\n- Fix gofmt formatting\n[…]\nom 40% to 25% temporarily to account\nfor +10k lines of new implementation code. Coverage will climb back\nas unit tests are added incrementally.\n\nCo-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix: resolve all golangci-lint issues and lower coverage threshold",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-01T14:45:10Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "b310a46074213de14693889ab370edd6af500db0",
          "body": "Replace all NoOp stubs with real Google Play API implementations covering\npublishing (release workflow, metadata, testers, builds, beta groups),\npurchases, monetization (products, subscriptions, base plans, offers),\npermissions, recovery, integrity, analytics, apps, games, vitals,\ncompare, release m\n[…]\nte tests\nto verify commands are properly implemented rather than checking for\n\"not yet implemented\" errors. Add 13 plan documents for tracking.\n\nCo-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat: implement 107+ stub commands across all API surfaces",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-01T14:21:56Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "979bd8a12b089ce243520dc5c97bd8b5330dee64",
          "body": null,
          "is_bot": false,
          "headline": "docs: finalize CHANGELOG for v0.5.0",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-01T05:03:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9a10bffaefd08d1fed0c79e9831fad148448464e",
          "body": null,
          "is_bot": false,
          "headline": "docs: update CHANGELOG for v0.5.0 release",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-01T05:01:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "53562410638f32fa116d83c3930dce37dea0ca9a",
          "body": "- Add inProgressReviewBehaviour parameter to edit commit operations\n  (upload, release, bulk) for handling concurrent reviews\n\n- Implement subscriptions v2 deferral API with add-ons support\n  Uses new deferral context with ISO 8601 duration format\n\n- Update google.golang.org/api from v0.199.0 to v0.269.0",
          "is_bot": false,
          "headline": "feat: add Google Play API v2 features",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-03-01T04:50:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b848d0dc6d855d0715f40418da14c4a11e2e643d",
          "body": "- Add comprehensive release notes for testing infrastructure overhaul\n- Document all new features: build tags, benchmark regression,\n  golden file testing, fuzz testing, coverage improvements\n- Update version comparison links",
          "is_bot": false,
          "headline": "docs: update CHANGELOG for v0.4.8 release",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T04:52:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8bf16d765291f6c8e3b653db6e3695a43652499e",
          "body": "- Remove accidentally committed benchcheck binary\n- Add benchcheck to .gitignore to prevent future commits\n- Ensure creds/ directory is properly ignored",
          "is_bot": false,
          "headline": "chore: clean up build artifacts and update gitignore",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T04:37:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6b840fc6e2eaaca8592023b78159490c53e9d33c",
          "body": "The _ = file.Close() pattern satisfies errcheck without needing\nnolint comments - the explicit ignore is sufficient.",
          "is_bot": false,
          "headline": "style: remove unused nolint directives",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T04:28:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c9b72c53f6021af39f952cad9dca3b903532661",
          "body": "Explicitly ignore Close() errors since we only read from files and\nthe OS will clean up file descriptors on process exit anyway.",
          "is_bot": false,
          "headline": "style: add errcheck nolint for file.Close() calls",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T04:26:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6fbc4ca1d8e0a6ea47aa8f9f495218340460ec50",
          "body": "- Add nolint comment for appendHint unparam (pre-existing constant usage)\n- Remove unnecessary fmt.Sprintf in golden.go Diff() method\n- Fix paramTypeCombine: simplify WelchTTest return type\n- Fix exitAfterDefer: manually close files instead of defer + os.Exit",
          "is_bot": false,
          "headline": "style: fix all golangci-lint errors for green CI",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T04:21:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "91510d0153301c42f2a3dcd7a73dd50d5361502b",
          "body": "- Lower coverage threshold from 70% to 40% (actual coverage: 43%)\n- Fix unchecked error returns in benchcheck Reporter methods\n- Remove unused failOnWarn parameter from printGitHubOutput\n- Remove unused getProjectRoot function and filepath import\n- Update all workflow files and Makefile with new threshold",
          "is_bot": false,
          "headline": "ci: fix coverage threshold and linting errors",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T04:15:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "caecab20792eaae6fcecee506a59490068c5e9c5",
          "body": "Build Tags & Test Categories:\n- Add //go:build unit tags to 29 test files for fast unit test execution\n- Add //go:build integration tag to kong_integration_test.go\n- New Makefile targets: test-unit, test-integration, test-e2e, test-flaky\n- Default 'make test' now runs only unit tests (5x faster)\n\nBe\n[…]\n\nCI/CD Ready:\n- All 15 packages pass with -tags=unit -race\n- Build verification for all platforms\n- Linting with golangci-lint\n- No data races detected\n\n5007 insertions, 1472 deletions across 57 files",
          "is_bot": false,
          "headline": "feat(testing): comprehensive testing infrastructure overhaul",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T04:09:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "61ebc872a0185102c7d1b60037a7dd95ebc6fc82",
          "body": null,
          "is_bot": false,
          "headline": "ci: fix release workflow race condition with artifact upload",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-25T02:17:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d1aa2ba005f59eb45d739e0eb6525d6f3579611a",
          "body": "- Add pre-commit hooks with format, lint, and test checks\n- Add Makefile targets: format, install-hooks\n- Standardize release workflow with matrix builds and checksums",
          "is_bot": false,
          "headline": "chore: standardize tooling and CI",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-24T21:40:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bd85521a0804eb180d684103bb4dd35e1af3759f",
          "body": "…boardCmd",
          "is_bot": false,
          "headline": "fix: additional goconst fixes for MonitorAnomaliesCmd and MonitorDash…",
          "author_name": "Dalton Alexandre",
          "author_login": "dl-alexandre",
          "committed_at": "2026-02-24T20:21:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 21,
      "commits_last_year": 122,
      "latest_release_at": "2026-07-17T05:59:26Z",
      "latest_release_tag": "v0.6.5",
      "releases_from_tags": false,
      "days_since_last_push": 1,
      "active_weeks_last_year": 15,
      "days_since_latest_release": 4,
      "mean_days_between_releases": 16.4
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 71,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/dl-alexandre/Google-Play-Developer-CLI",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/dl-alexandre/Google-Play-Developer-CLI",
          "is_deprecated": false,
          "latest_version": "v0.6.5",
          "repository_url": "https://github.com/dl-alexandre/Google-Play-Developer-CLI",
          "versions_count": 31,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-17T05:55:24Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 4
        }
      ]
    },
    "popularity": {
      "forks": 3,
      "stars": 33,
      "watchers": 0,
      "fork_history": {
        "days": [
          {
            "date": "2026-03-22",
            "count": 1
          },
          {
            "date": "2026-03-23",
            "count": 1
          },
          {
            "date": "2026-07-03",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 3,
        "total_forks": 3
      },
      "star_history": {
        "days": [
          {
            "date": "2026-01-25",
            "count": 1
          },
          {
            "date": "2026-02-03",
            "count": 1
          },
          {
            "date": "2026-02-19",
            "count": 9
          },
          {
            "date": "2026-02-20",
            "count": 2
          },
          {
            "date": "2026-02-22",
            "count": 3
          },
          {
            "date": "2026-02-23",
            "count": 5
          },
          {
            "date": "2026-02-25",
            "count": 1
          },
          {
            "date": "2026-03-20",
            "count": 1
          },
          {
            "date": "2026-03-21",
            "count": 3
          },
          {
            "date": "2026-03-22",
            "count": 2
          },
          {
            "date": "2026-03-23",
            "count": 1
          },
          {
            "date": "2026-04-08",
            "count": 1
          },
          {
            "date": "2026-04-29",
            "count": 1
          },
          {
            "date": "2026-05-07",
            "count": 1
          },
          {
            "date": "2026-05-29",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 33,
        "total_stars": 33
      },
      "open_issues_and_prs": 2
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 153835,
      "source_files_sampled": 133,
      "oversized_source_files": 3,
      "agent_instruction_files": [
        "docs/development/AGENTS.md",
        "docs/development/CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 8602
    },
    "dependencies": {
      "manifests": [
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go"
      ],
      "dependencies": [
        {
          "name": "github.com/99designs/keyring",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.2"
        },
        {
          "name": "github.com/alecthomas/kong",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.15.0"
        },
        {
          "name": "github.com/pkg/browser",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20240102092130-5ac0b6a4141c"
        },
        {
          "name": "github.com/xuri/excelize/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.10.1"
        },
        {
          "name": "golang.org/x/oauth2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.21.0"
        },
        {
          "name": "golang.org/x/term",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.44.0"
        },
        {
          "name": "golang.org/x/text",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.38.0"
        },
        {
          "name": "google.golang.org/api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.286.0"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 2,
        "merged_prs": 11,
        "open_issues": 0,
        "closed_ratio": 1,
        "closed_issues": 4,
        "closed_unmerged_prs": 3
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "dl-alexandre",
          "commits": 107,
          "avatar_url": "https://avatars.githubusercontent.com/u/166029845?v=4"
        },
        {
          "type": "User",
          "login": "actions-user",
          "commits": 8,
          "avatar_url": "https://avatars.githubusercontent.com/u/65916846?v=4"
        },
        {
          "type": "User",
          "login": "jkytomaki",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/6197808?v=4"
        }
      ],
      "contributors_sampled": 3,
      "top_contributor_share": 0.922
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "api-drift.yml",
        "api-orchestration.yml",
        "benchmark-regression.yml",
        "benchmarks.yml",
        "ci.yml",
        "coverage.yml",
        "maintenance.yml",
        "pages.yml",
        "release.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yml"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 9,
            "reason": "9 out of 10 merged PRs checked by a CI test -- score normalized to 9",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 1/21 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 3,
            "reason": "project has 1 contributing companies or organizations -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 10,
            "reason": "project is fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "21 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "10 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "c1bc83aee44f47ed3751a9b988e8fa72516355a2",
        "ran_at": "2026-07-22T03:11:27Z",
        "aggregate_score": 4.6,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-20T12:12:46Z",
      "oldest_open_prs": [
        {
          "number": 19,
          "created_at": "2026-07-17T05:57:53Z",
          "last_comment_at": "2026-07-17T05:57:54Z",
          "last_comment_author": "dependabot"
        },
        {
          "number": 20,
          "created_at": "2026-07-20T10:18:12Z",
          "last_comment_at": "2026-07-20T10:18:14Z",
          "last_comment_author": "dependabot"
        }
      ],
      "last_merged_pr_at": "2026-07-17T05:55:24Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/dl-alexandre/Google-Play-Developer-CLI",
    "host": "github.com",
    "name": "Google-Play-Developer-CLI",
    "owner": "dl-alexandre"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 64,
      "inputs": {
        "security": 46,
        "vitality": 80,
        "community": 50,
        "governance": 56,
        "engineering": 85
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 80,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 74,
            "inputs": {
              "commits_last_year": 122,
              "human_commit_share": 0.94,
              "days_since_last_push": 1,
              "active_weeks_last_year": 15
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 1 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 1
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "15/52 weeks with commits",
                "points": 10.4,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 15
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "122 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 122
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "21 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 21,
              "latest_release_tag": "v0.6.5",
              "releases_from_tags": false,
              "days_since_latest_release": 4,
              "mean_days_between_releases": 16.4
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "21 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 21
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~16.4 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 16.4
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 50,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 27,
            "inputs": {
              "forks": 3,
              "stars": 33,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "below_threshold"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "33 stars",
                "points": 24.4,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 33
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "3 forks",
                "points": 2.5,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "good",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 56,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 18,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 3,
              "top_contributor_share": 0.922
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 92% of commits",
                "points": 1.8,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 92
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "3 contributors",
                "points": 4.1,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "merged_prs": 11,
              "open_issues": 0,
              "closed_issues": 4,
              "issue_closed_ratio": 1,
              "closed_unmerged_prs": 3
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "100% of issues closed",
                "points": 46.8,
                "status": "met",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "11/14 decided PRs merged",
                "points": 30.1,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 11,
                      "decided": 14
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 1/21 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 46,
            "inputs": {
              "followers": 18,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "dl-alexandre",
              "public_repos": 142,
              "account_age_days": 838
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "18 followers of dl-alexandre",
                "points": 9.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 18,
                      "login": "dl-alexandre"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "142 public repos, account ~2 yr old",
                "points": 17.6,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 142
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 2
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/dl-alexandre/Google-Play-Developer-CLI"
              ],
              "ecosystems": "go",
              "any_deprecated": false,
              "min_days_since_publish": 4
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on go",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "go"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 4 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "31 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 31
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 85,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 82,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "9 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 9
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "9 out of 10 merged PRs checked by a CI test -- score normalized to 9",
                "points": 18,
                "status": "partial",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": "https://dl-alexandre.github.io/Google-Play-Developer-CLI/",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://dl-alexandre.github.io/Google-Play-Developer-CLI/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 46,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": null,
            "notes": [],
            "value": 46,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 18,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 0,
              "scorecard_aggregate": 4.6
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "9 out of 10 merged PRs checked by a CI test -- score normalized to 9",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 1/21 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is fuzzed",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "21 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "10 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 2
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 80,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.968,
              "agent_instruction_files": [
                "docs/development/AGENTS.md",
                "docs/development/CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 8602
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "docs/development/AGENTS.md, docs/development/CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "docs/development/AGENTS.md, docs/development/CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "91 of 94 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 91,
                      "sampled": 94
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0.02,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0.06
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "2 of the last 100 commits agent-authored or agent-credited",
                "points": 4,
                "status": "partial",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 2,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "6 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 6,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 99,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 153835,
              "source_files_sampled": 133,
              "oversized_source_files": 3
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "3/133 source files over 60KB",
                "points": 53.8,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 133,
                      "oversized": 3
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T03:11:39.512442Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/d/dl-alexandre/Google-Play-Developer-CLI.svg",
  "full_name": "dl-alexandre/Google-Play-Developer-CLI",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.26.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsGo.