Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-27 20:49 UTC

fatecannotbealtered / kibana-cli

A CLI for AI agents to query logs via Kibana. Structured output and composable commands, built for LLM tool use.

GoMIT★ 4 stars⑂ 0 forkssince May 2026View on GitHub ↗

fatecannotbealtered/kibana-cli holds a health index of 61 out of 100, placing it in the Moderate band. It scores highest on AI Readiness (90/100) and lowest on Sustainability & Governance (46/100). It was last updated 10 days ago. A single contributor accounts for most of its recent work.

61
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

61
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

fatecannotbealteredPersonal account
3 followers10 public repossince Apr 2026

This repository is owned by a personal account. A single-owner project carries more continuity risk than an organization-backed one.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publishTags
Gogithub.com/fatecannotbealtered/kibana-cliv1.1.16-2110 days ago
npm@fateforge/kibana-cli1.1.161,3621310 days agokibanalogscliai-agentelkdevtools

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

71Good · 22% of overall
How it's scored
28.8/36Push recency — last push 10 days ago
6.2/36Commit cadence — 9/52 weeks with commits
17.6/18Commit volume — 90 commits in the last year
0/10OpenSSF Scorecard: Maintained — project was created within the last 90 days. Please review its contents carefully
Inputs used
commits_last_year90
human_commit_share0.9
days_since_last_push10
active_weeks_last_year9
How it's scored
27/27Ships releases — 21 releases published
36/36Release recency — latest release 10 days ago
27/27Release cadence — a release every ~3.5 days
8/10OpenSSF Scorecard: Signed-Releases — 5 out of the last 5 releases have a total of 5 signed artifacts.
Inputs used
releases_count21
latest_release_tagv1.1.16
releases_from_tagsno
days_since_latest_release10
mean_days_between_releases3.5

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

48At risk · 18% of overall
How it's scored
7.7/60Stars — 4 stars
0/25Forks — 0 forks
0/15Watchers — 0 watchers
Inputs used
forks0
stars4
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

Community health

92Excellent
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (MIT)
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateyes
How it's scored
41.8/80Monthly downloads — 1,362 downloads/month across go, npm
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesgithub.com/fatecannotbealtered/kibana-cli, @fateforge/kibana-cli
dependents
ecosystemsgo, npm
total_downloads
monthly_downloads1,362
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

46At risk · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0/22.5Commit distribution — top contributor authored 100% of commits
1.4/13.5Contributor breadth — 1 contributors
0/10OpenSSF Scorecard: Contributors — project has 0 contributing companies or organizations -- score normalized to 0
Inputs used
bus_factor1
contributors_sampled1
top_contributor_share1
How it's scored
23.4/46.8Issue resolution — 50% of issues closed
38.2/38.3PR acceptance — 10/10 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/28 approved changesets -- score normalized to 0
Inputs used
merged_prs10
open_issues1
closed_issues1
issue_closed_ratio0.5
closed_unmerged_prs0
How it's scored
10/30Ownership backing — personal (user) account
0/20Verified domain — not applicable to user accounts
4.3/25Owner reach — 3 followers of fatecannotbealtered
8.2/25Track record — 10 public repos, account ~0 yr old
Inputs used
followers3
owner_typeUser
is_verified
owner_loginfatecannotbealtered
public_repos10
account_age_days114
Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.
How it's scored
25/25Published & resolvable — 2 package(s) on go, npm
35/35Publish recency — latest publish 10 days ago
20/20Version history — 21 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesgithub.com/fatecannotbealtered/kibana-cli, @fateforge/kibana-cli
ecosystemsgo, npm
any_deprecatedno
min_days_since_publish10

Engineering Quality

Are baseline engineering and documentation practices in place?

80Good · 20% of overall
How it's scored
24/24CI workflows — 2 workflow(s)
24/24Tests present
16/16Linter config — .golangci.yml
0/9.6Pre-commit hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 2 out of 2 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configno
How it's scored
30/30README
25/25Documentation directory
0/15Documentation / homepage site
10/10Repository description
0/10Topics
10/10Wiki
Inputs used
topics
has_wikiyes
homepage
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

63Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
2.5/2.5CI-Tests — 2 out of 2 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/28 approved changesets -- score normalized to 0
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
5/5Fuzzing — project is fuzzed
2.5/2.5License — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
5/5Security-Policy — security policy file detected
6/7.5Signed-Releases — 5 out of the last 5 releases have a total of 5 signed artifacts.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
5.2/7.5Vulnerabilities — 3 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated18
scorecard_versionv5.5.0
checks_inconclusive0
scorecard_aggregate5.4
How it's scored
35/35Direct dependencies free of known advisories — no direct dependency carries a known advisory
25/25Indirect dependencies free of known advisories — no indirect dependency carries a known advisory
0/40No advisories left outstanding — no advisory carries a publication date
Inputs used
sourceosv
advisories0
affected_packages0
assessed_packages6
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:@fateforge/kibana-cli@1.1.16 runtime dependency closure — what installing the published package pulls in — 6 packages. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

90Excellent · 0% of overall
How it's scored
45/45Agent instructions — .agent/AGENT.md, AGENTS.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 73 of 81 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.901
agent_instruction_files.agent/AGENT.md, AGENTS.md
agent_instruction_max_bytes5,120
How it's scored
18/18One-command bootstrap — Makefile
22/22Automated tests
11/11Lint / format config — .golangci.yml
11/11Static type checking — Go (statically typed)
10/10Reproducible environment — lockfile
10/10Demonstrated agent practice — 16 of the last 90 commits agent-authored or agent-credited
8/8Automated maintenance — 9 of the last 90 commits are automated dependency updates
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfilesgo.sum, package-lock.json
has_dockerfileno
typed_languageyes
bootstrap_filesMakefile
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0.178
toolchain_manifestsgo.mod
dependency_bot_commit_share0.1
How it's scored
45/45Type-checkable code — Go (statically typed)
55/55Manageable file sizes — 0/122 source files over 60KB
Inputs used
primary_languageGo
largest_source_bytes48,943
source_files_sampled122
oversized_source_files0

Key facts

4GitHub stars
1contributors
90commits, last 12 months
10days since last push
21releases
1bus factor
1open issues
Go, npmpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

More detail

OpenSSF Scorecard 5.4 / 10
5.4aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-27 20:49 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
10CI-Tests2 out of 2 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/28 approved changesets -- score normalized to 0
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
10Fuzzingproject is fuzzed
10Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
10Security-Policysecurity policy file detected
8Signed-Releases5 out of the last 5 releases have a total of 5 signed artifacts.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
7Vulnerabilities3 existing vulnerabilities detected
Direct dependencies 5
RegistryPackageVersion constraintManifest
Gogithub.com/sigstore/sigstore-gov1.2.2go.mod
Gogithub.com/spf13/cobrav1.10.2go.mod
Gogithub.com/spf13/pflagv1.0.10go.mod
Gogithub.com/zalando/go-keyringv0.2.8go.mod
Gogopkg.in/yaml.v3v3.0.1go.mod
All dependencies not collected

The resolved dependency set could not be collected for this report: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Dependency advisories 0

Installing npm:@fateforge/kibana-cli@1.1.16 pulls in 6 packages, direct and transitive: 0 carry known advisories, of which 0 are direct dependencies.

No known advisories affect the assessed dependencies.

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 872,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "Go": 688082,
        "Shell": 1071,
        "Makefile": 1570,
        "JavaScript": 38456,
        "PowerShell": 6538
      },
      "pushed_at": "2026-07-17T15:05:52Z",
      "created_at": "2026-05-24T15:35:14Z",
      "owner_type": "User",
      "updated_at": "2026-07-17T14:58:29Z",
      "description": "A CLI for AI agents to query logs via Kibana. Structured output and composable commands, built for LLM tool use.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": null,
      "name": null,
      "type": "User",
      "login": "fatecannotbealtered",
      "company": null,
      "location": null,
      "followers": 3,
      "avatar_url": "https://avatars.githubusercontent.com/u/273528596?v=4",
      "created_at": "2026-04-04T08:48:28Z",
      "is_verified": null,
      "public_repos": 10,
      "account_age_days": 114
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v1.1.16",
          "kind": "patch",
          "published_at": "2026-07-17T15:09:45Z"
        },
        {
          "tag": "v1.1.15",
          "kind": "patch",
          "published_at": "2026-07-08T10:12:12Z"
        },
        {
          "tag": "v1.1.14",
          "kind": "patch",
          "published_at": "2026-07-02T06:31:30Z"
        },
        {
          "tag": "v1.1.13",
          "kind": "patch",
          "published_at": "2026-06-29T02:44:06Z"
        },
        {
          "tag": "v1.1.12",
          "kind": "patch",
          "published_at": "2026-06-25T15:30:38Z"
        },
        {
          "tag": "v1.1.11",
          "kind": "patch",
          "published_at": "2026-06-25T09:30:38Z"
        },
        {
          "tag": "v1.1.10",
          "kind": "patch",
          "published_at": "2026-06-25T06:04:22Z"
        },
        {
          "tag": "v1.1.9",
          "kind": "patch",
          "published_at": "2026-06-22T15:32:23Z"
        },
        {
          "tag": "v1.1.8",
          "kind": "patch",
          "published_at": "2026-06-21T10:03:26Z"
        },
        {
          "tag": "v1.1.7",
          "kind": "patch",
          "published_at": "2026-06-16T13:49:17Z"
        },
        {
          "tag": "v1.1.6",
          "kind": "patch",
          "published_at": "2026-06-16T12:40:36Z"
        },
        {
          "tag": "v1.1.5",
          "kind": "patch",
          "published_at": "2026-06-16T09:46:34Z"
        },
        {
          "tag": "v1.1.4",
          "kind": "patch",
          "published_at": "2026-06-15T11:47:09Z"
        },
        {
          "tag": "v1.1.3",
          "kind": "patch",
          "published_at": "2026-06-14T11:15:01Z"
        },
        {
          "tag": "v1.1.2",
          "kind": "patch",
          "published_at": "2026-06-14T00:45:04Z"
        },
        {
          "tag": "v1.1.1",
          "kind": "patch",
          "published_at": "2026-06-13T15:04:02Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2026-06-06T23:27:55Z"
        },
        {
          "tag": "v1.0.3",
          "kind": "patch",
          "published_at": "2026-06-05T11:33:42Z"
        },
        {
          "tag": "v1.0.2",
          "kind": "patch",
          "published_at": "2026-06-04T08:10:50Z"
        },
        {
          "tag": "v1.0.1",
          "kind": "patch",
          "published_at": "2026-05-25T18:32:52Z"
        },
        {
          "tag": "v1.0.0",
          "kind": "major",
          "published_at": "2026-05-24T16:44:20Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "cb60c1903dbbf9ea1c64d9c86ff1bd785797bdda",
          "body": null,
          "is_bot": false,
          "headline": "fix: align queries with Kibana Discover (v1.1.16)",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-07-17T14:57:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "27bd7302576088396a93fe242d05164d2ca2230c",
          "body": "… (#12)\n\nBumps [github.com/sigstore/sigstore-go](https://github.com/sigstore/sigstore-go) from 1.2.1 to 1.2.2.\n- [Release notes](https://github.com/sigstore/sigstore-go/releases)\n- [Commits](https://github.com/sigstore/sigstore-go/compare/v1.2.1...v1.2.2)\n\n---\nupdated-dependencies:\n- dependency-name\n[…]\nirect:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github.com/sigstore/sigstore-go from 1.2.1 to 1.2.2…",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-12T17:53:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "276b72d62028177f2a8dd8649c59ddd320b9439d",
          "body": null,
          "is_bot": false,
          "headline": "fix: align update final-state contract",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-07-08T10:01:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d404e5fc966d3f74e803da0d6734d34c04ca16c",
          "body": null,
          "is_bot": false,
          "headline": "chore(release): v1.1.14",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-07-02T03:55:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0441b92d90acaa140668ee3cbff8b9cbd6dc8e65",
          "body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6 to 7.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v6...v7)\n\n---\nupdated-dependenc\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/checkout from 6 to 7 (#10)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-30T01:53:45Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "899c5657504f7563d4b14974736ff6a46772571a",
          "body": "sync-version bumped only the lock root version and optionalDependency pins,\nleaving the node_modules/@fateforge/*-<platform> subentries without a version.\nOnce those platform packages were published, npm ci's consistency check failed\n(lock file's <pkg>@ does not satisfy <pkg>@<version>) — main CI red.\n\nversion-files.js now also syncs the lockfile platform subentries (stripping any\nstale resolved/integrity); check-version.js guards them so the drift fails the\noffline CI guard, not the build.",
          "is_bot": false,
          "headline": "fix(npm): sync lockfile platform subentry versions",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-29T11:57:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f1fbb5d90600c20dca2352fe45645ef5502485b0",
          "body": "F1: verify_signature already cancelled on SIGINT and cache-first (WithForceCache);\nadd an explicit 30s wall-clock timeout so a hung Sigstore CDN on a cold/expired\ncache cannot stall the stage indefinitely. (Version-aware notice reads were\nalready in place — no F2 change needed.)\n\nBump 1.1.12 -> 1.1.13. CLI-SPEC §14.",
          "is_bot": false,
          "headline": "fix(update): bound the TUF trust-root refresh with an explicit timeout",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-29T02:19:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2e7db7297ff51f19a4312106aa1c520dd929bbb",
          "body": "…sk_tier at top level\n\n- Add independent hardcoded exit/retryable table for all 16 core codes (systemic 3c)\n- Assert MetaRequiredKeys presence in meta (systemic 3a)\n- Assert success envelope exposes \"data\" when a non-empty payload is provided (systemic 3b)\n- Expose risk_tier at the top level of reference data and schema (contract required_top_keys)",
          "is_bot": false,
          "headline": "fix(conformance): strengthen contract conformance test and surface ri…",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-25T14:24:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9cf8385dd2eeaf5f75fc447be18db747470c1f1d",
          "body": null,
          "is_bot": false,
          "headline": "chore(release): v1.1.12",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-25T13:18:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "13588b9ea9b136864680174c8ef12e7bcd2d0eeb",
          "body": "…c template\n\n- Vendor contract/contract.json + .agent specs pinned to ai-native-cli-spec@v1.4\n  (.agent/SPEC_VERSION); generate internal/contract/contract_gen.go from it.\n- Wire output.SchemaVersion / ExitCodeForErrorCode / RetryableForErrorCode to the\n  generated contract module so the envelope sch\n[…]\nical contract with exact exit+retryable; envelope + meta keys match.\n- Add scripts/{gen-contract,sync-spec,check-spec,spec-files}.js and a CI\n  'Verify spec/contract sync' step (fail-closed on drift).",
          "is_bot": false,
          "headline": "feat(contract): adopt single-sourced canonical JSON contract from spe…",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-25T13:18:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "52cdb72001369940857688217c6287104cccdd6a",
          "body": null,
          "is_bot": false,
          "headline": "chore(release): v1.1.11",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-25T09:18:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3447a99dd5956ba8528f7c6344da41db04d0e70d",
          "body": "…y printing the command\n\nA bare `update` now upgrades in one call regardless of install method. For an\nnpm/Go-managed install the binary is owned by the package manager, so instead of\nreturning package_manager_required, update runs `npm install -g @pkg@<ver>` (or\n`go install …`) on the user's behalf\n[…]\neplaced=false and\nthe exact command to run manually.\n\nDocs (README, CHANGELOG, SKILL, reference, --help) synced; tests cover npm/Go\nexecution + Skill sync, dry-run preview (no exec), and failure path.",
          "is_bot": false,
          "headline": "feat(update): drive package manager on npm/Go installs instead of onl…",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-25T09:14:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e8f429c3140ab731b7007dc01721a0f3ca63052b",
          "body": "… overhaul\n\n- update: replace the running binary in place on Windows via the same\n  cross-platform rename trick used on Unix (write .<name>.new -> rename the\n  in-use binary to .<name>.old -> move .new into place -> roll back on\n  failure). Windows no longer returns manual_update_required; a success\n[…]\non --target-version; keep\n  --version as a hidden deprecated alias.\n- update notice: converge notice severity onto info/warning.\n- bump version to 1.1.10; sync .agent spec copies, SKILL.md, CHANGELOG.",
          "is_bot": false,
          "headline": "release v1.1.10: in-place Windows self-update + update error-taxonomy…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-25T05:57:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1c7a543fb47db57e034f081c13b1a34bbc3ba1fd",
          "body": "Commit b81c2d6 (cache re-validation) shipped without a changelog entry; record it under [Unreleased]. No version bump, no tag yet.",
          "is_bot": false,
          "headline": "docs(changelog): record stale-notice fix under Unreleased",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-24T19:20:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b81c2d6536e12d491f1438079d9bead96c1365e3",
          "body": "Re-validate cached notices against the running version instead of the version cached at write time, so an upgraded CLI stops advertising an update to a version it already runs; refresh current_version/message while still behind latest. Adds tests for the drop-stale and refresh-current cases.",
          "is_bot": false,
          "headline": "fix(update): drop stale cached update notice after upgrade",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-24T19:09:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b6bcd8ca246d72dc38b2cbc077f665bc586ae629",
          "body": "Attach the cached update-available notice to every command's meta.notices (read-only from the local cache, omitempty, zero network) so agents see it regardless of command. Grade severity from the embedded CHANGELOG delta: warning when the delta since the running version has a security entry or a maj\n[…]\n. Also fix leftover three-phase update wording in skills (test-prompts.json self-update fixture; gitlab bootstrap.md / archery playbook where applicable). Sync .agent specs to ai-native-cli-spec v1.3.",
          "is_bot": false,
          "headline": "feat: update notice in meta.notices + changelog-graded severity (v1.1.9)",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-22T15:21:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "789624554371d81b4294e0453c76ee5b52993b17",
          "body": null,
          "is_bot": false,
          "headline": "fix(format): gofmt report.go after removing unused failIntegrity",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-21T09:55:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b1c3fbdb345c1c52c1ee6f10171b823df65b5bac",
          "body": "…rror path)",
          "is_bot": false,
          "headline": "fix(lint): remove unused failIntegrity (superseded by staged update e…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-21T09:49:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8d25d928971577bedf18f3e38037a64dde3033de",
          "body": "Single-command update (no leaf subcommands, no confirm token): bare \\`update\\` verifies the release, replaces the binary, and syncs the Skill in one call; --check/--dry-run are optional read-only. Add staged failure/interruption envelope (stage + current_version + binary_replaced + skill_sync_status\n[…]\nSON, partial-success skill-sync, and E_IO (->1) / E_INTERRUPTED (->130). Signature->checksum verification order and E_INTEGRITY fail-closed are unchanged. Sync .agent specs to ai-native-cli-spec v1.2.",
          "is_bot": false,
          "headline": "feat: single-command update + failure/interruption contract (v1.1.8)",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-21T09:35:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "dac1f828e52eac7968ee7a7ec5eb57392554566a",
          "body": null,
          "is_bot": false,
          "headline": "docs: refresh README badge header",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-17T16:13:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1f18d258a4761fe4e57b3c933b56963ec812632a",
          "body": "…-hint\n\ndocs: split install block comment, add agent skills-directory hint",
          "is_bot": false,
          "headline": "Merge pull request #9 from fatecannotbealtered/docs/install-skill-dir…",
          "author_name": "fatecannotbealtered",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-17T12:25:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e72938a06c0110f6ea2a8d07f09e52415bed2ae",
          "body": "Splits the README Agent-Install comment into a CLI line and a Skill line, with the Skill line carrying the \"copies into your agent-supported skills directory\" hint (matches the SKILL.md install comment). Docs-only; EN + zh.",
          "is_bot": false,
          "headline": "docs: split install block comment, add agent skills-directory hint",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-17T06:41:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bb5f7ae96d29b5c9e0d363afaa8eb5830abfa27a",
          "body": "…ift guard\n\nVersion is now derived from package.json everywhere instead of hand-copied:\n- scripts/version-files.js registry + sync-version.js (npm version hook) +\n  check-version.js (CI guard in ci.yml and release.yml).\n- .npmrc git-tag-version=false: npm version only edits files, no commit/tag.\nSou\n[…]\nile pins, SKILL.md, or __version__.\n\nAlso de-pin version literals in cmd/changelog_test.go and\ncmd/coverage_gaps_test.go (use packageJSONVersion()), so a version bump no\nlonger requires editing tests.",
          "is_bot": false,
          "headline": "build: single-source version bump via npm version + fail-closed CI dr…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-16T16:43:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fb77f16bb3e545e2c1fc482e89112c958f8c2d70",
          "body": "…version\n\nThe prior release left the npm optionalDependencies pins at the previous binary\nversion, so npm install resolved a stale platform binary. This patch bumps every\nversion location (top-level, platform pins, SKILL version + min_version) together\nand ships the publish-time pin sync.",
          "is_bot": false,
          "headline": "fix(npm): patch release — sync optionalDependencies platform pins to …",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-16T13:40:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e0fae1346b596e396cb302302cb425ebf9f234d2",
          "body": "…ync at publish\n\nThe version bump missed the optionalDependencies platform-package pins, so the\nnpm main package would resolve a stale platform binary. Bump the pins to match\nthe package version, and harden the publish step to rewrite optionalDependencies\nfrom the top-level version before 'npm publish' (single source of truth — the\npins can no longer drift).",
          "is_bot": false,
          "headline": "fix(npm): bump optionalDependencies platform pins to match version; s…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-16T13:24:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c0a2e4282f2d0514b6f71d8c4089653eed435385",
          "body": "…ed, no skip\n\nReplace the external cosign shell-out with embedded sigstore-go verification\n(TUF trust root from the library's embedded root.json — no user-environment\ndependency). A missing signature bundle, a signature that does not verify\nagainst this repo's tagged release-workflow identity, or a checksum mismatch all\nrefuse the update. Integrity failures return the non-retryable E_INTEGRITY code\n(exit 1). Releases signed with cosign sign-blob --new-bundle-format. Bump to v1.1.6.",
          "is_bot": false,
          "headline": "feat(update): verify release Sigstore signature in-process, fail-clos…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-16T12:19:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e0c3c2bc280a4d4916676264c88ac0479a8a696",
          "body": "Save now reads the store before writing, so a file-as-home surfaces as\n'reading config' (ENOTDIR) on Unix and 'creating config dir' on Windows.\nAccept both so CI passes on all platforms.",
          "is_bot": false,
          "headline": "test: accept Unix ENOTDIR in TestSaveStoreMkdirFailsWhenHomeIsFile",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-16T09:41:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e3eb262b059c9afedec470f29772a610ea6262b",
          "body": "…-pattern trace (v1.1.5)\n\n- Multi-system contexts (kubectl-style): config.json schema v2 context store;\n  context list/current/use/add/remove; --context / KIBANA_CLI_CONTEXT selection;\n  per-context defaultIndex and optional fieldMapFile; auth login --context.\n- Normalized search output: canonical _\n[…]\nANA_CLI_HOST: a lone KIBANA_CLI_PASSWORD is ignored\n  (not a partial-env error) and no longer suppresses a keyring context.\n- Search output always preserves _index/_id (hit provenance) under --fields.",
          "is_bot": false,
          "headline": "feat: multi-system contexts, normalized output, patterns infer, multi…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-16T09:34:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c5fe2b004670ad06174149ca192ce629035a6439",
          "body": null,
          "is_bot": false,
          "headline": "docs(sync): backfill .agent batch contract (CLI-SPEC §15) from template",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-15T12:23:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0b1b39d40ffd7fe3fba223457423a8d10158274",
          "body": "The hyphenless @fatecannotbealtered org was taken on npm; ananke too.\nFinal scope is @fateforge. GitHub org, Go module path, and npx skills\nsource (all bare 'fatecannotbealtered') are unchanged.",
          "is_bot": false,
          "headline": "chore(scope): finalize npm scope as @fateforge (was placeholder @ananke)",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-15T11:37:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5778d2ecae57598708c3be111c4bf2b63cd057bb",
          "body": "- npm scope @fatecannotbealtered- -> @ananke across package.json\n  (name + 6 platform optionalDependencies), README, README_zh, SKILL,\n  and the update command's recommended npm install string\n- bump version 1.1.3 -> 1.1.4 (package.json, SKILL frontmatter\n  version + min_version, embedded package.js\n[…]\ny)\n- CHANGELOG: cut [1.1.4] - 2026-06-15 with scope-migration note\n- update version assertions in changelog/coverage tests to 1.1.4\n\nBare github.com/fatecannotbealtered org/module path left untouched.",
          "is_bot": false,
          "headline": "chore: migrate npm scope to @ananke + release v1.1.4",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-15T11:06:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a69232d2c30f52672454640ad772c20066a041d7",
          "body": "- .agent/CLI-SPEC(.zh): single-use confirm tokens + output_schema shapes\n- CI: align GitHub Actions versions with the spec template",
          "is_bot": false,
          "headline": "chore: sync .agent CLI-SPEC + bump CI actions to template versions",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-14T13:43:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f8c4fccc7387db9a7dc27acea7db302ba311a98b",
          "body": "Agent-usability round: real per-command output_schema + examples[] in\nreference; single-use confirm tokens (safe-retry) + resource-version\nbinding where available; new commands and fixes per CHANGELOG [1.1.3];\nall live-smoked where the environment allowed (see docs evidence).",
          "is_bot": false,
          "headline": "chore: release v1.1.3",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-14T10:53:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f6d5ffcccf9b46a0f7df1fb7cfad6b218cb2647",
          "body": "… 7.10.1)\n\nsearch --dsl, search_after cursor, agg date_histogram + metric, objects\nlist/get all PASS against real multi-million-doc log indices.",
          "is_bot": false,
          "headline": "docs(live-smoke): record v1.1.3 new commands verified live (ES/Kibana…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-14T10:14:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "90517e50b441877f58fbc65d1d13c7b170a50d55",
          "body": "… search_after cursor\n\n- search --dsl <json>: raw ES _search passthrough for queries the flag\n  surface can't express (hits still _untrusted-tagged).\n- agg --agg-type date_histogram + --metric/--metric-field metric sub-aggs.\n- objects list/get: saved-objects (dashboard/visualization/search/index-pat\n[…]\n/description _untrusted.\n- search --search-after: stable sort-based cursor (next_search_after) for\n  large/time-ordered result sets, vs the racy offset.\nAll have output_schema + examples + mock tests.",
          "is_bot": false,
          "headline": "feat: raw DSL search, date-histogram/metric aggs, saved-objects read,…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-14T09:14:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "af5274bbd564e52933d239553dded1abd5927774",
          "body": "A confirm token may drive exactly one write (auth/config/update); replay\nreturns E_CONFLICT so it can't duplicate. Store at\n~/.kibana-cli/confirm-consumed.json (0600), pruned by expiry, graceful\ndegrade. No upstream resource version for these local writes, so single-use\nis the safe-retry mechanism. Wired at the writePlan chokepoint.",
          "is_bot": false,
          "headline": "feat(confirm): single-use confirm tokens (safe-retry)",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-14T08:37:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9e9cff2d237bededca2f5566f7bd4adcc193fd81",
          "body": "Replace prose output_schema strings with cnstock-style schema labels + a\ntop-level schemas catalog (fields/untrusted from flatten_search projection\n+ per-command data maps), runnable example per leaf. Adds regression guard.",
          "is_bot": false,
          "headline": "feat(reference): structured output_schema + examples[] + guard",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-14T07:23:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f77db07a6c8d9994368f3c697e956c67db72f160",
          "body": "Version bump and finalized CHANGELOG for the agent-usability improvements\nfrom the AI-native fleet self-evaluation. See CHANGELOG [1.1.2] for details.",
          "is_bot": false,
          "headline": "chore: release v1.1.2",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-14T00:34:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b6af9486cdebcedc2eab7d0aba087ecfa578388",
          "body": "cmd.exitCodeForStatus and output.exitCodeForHTTP were two parallel\nmappers that could drift. Export output.ExitCodeForHTTP as the single\nsource and have cmd delegate to it. Behavior unchanged for all real\nstatuses; removes the determinism risk flagged by the fleet\nself-evaluation (score 86/100).\n\n(Credential-backend visibility, also flagged, is already satisfied via\ncontext.kibana.source = keyring/env-cli/file/none.)",
          "is_bot": false,
          "headline": "refactor: unify HTTP-status→exit-code mapping into one source of truth",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-13T23:40:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "594d4725c5ae5391a169373970596d5ba3e40aba",
          "body": "The npm-audit job ran 'npm ci', which strict-validates the optional\nself-platform binary packages against package-lock. Those packages are\npublished in lockstep with the main package (by the tag Release\nworkflow), so their exact version is unpublished at pre-tag CI time, and\nnewer npm rejects the ba\n[…]\n=optional' + 'npm audit --omit=optional' so\nthe audit never depends on the self-platform binaries. Third-party deps\nare still audited; platform binaries resolve normally for end users at\ninstall time.",
          "is_bot": false,
          "headline": "ci: make npm audit resilient to in-lockstep platform packages",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-13T23:09:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8f51a5e9056e2c8075996de3ed588460bbb89d14",
          "body": "Live smoke against a real Elasticsearch+Kibana 7.10.2 instance with\nX-Pack security enabled (docs/LIVE-SMOKE-EVIDENCE.md): auth login →\nkeyring credential store, doctor, patterns list/fields, search, agg\n(buckets matched seeded data), error taxonomy (E_NOT_FOUND /\nE_VALIDATION / E_CONFIG), and logout all PASS; no password leaked to\ndisk.\n\nrelease_readiness flipped to stable/live_smoke_status=verified; version\nbumped to 1.1.1 across skillMinVersion, package.json, lockfile, and\nSkill frontmatter.",
          "is_bot": false,
          "headline": "release 1.1.1: stable via recorded live smoke",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-13T14:59:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd88c07e401ca0a27af008355be21785b5fc5059",
          "body": "pwsh splits the unquoted -coverprofile=coverage.out at the dot, passing\na stray '.out' package arg to go test (synced from gitlab-cli fix).",
          "is_bot": false,
          "headline": "fix CI: force bash for coverage step (windows pwsh .out splitting)",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-13T13:39:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c4d827838643027a041372b58c71202bbad54e32",
          "body": "Bumps [actions/setup-node](https://github.com/actions/setup-node) from 4 to 6.\n- [Release notes](https://github.com/actions/setup-node/releases)\n- [Commits](https://github.com/actions/setup-node/compare/v4...v6)\n\n---\nupdated-dependencies:\n- dependency-name: actions/setup-node\n  dependency-version: '\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/setup-node from 4 to 6 (#6)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-12T19:32:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0d4c4d1089e65b4904129674f9f2e1606db1231c",
          "body": "Bumps [github.com/spf13/pflag](https://github.com/spf13/pflag) from 1.0.9 to 1.0.10.\n- [Release notes](https://github.com/spf13/pflag/releases)\n- [Commits](https://github.com/spf13/pflag/compare/v1.0.9...v1.0.10)\n\n---\nupdated-dependencies:\n- dependency-name: github.com/spf13/pflag\n  dependency-versi\n[…]\nirect:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github.com/spf13/pflag from 1.0.9 to 1.0.10 (#7)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-12T19:32:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9a4dc084a8fe3ade6844f0ea0d1f303c7c9371fb",
          "body": "Bumps [goreleaser/goreleaser-action](https://github.com/goreleaser/goreleaser-action) from 6 to 7.\n- [Release notes](https://github.com/goreleaser/goreleaser-action/releases)\n- [Commits](https://github.com/goreleaser/goreleaser-action/compare/v6...v7)\n\n---\nupdated-dependencies:\n- dependency-name: go\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump goreleaser/goreleaser-action from 6 to 7 (#2)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-12T19:25:05Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c2cd68783205f3f4638dc0dc142924473777c669",
          "body": "Bumps [actions/setup-go](https://github.com/actions/setup-go) from 5 to 6.\n- [Release notes](https://github.com/actions/setup-go/releases)\n- [Commits](https://github.com/actions/setup-go/compare/v5...v6)\n\n---\nupdated-dependencies:\n- dependency-name: actions/setup-go\n  dependency-version: '6'\n  depen\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/setup-go from 5 to 6 (#3)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-12T19:24:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2dcd245724a1d1185e3e5d301d9a37019c9b5216",
          "body": "Bumps [golangci/golangci-lint-action](https://github.com/golangci/golangci-lint-action) from 8 to 9.\n- [Release notes](https://github.com/golangci/golangci-lint-action/releases)\n- [Commits](https://github.com/golangci/golangci-lint-action/compare/v8...v9)\n\n---\nupdated-dependencies:\n- dependency-name\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump golangci/golangci-lint-action from 8 to 9 (#4)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-12T19:24:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d1bb99efde0292f0725cb0157ea30f8fcc30ee8e",
          "body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 6.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v4...v6)\n\n---\nupdated-dependenc\n[…]\nirect:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/checkout from 4 to 6 (#5)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-12T19:24:39Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fff92165c6f5ce4a017182330c7cf1d43603e032",
          "body": "Bumps [github.com/zalando/go-keyring](https://github.com/zalando/go-keyring) from 0.2.6 to 0.2.8.\n- [Release notes](https://github.com/zalando/go-keyring/releases)\n- [Commits](https://github.com/zalando/go-keyring/compare/v0.2.6...v0.2.8)\n\n---\nupdated-dependencies:\n- dependency-name: github.com/zala\n[…]\nirect:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump github.com/zalando/go-keyring from 0.2.6 to 0.2.8 (#8)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-12T19:24:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3ceb5207492cbf07ba7c9e05161e897b34aed84b",
          "body": "The previous lint sweep edited files via scripted replacements without\nre-running gofmt; CI's formatting gate caught it.",
          "is_bot": false,
          "headline": "gofmt the lint-fix files",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T19:16:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "761af5567c7f9d2be368de1b6d122965b2820e00",
          "body": "- errcheck: discard fmt.Fprint* returns in the update-notice help hook\n- unused: remove confirmTokenFor wrapper (confirmTokenForExpiry is the\n  real entry point)",
          "is_bot": false,
          "headline": "fix CI lint findings",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T18:44:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a84fedc8826d69aae41336dee2fd9cbc0e9544f",
          "body": "go build -o <name> does not append .exe on Windows, so the windows\nsmoke step's ./<name>.exe --help failed; build+smoke is now one bash\nstep naming the binary per-OS (synced from gitlab-cli/template fix).",
          "is_bot": false,
          "headline": "fix CI: windows smoke test never found the binary",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T16:34:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f79a23f9fe0f79180038a8b5cc6e8f8162b6dda0",
          "body": "npm publish \"$dir\" treats npm-platform/<pkg> as a GitHub repo\nshorthand and dies in git ls-remote; ./$dir forces a local directory.",
          "is_bot": false,
          "headline": "fix release: npm publish local path",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T16:32:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "48b8af1b8532006978492f376e9639f206dd25c8",
          "body": "execFileSync pipes the release binary through stdout with a default\n1 MiB maxBuffer; real binaries are tens of MB, so zip extraction died\nwith spawnSync ENOBUFS (first hit: outlook-cli v1.1.1 publish job).\nRaise maxBuffer to 256 MiB.",
          "is_bot": false,
          "headline": "fix ENOBUFS in npm platform package extraction",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T16:16:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b8ff392661b3d05c8301a915628ac37a94c6501",
          "body": "Credential-at-rest is now the keyring three-part pattern with file\nencryption as a visible fallback, env vars as the recommended secret\nchannel, and an honest note on Windows 0600 semantics (matching\nai-native-cli-spec b8cfd93).",
          "is_bot": false,
          "headline": "sync .agent SEC-SPEC from template",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T07:14:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a4444a4d4b75ce27aa19097d03a7e0b06f0e990b",
          "body": "cmd/fcc_guard_test.go enumerates leaf commands from reference and\nasserts each has a command-level test; kibana-cli passed with no gaps.\n.agent CLI-SPEC copies synced from template.",
          "is_bot": false,
          "headline": "add FCC enumeration guard (14/14 leaves covered)",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T02:37:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b977bdadd162ce1618773878277ad0d0b7e0f21",
          "body": "stdout failure envelope (CLI-SPEC §4), HMAC confirm-token requirement\n(§7), signature_status/signature_verified fields (§14), and the Skill\nfrontmatter version rule, matching ai-native-cli-spec f877d4e.",
          "is_bot": false,
          "headline": "sync .agent specs from template",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-12T01:55:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c6bf547cc12c9fd88e2fcc8f391e361a13a7b7f",
          "body": "- confirm tokens are HMAC-signed with ~/.kibana-cli/confirm.secret (0600,\n  created on first use) so they cannot be minted without a real --dry-run\n- golangci-lint v2 toolchain (Makefile /v2 path, action@v8)",
          "is_bot": false,
          "headline": "sign confirm tokens with machine-local HMAC",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-11T16:44:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "82e360bcea586012592fa291e050563bd9a035f2",
          "body": null,
          "is_bot": false,
          "headline": "feat: expose release readiness metadata",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-11T08:30:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9c0ae26b34e8922f414ccf702b45a70807d4e5e",
          "body": null,
          "is_bot": false,
          "headline": "docs: define functional contract coverage gate",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-09T14:33:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "098732711e5c3f2c7256d7b20fda4a0d34c462e2",
          "body": null,
          "is_bot": false,
          "headline": "Add update notices to maintenance commands",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-09T10:27:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0a920343ceb16e24737bf0ae26d94465bad6803c",
          "body": null,
          "is_bot": false,
          "headline": "ship npm platform packages",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-09T09:50:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d96e7b75f5bb28880f7af5835ec5a2ad87f81ff",
          "body": null,
          "is_bot": false,
          "headline": "sync skills during self-update",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-09T08:31:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "917ce24eeda79e272d0156a12cb1d9695a02a8db",
          "body": null,
          "is_bot": false,
          "headline": "align skill spec with generic agent metadata",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-09T06:50:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "87ee40ea441a680d5c0b77a6bf1c4b07628d48b7",
          "body": null,
          "is_bot": false,
          "headline": "standardize agent-native docs and skills",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-09T06:38:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2caae6a1f620f2894b303b67a1fd8b4238186d5",
          "body": null,
          "is_bot": false,
          "headline": "Align kibana-cli with agent contract",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-08T13:40:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5c0ff356f7f996b996a97caccf38b1769ee1821b",
          "body": null,
          "is_bot": false,
          "headline": "chore: add .agent/ spec docs (English only) from ai-native-cli-spec",
          "author_name": "Sean Guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-07T16:46:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb3913fa653c0c2de1d316f8825bac165fdbc416",
          "body": null,
          "is_bot": false,
          "headline": "Fix unused test helper",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-06T23:16:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b6d133617e7082a969a9c3d2fbeb5037b139c829",
          "body": null,
          "is_bot": false,
          "headline": "Prepare v1.1.0 release",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-06T23:09:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d162bed45c24a0dabb2cd0c377d5c7b4214ab201",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v1.0.3",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-05T11:26:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fe9611e1a8841e8ccd03ffae99e2a5c97f63bd11",
          "body": null,
          "is_bot": false,
          "headline": "feat: add global output format",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-05T08:40:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "953cfbfcbcbe449c7c0dbfb527531a59f05cf607",
          "body": null,
          "is_bot": false,
          "headline": "feat: add update command",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-05T07:44:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b21fc6be0c76dcbae49b25da05b15f880e68fdc9",
          "body": "Bump version to 1.0.2 and document the broad-query default, --precise\nopt-in, removed --msg-only/--all-fields flags, trace free-text fallback,\nand search zero-hit diagnostics in CHANGELOG.",
          "is_bot": false,
          "headline": "chore: release v1.0.2",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-04T07:24:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b07719cca4e4ef8d02ef4ffb23da5eb6721adef7",
          "body": "Flip search/agg --query semantics to recall-first: search across all\nfields by default, narrow to message field(s) via --precise. Remove the\ndeprecated --msg-only / --all-fields flags (no backward compat).\n\n- precise mode does match_phrase across all configured message fields\n- trace field mode adds\n[…]\no silent zero hits)\n- search zero-hit diagnostics: no_data_in_window / matched_in_other_fields\n  / filters_excluded_all via size:0 Count probe\n- update SECURITY.md and SKILL.md to document new default",
          "is_bot": false,
          "headline": "feat: default --query to broad all-fields search with --precise opt-in",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-06-04T07:00:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5261649ed1e4310e95cd0c830deb9e7610d594fc",
          "body": "Improve Quick start with bilingual one-shot snippets for CLI, skill install (-y -g only), and verification.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "docs: add agent copy-paste install blocks in README and SKILL",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-25T19:21:06Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2a9c6a9cbfdcff14fc20537f66ef23508ef0e4cc",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: goreleaser v2.16 release config and skip duplicate npm publish",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-25T18:30:44Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "5167987b2f75be421a8c102ba7c69b023fc5bc7f",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: move goreleaser skip-existing to CLI flag for v2.16",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-25T18:27:56Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "ae75718f780a9f0fb73bc3d8114d48a70492b457",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: satisfy golangci-lint in test files",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-25T18:22:27Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "86fdef8196c40e028be551658e10cc234b812cb6",
          "body": "Bug fixes for KIBANA_CLI_TIMEOUT, auth status ok semantics, partial env credentials, context/doctor JSON envelope, dry-run data-view, search totals, and npm checksum verification.\n\nAdds 100% statement coverage across all Go packages, scripts/coverage.ps1 gate, and updated docs/SKILL for Agent workflows.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: release v1.0.1 with agent fixes and full test coverage",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-25T18:20:05Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "76b4202567ba7102d0fc01b18750639efbdb0066",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "docs: align Install section with sibling CLI projects",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-25T03:09:04Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9b5d84cc6c2a9716855c0a42eadfc4187128feef",
          "body": "…ssets\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: decouple npm publish from GoReleaser and skip existing release a…",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T17:00:36Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "25c64e90fac427a3711bb441fe92a575de49c9a7",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "chore: add publishConfig for scoped npm package",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:54:33Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "d37c7a4e3defe2cae701d747ddb3f9821232a32a",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: skip npm publish when NPM_TOKEN is not configured",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:38:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "83576e834dedc8225c6e383a9041203396baff79",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: write release notes outside repo to keep GoReleaser tree clean",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:36:34Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "8092a176a92b2abb55b7136caab061aa22516e52",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: install ripgrep in Release workflow check-clean step",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:31:01Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "1d15c49e1a80c66799798abfe5780b14ad266427",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: install ripgrep in CI for check-clean script",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:27:07Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "904de11cbee495d921090eb80239968315fe3572",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: satisfy errcheck for deferred response body close",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:24:08Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "560b60262957fbfd46f65a4550a2414fe2af7d35",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: CI lint — remove unused test helpers and upgrade golangci-lint",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:20:00Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2c2ebcd1cf67ac636f211042279a75a8c14a09d0",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix: CI test isolation and gofmt for v1.0.0 release",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:15:32Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9f58e19ce06a5a4ec247e1d32555f49dd57bc330",
          "body": "First public release with Kibana Console Proxy search/agg, unified Agent JSON contract, field-map support, and agent skill documentation.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat: release kibana-cli v1.0.0 for AI Agent log queries",
          "author_name": "sean guo",
          "author_login": "fatecannotbealtered",
          "committed_at": "2026-05-24T16:08:29Z",
          "body_truncated": false,
          "is_coding_agent": true
        }
      ],
      "releases_count": 21,
      "commits_last_year": 90,
      "latest_release_at": "2026-07-17T15:09:45Z",
      "latest_release_tag": "v1.1.16",
      "releases_from_tags": false,
      "days_since_last_push": 10,
      "active_weeks_last_year": 9,
      "days_since_latest_release": 10,
      "mean_days_between_releases": 3.5
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 100,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/fatecannotbealtered/kibana-cli",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": true,
          "registry_url": "https://pkg.go.dev/github.com/fatecannotbealtered/kibana-cli",
          "is_deprecated": false,
          "latest_version": "v1.1.16",
          "repository_url": "https://github.com/fatecannotbealtered/kibana-cli",
          "versions_count": 21,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-17T14:57:28Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 10
        },
        {
          "name": "@fateforge/kibana-cli",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "kibana",
            "logs",
            "cli",
            "ai-agent",
            "elk",
            "devtools"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@fateforge/kibana-cli",
          "is_deprecated": false,
          "latest_version": "1.1.16",
          "repository_url": "https://github.com/fatecannotbealtered/kibana-cli",
          "versions_count": 13,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 1362,
          "first_published_at": "2026-06-15T11:48:01.936000Z",
          "latest_published_at": "2026-07-17T15:10:41.043000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 10
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 4,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": null,
      "open_issues_and_prs": 3
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "go.mod"
      ],
      "largest_source_bytes": 48943,
      "source_files_sampled": 122,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        ".agent/AGENT.md",
        "AGENTS.md"
      ],
      "agent_instruction_max_bytes": 5120
    },
    "dependencies": {
      "manifests": [
        "go.mod",
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 6,
        "malicious_count": 0,
        "assessed_package": "npm:@fateforge/kibana-cli@1.1.16",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "npm"
      ],
      "dependencies": [
        {
          "name": "github.com/sigstore/sigstore-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.2"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/spf13/pflag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.10"
        },
        {
          "name": "github.com/zalando/go-keyring",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.8"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 2,
        "merged_prs": 10,
        "open_issues": 1,
        "closed_ratio": 0.5,
        "closed_issues": 1,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "fatecannotbealtered",
          "commits": 81,
          "avatar_url": "https://avatars.githubusercontent.com/u/273528596?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "release.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yml"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum",
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/28 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 10,
            "reason": "project is fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 8,
            "reason": "5 out of the last 5 releases have a total of 5 signed artifacts.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 7,
            "reason": "3 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "cb60c1903dbbf9ea1c64d9c86ff1bd785797bdda",
        "ran_at": "2026-07-27T20:49:24Z",
        "aggregate_score": 5.4,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-24T02:44:16Z",
      "oldest_open_prs": [
        {
          "number": 13,
          "created_at": "2026-07-17T02:44:10Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 14,
          "created_at": "2026-07-17T02:44:14Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-07-12T17:53:28Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 11,
          "created_at": "2026-06-23T12:15:16Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/fatecannotbealtered/kibana-cli",
    "host": "github.com",
    "name": "kibana-cli",
    "owner": "fatecannotbealtered"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 61,
      "inputs": {
        "security": 63,
        "vitality": 71,
        "community": 48,
        "governance": 46,
        "engineering": 80
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 71,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 53,
            "inputs": {
              "commits_last_year": 90,
              "human_commit_share": 0.9,
              "days_since_last_push": 10,
              "active_weeks_last_year": 9
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 10 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "9/52 weeks with commits",
                "points": 6.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 9
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "90 commits in the last year",
                "points": 17.6,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 90
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 98,
            "inputs": {
              "releases_count": 21,
              "latest_release_tag": "v1.1.16",
              "releases_from_tags": false,
              "days_since_latest_release": 10,
              "mean_days_between_releases": 3.5
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "21 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 21
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 10 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~3.5 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 3.5
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "5 out of the last 5 releases have a total of 5 signed artifacts.",
                "points": 8,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 48,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 8,
            "inputs": {
              "forks": 0,
              "stars": 4,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "4 stars",
                "points": 7.7,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 52,
            "inputs": {
              "packages": [
                "github.com/fatecannotbealtered/kibana-cli",
                "@fateforge/kibana-cli"
              ],
              "dependents": null,
              "ecosystems": "go, npm",
              "total_downloads": null,
              "monthly_downloads": 1362
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "1,362 downloads/month across go, npm",
                "points": 41.8,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 1362,
                      "ecosystems": "go, npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 46,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 10,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 62,
            "inputs": {
              "merged_prs": 10,
              "open_issues": 1,
              "closed_issues": 1,
              "issue_closed_ratio": 0.5,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "50% of issues closed",
                "points": 23.4,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 50
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "10/10 decided PRs merged",
                "points": 38.2,
                "status": "met",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 10,
                      "decided": 10
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "critical",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 28,
            "inputs": {
              "followers": 3,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "fatecannotbealtered",
              "public_repos": 10,
              "account_age_days": 114
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "3 followers of fatecannotbealtered",
                "points": 4.3,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 3,
                      "login": "fatecannotbealtered"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "10 public repos, account ~0 yr old",
                "points": 8.2,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 10
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "github.com/fatecannotbealtered/kibana-cli",
                "@fateforge/kibana-cli"
              ],
              "ecosystems": "go, npm",
              "any_deprecated": false,
              "min_days_since_publish": 10
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "2 package(s) on go, npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 2,
                      "ecosystems": "go, npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 10 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "21 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 21
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 80,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "2 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "good",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 63,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": null,
            "notes": [],
            "value": 54,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 18,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 0,
              "scorecard_aggregate": 5.4
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "2 out of 2 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is fuzzed",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "5 out of the last 5 releases have a total of 5 signed artifacts.",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "3 existing vulnerabilities detected",
                "points": 5.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:@fateforge/kibana-cli@1.1.16 runtime dependency closure — what installing the published package pulls in — 6 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:@fateforge/kibana-cli@1.1.16",
                  "assessed": 6
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 6,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 6,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "excellent",
        "name": "AI Readiness",
        "value": 90,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.901,
              "agent_instruction_files": [
                ".agent/AGENT.md",
                "AGENTS.md"
              ],
              "agent_instruction_max_bytes": 5120
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".agent/AGENT.md, AGENTS.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".agent/AGENT.md, AGENTS.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "73 of 81 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 73,
                      "sampled": 81
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "excellent",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum",
                "package-lock.json"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0.178,
              "toolchain_manifests": [
                "go.mod"
              ],
              "dependency_bot_commit_share": 0.1
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "16 of the last 90 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 16,
                      "sampled": 90
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "9 of the last 90 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 9,
                      "sampled": 90
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 48943,
              "source_files_sampled": 122,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/122 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 122,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-27T20:49:31.901534Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/f/fatecannotbealtered/kibana-cli.svg",
  "full_name": "fatecannotbealtered/kibana-cli",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsGo, npm.