Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-25 15:02 UTC

fonttools / fontbakery

🧁 A font quality assurance tool for everyone

PythonApache-2.0★ 683 stars⑂ 108 forkssince Feb 2013View on GitHub ↗

fonttools/fontbakery holds a health index of 69 out of 100, placing it in the Moderate band. It scores highest on Engineering Quality (92/100) and lowest on Vitality (38/100). It was last updated 262 days ago. 2 contributors account for most of its recent work.

69
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

69
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

FontToolsOrganization
119 followers18 public repossince Jul 2016

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
PyPIfontbakery1.1.071,835146295 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

38At risk · 22% of overall
How it's scored
3.6/36Push recency — last push 262 days ago
3.5/36Commit cadence — 5/52 weeks with commits
9.4/18Commit volume — 10 commits in the last year
0/10OpenSSF Scorecard: Maintained — 0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0
Inputs used
commits_last_year10
human_commit_share1
days_since_last_push262
active_weeks_last_year5
How it's scored
27/27Ships releases — 70 releases published
16.2/36Release recency — latest release 295 days ago
27/27Release cadence — a release every ~36.2 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count70
latest_release_tagv1.1.0
releases_from_tagsno
days_since_latest_release295
mean_days_between_releases36.2

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

81Good · 18% of overall
How it's scored
46/60Stars — 683 stars
16.9/25Forks — 108 forks
9.1/15Watchers — 45 watchers
Inputs used
forks108
stars683
watchers45
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

Community health

92Excellent
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (Apache-2.0)
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateyes
How it's scored
64.8/80Monthly downloads — 71,835 downloads/month across pypi
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesfontbakery
dependents
ecosystemspypi
total_downloads
monthly_downloads71,835
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

74Good · 24% of overall
How it's scored
25.2/54Bus factor — 2 contributor(s) cover half of all commits
12.1/22.5Commit distribution — top contributor authored 46% of commits
13.5/13.5Contributor breadth — 59 contributors
10/10OpenSSF Scorecard: Contributors — project has 64 contributing companies or organizations
Inputs used
bus_factor2
contributors_sampled59
top_contributor_share0.461
How it's scored
41.3/46.8Issue resolution — 88% of issues closed
35.7/38.3PR acceptance — 2,131/2,283 decided PRs merged
7.5/15OpenSSF Scorecard: Code-Review — Found 10/19 approved changesets -- score normalized to 5
Inputs used
merged_prs2,131
open_issues299
closed_issues2,260
issue_closed_ratio0.883
closed_unmerged_prs152
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
14.9/25Owner reach — 119 followers of fonttools
21.3/25Track record — 18 public repos, account ~10 yr old
Inputs used
followers119
owner_typeOrganization
is_verified
owner_loginfonttools
public_repos18
account_age_days3,657
How it's scored
25/25Published & resolvable — 1 package(s) on pypi
26/35Publish recency — latest publish 295 days ago
20/20Version history — 146 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesfontbakery
ecosystemspypi
any_deprecatedno
min_days_since_publish295

Engineering Quality

Are baseline engineering and documentation practices in place?

92Excellent · 20% of overall
How it's scored
24/24CI workflows — 3 workflow(s)
24/24Tests present
16/16Linter config
9.6/9.6Pre-commit hooks
6.4/6.4.editorconfig
14/20OpenSSF Scorecard: CI-Tests — 12 out of 16 merged PRs checked by a CI test -- score normalized to 7
Inputs used
has_ciyes
has_testsyes
has_editorconfigyes
has_linter_configyes
has_precommit_configyes

Documentation

90Excellent
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://fontbakery.readthedocs.io
10/10Repository description
10/10Topics — 3 topics
0/10Wiki
Inputs used
topicscommand-line-tool, font, quality-assurance
has_wikino
homepagehttps://fontbakery.readthedocs.io
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

61Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
1.8/2.5CI-Tests — 12 out of 16 merged PRs checked by a CI test -- score normalized to 7
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
3.8/7.5Code-Review — Found 10/19 approved changesets -- score normalized to 5
2.5/2.5Contributors — project has 64 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
0/7.5Maintained — 0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
1.5/5SAST — SAST tool is not run on all commits -- score normalized to 3
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate5.1
Excluded from scoring (no data or not applicable): branch_protection. Remaining weights renormalized.
How it's scored
35/35Direct dependencies free of known advisories — no direct dependency carries a known advisory
25/25Indirect dependencies free of known advisories — no indirect dependency carries a known advisory
0/40No advisories left outstanding — no advisory carries a publication date
Inputs used
sourceosv
advisories0
affected_packages0
assessed_packages36
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the pypi:fontbakery@1.1.0 runtime dependency closure — what installing the published package pulls in — 36 packages. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

44At risk · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
12.3/40Legible commit history — 23 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.23
agent_instruction_files
agent_instruction_max_bytes
How it's scored
18/18One-command bootstrap — docs/Makefile
22/22Automated tests
11/11Lint / format config
0/11Static type checking
0/10Reproducible environment
0/10Demonstrated agent practice — no agent-authored commits among the last 100
0/8Automated maintenance — no automated dependency updates observed
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileno
typed_languageno
bootstrap_filesdocs/Makefile
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0
How it's scored
0/45Type-checkable code — Python without a type-check config
54.8/55Manageable file sizes — 2/517 source files over 60KB
Inputs used
primary_languagePython
largest_source_bytes136,146
source_files_sampled517
oversized_source_files2
How it's scored
40/40API schema (OpenAPI/GraphQL/proto) — Lib/fontbakery/axes.proto, Lib/fontbakery/designers.proto, Lib/fontbakery/fonts_public.proto
0/20MCP server
40/40Runnable examples — examples
Inputs used
example_dirsexamples
has_mcp_signalno
api_schema_filesLib/fontbakery/axes.proto, Lib/fontbakery/designers.proto, Lib/fontbakery/fonts_public.proto

Key facts

683GitHub stars
59contributors
10commits, last 12 months
262days since last push
70releases
2bus factor
299open issues
PyPIpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token

More detail

Star and fork history 0 ★ / 108 ⇿
0Stars
108Forks
70Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

02040608010010032014-032020-052026-07
Major 1Minor 6Patch 32

Each point covers 12 days.

OpenSSF Scorecard 5.1 / 10
5.1aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-25 15:01 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
7CI-Tests12 out of 16 merged PRs checked by a CI test -- score normalized to 7
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
5Code-ReviewFound 10/19 approved changesets -- score normalized to 5
10Contributorsproject has 64 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintained0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
3SASTSAST tool is not run on all commits -- score normalized to 3
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 21
RegistryPackageVersion constraintManifest
PyPIbeziers>= 0.6.0, == 0.6.*pyproject.toml
PyPIcmarkgfm>= 0.4pyproject.toml
PyPIdefconpyproject.toml
PyPIdehinter>= 3.1.0pyproject.toml
PyPIfontTools>= 4.47.0pyproject.toml
PyPIfreetype-py< 2.4.0pyproject.toml
PyPIJinja2>= 3.0.0pyproject.toml
PyPImunkrespyproject.toml
PyPIopentypespec>= 1.9.2pyproject.toml
PyPIopentype-sanitizer>= 9.1.0, == 9.*pyproject.toml
PyPIpackaging>= 14.5pyproject.toml
PyPIpip-apipyproject.toml
PyPIPyYAMLpyproject.toml
PyPIrequests>= 2.19pyproject.toml
PyPIrichpyproject.toml
PyPItomlpyproject.toml
PyPItyping_extensionspyproject.toml
PyPIufolintpyproject.toml
PyPIufo2ft>= 2.25.2pyproject.toml
PyPIuharfbuzzpyproject.toml
PyPIvharfbuzz>= 0.2.0pyproject.toml
All dependencies 21

Full resolved dependency set from the GitHub dependency graph: 21 direct and 0 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
PyPIbeziersdirect
PyPIcmarkgfmdirect
PyPIdefcondirect
PyPIdehinterdirect
PyPIfonttoolsdirect
PyPIfreetype-pydirect
PyPIjinja2direct
PyPImunkresdirect
PyPIopentype-sanitizerdirect
PyPIopentypespecdirect
PyPIpackagingdirect
PyPIpip-apidirect
PyPIpyyamldirect
PyPIrequestsdirect
PyPIrichdirect
PyPItomldirect
PyPItyping-extensionsdirect
PyPIufo2ftdirect
PyPIufolintdirect
PyPIuharfbuzzdirect
PyPIvharfbuzzdirect
Dependency advisories 0

Installing pypi:fontbakery@1.1.0 pulls in 36 packages, direct and transitive: 0 carry known advisories, of which 0 are direct dependencies.

No known advisories affect the assessed dependencies.

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "command-line-tool",
        "font",
        "quality-assurance"
      ],
      "is_fork": false,
      "size_kb": 82360,
      "has_wiki": false,
      "homepage": "https://fontbakery.readthedocs.io",
      "languages": {
        "CSS": 1206,
        "HTML": 27871,
        "Shell": 1379,
        "Python": 1616827,
        "PureBasic": 32998
      },
      "pushed_at": "2025-11-04T18:52:25Z",
      "created_at": "2013-02-16T07:47:27Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-24T08:52:51Z",
      "description": "🧁 A font quality assurance tool for everyone ",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Python",
      "significant_languages": [
        "Python"
      ]
    },
    "owner": {
      "blog": "https://groups.google.com/forum/#!forum/fonttools",
      "name": "FontTools",
      "type": "Organization",
      "login": "fonttools",
      "company": null,
      "location": null,
      "followers": 119,
      "avatar_url": "https://avatars.githubusercontent.com/u/20555868?v=4",
      "created_at": "2016-07-20T10:02:23Z",
      "is_verified": null,
      "public_repos": 18,
      "account_age_days": 3657
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2025-10-02T18:34:25Z"
        },
        {
          "tag": "v1.0.1",
          "kind": "patch",
          "published_at": "2025-07-04T14:58:52Z"
        },
        {
          "tag": "v1.0.0",
          "kind": "major",
          "published_at": "2025-05-07T20:50:43Z"
        },
        {
          "tag": "v0.13.3",
          "kind": "patch",
          "published_at": "2025-05-06T14:18:01Z"
        },
        {
          "tag": "v0.13.2",
          "kind": "patch",
          "published_at": "2025-02-04T21:31:20Z"
        },
        {
          "tag": "v0.13.1",
          "kind": "patch",
          "published_at": "2025-01-17T19:54:20Z"
        },
        {
          "tag": "v0.13.0",
          "kind": "minor",
          "published_at": "2025-01-10T04:27:01Z"
        },
        {
          "tag": "v0.13.0a7",
          "kind": "other",
          "published_at": "2024-12-29T05:49:17Z"
        },
        {
          "tag": "v0.13.0a6",
          "kind": "other",
          "published_at": "2024-12-03T22:36:28Z"
        },
        {
          "tag": "v0.13.0a5",
          "kind": "other",
          "published_at": "2024-11-10T12:40:03Z"
        },
        {
          "tag": "v0.13.0a4",
          "kind": "other",
          "published_at": "2024-11-06T07:54:42Z"
        },
        {
          "tag": "v0.13.0a3",
          "kind": "other",
          "published_at": "2024-10-25T16:41:05Z"
        },
        {
          "tag": "v0.13.0a2",
          "kind": "other",
          "published_at": "2024-10-16T21:44:27Z"
        },
        {
          "tag": "v0.13.0a1",
          "kind": "other",
          "published_at": "2024-09-20T01:20:50Z"
        },
        {
          "tag": "v0.13.0a0",
          "kind": "other",
          "published_at": "2024-09-13T14:12:09Z"
        },
        {
          "tag": "v0.12.10",
          "kind": "patch",
          "published_at": "2024-08-14T19:47:52Z"
        },
        {
          "tag": "v0.12.9",
          "kind": "patch",
          "published_at": "2024-07-17T21:10:50Z"
        },
        {
          "tag": "v0.12.8",
          "kind": "patch",
          "published_at": "2024-07-05T16:50:51Z"
        },
        {
          "tag": "v0.12.7",
          "kind": "patch",
          "published_at": "2024-06-04T04:57:13Z"
        },
        {
          "tag": "v0.12.6",
          "kind": "patch",
          "published_at": "2024-05-13T05:13:22Z"
        },
        {
          "tag": "v0.12.5",
          "kind": "patch",
          "published_at": "2024-05-03T16:20:46Z"
        },
        {
          "tag": "v0.12.4",
          "kind": "patch",
          "published_at": "2024-04-26T16:24:27Z"
        },
        {
          "tag": "v0.12.3",
          "kind": "patch",
          "published_at": "2024-04-22T12:38:47Z"
        },
        {
          "tag": "v0.12.2",
          "kind": "patch",
          "published_at": "2024-04-17T19:15:24Z"
        },
        {
          "tag": "v0.12.1",
          "kind": "patch",
          "published_at": "2024-04-15T19:26:30Z"
        },
        {
          "tag": "v0.12.0",
          "kind": "minor",
          "published_at": "2024-04-12T12:52:07Z"
        },
        {
          "tag": "v0.12.0a6",
          "kind": "other",
          "published_at": "2024-04-04T11:06:14Z"
        },
        {
          "tag": "v0.12.0a5",
          "kind": "other",
          "published_at": "2024-04-02T20:36:21Z"
        },
        {
          "tag": "v0.12.0a4",
          "kind": "other",
          "published_at": "2024-03-15T14:33:06Z"
        },
        {
          "tag": "v0.12.0a3",
          "kind": "other",
          "published_at": "2024-03-13T18:38:58Z"
        },
        {
          "tag": "v0.11.2",
          "kind": "patch",
          "published_at": "2024-02-21T19:45:41Z"
        },
        {
          "tag": "v0.12.0a2",
          "kind": "other",
          "published_at": "2024-02-21T18:27:07Z"
        },
        {
          "tag": "v0.12.0a1",
          "kind": "other",
          "published_at": "2024-02-14T20:27:29Z"
        },
        {
          "tag": "v0.11.1",
          "kind": "patch",
          "published_at": "2024-02-06T05:00:19Z"
        },
        {
          "tag": "v0.11.0",
          "kind": "minor",
          "published_at": "2024-02-02T07:53:29Z"
        },
        {
          "tag": "v0.10.9",
          "kind": "patch",
          "published_at": "2024-01-12T17:18:21Z"
        },
        {
          "tag": "v0.10.8",
          "kind": "patch",
          "published_at": "2023-12-15T17:00:43Z"
        },
        {
          "tag": "v0.10.7",
          "kind": "patch",
          "published_at": "2023-12-13T01:18:06Z"
        },
        {
          "tag": "v0.10.6",
          "kind": "patch",
          "published_at": "2023-12-01T14:47:58Z"
        },
        {
          "tag": "v0.10.5",
          "kind": "patch",
          "published_at": "2023-12-01T13:38:17Z"
        },
        {
          "tag": "v0.10.4",
          "kind": "patch",
          "published_at": "2023-11-17T16:31:49Z"
        },
        {
          "tag": "v0.10.3",
          "kind": "patch",
          "published_at": "2023-11-02T16:58:41Z"
        },
        {
          "tag": "v0.10.2",
          "kind": "patch",
          "published_at": "2023-10-20T18:11:04Z"
        },
        {
          "tag": "v0.10.1",
          "kind": "patch",
          "published_at": "2023-10-13T17:22:44Z"
        },
        {
          "tag": "v0.10.0",
          "kind": "minor",
          "published_at": "2023-10-12T21:51:12Z"
        },
        {
          "tag": "v0.9.2",
          "kind": "patch",
          "published_at": "2023-09-23T01:18:49Z"
        },
        {
          "tag": "v0.9.1",
          "kind": "patch",
          "published_at": "2023-09-19T00:53:53Z"
        },
        {
          "tag": "v0.9.0",
          "kind": "minor",
          "published_at": "2023-09-12T12:10:57Z"
        },
        {
          "tag": "v0.9.0a3",
          "kind": "other",
          "published_at": "2023-09-05T13:43:30Z"
        },
        {
          "tag": "v0.9.0a2",
          "kind": "other",
          "published_at": "2023-08-04T15:24:17Z"
        },
        {
          "tag": "v0.9.0a1",
          "kind": "other",
          "published_at": "2023-08-02T17:41:40Z"
        },
        {
          "tag": "v0.8.13",
          "kind": "patch",
          "published_at": "2023-06-02T10:37:54Z"
        },
        {
          "tag": "v0.8.12",
          "kind": "patch",
          "published_at": "2023-06-01T00:48:01Z"
        },
        {
          "tag": "v0.8.12a1",
          "kind": "other",
          "published_at": "2023-05-31T23:56:08Z"
        },
        {
          "tag": "v0.8.12a0",
          "kind": "other",
          "published_at": "2023-04-27T18:04:31Z"
        },
        {
          "tag": "v0.8.11",
          "kind": "patch",
          "published_at": "2023-03-03T17:23:20Z"
        },
        {
          "tag": "v0.8.11b0",
          "kind": "other",
          "published_at": "2023-02-03T22:36:02Z"
        },
        {
          "tag": "v0.8.11a9",
          "kind": "other",
          "published_at": "2023-01-17T17:24:47Z"
        },
        {
          "tag": "v0.8.11a8",
          "kind": "other",
          "published_at": "2022-12-15T03:49:56Z"
        },
        {
          "tag": "v0.8.11a7",
          "kind": "other",
          "published_at": "2022-12-06T21:16:15Z"
        },
        {
          "tag": "v0.8.11a6",
          "kind": "other",
          "published_at": "2022-12-03T23:35:09Z"
        },
        {
          "tag": "v0.8.11a5",
          "kind": "other",
          "published_at": "2022-11-23T22:25:25Z"
        },
        {
          "tag": "v0.8.11a4",
          "kind": "other",
          "published_at": "2022-11-18T16:48:54Z"
        },
        {
          "tag": "v0.8.11a3",
          "kind": "other",
          "published_at": "2022-11-02T23:39:40Z"
        },
        {
          "tag": "v0.8.11a2",
          "kind": "other",
          "published_at": "2022-10-26T15:45:17Z"
        },
        {
          "tag": "v0.8.11a1",
          "kind": "other",
          "published_at": "2022-09-16T19:21:10Z"
        },
        {
          "tag": "v0.8.11a0",
          "kind": "other",
          "published_at": "2022-09-08T21:54:15Z"
        },
        {
          "tag": "v0.8.10",
          "kind": "patch",
          "published_at": "2022-08-25T06:28:44Z"
        },
        {
          "tag": "v0.8.10rc",
          "kind": "other",
          "published_at": "2022-08-24T19:27:21Z"
        },
        {
          "tag": "v0.8.9",
          "kind": "patch",
          "published_at": "2022-06-16T23:44:48Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "9a85e003d36ebfbbfe68c6d362e5db5a6434332c",
          "body": "(issue #4998 / PR #5054)",
          "is_bot": false,
          "headline": "Skip opentype/STAT/ital_axis for fonts without STAT table",
          "author_name": "Bert Driehuis",
          "author_login": "driehuis",
          "committed_at": "2025-11-04T18:52:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "86c5338cc50d005e5ad3db9f4f4ec74f4fa62900",
          "body": "(PR #5051)",
          "is_bot": false,
          "headline": "[opentype/monospace] Ensure check works with monospace OTF fonts",
          "author_name": "Peter Dekkers",
          "author_login": "PeterDekkers",
          "committed_at": "2025-10-14T12:56:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c5fadc2ed815111e74196d9fa6d669fa545b09c",
          "body": null,
          "is_bot": false,
          "headline": "update CHANGELOG in preparation for new release",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-10-02T18:31:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf8664c849c2ce965d66618e0e3e64623a283b7d",
          "body": null,
          "is_bot": false,
          "headline": "update version on docs/source/conf.py",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-10-02T18:31:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d046db2a1b09085dd9e9f29a7fd11cae562fd61d",
          "body": null,
          "is_bot": false,
          "headline": "Updating cache of vendor IDs list from Microsoft's website",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-10-02T18:31:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d45edb9b4128125e8995c509ba1746b6722b2681",
          "body": null,
          "is_bot": false,
          "headline": "Update Google Fonts profile dependencies",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-10-02T18:31:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c8d7bfacbc68836ae815938018a2c6b2b8d6586",
          "body": "Relates to issue #2179, specifically later comments and testing, like #2179 (comment)\n\nChanges:\n\n- Change main static font check to consider NameID 1 (FONT_FAMILY_NAME) rather than NameID 4 (FULL_FONT_NAME).\n- Change VF check to test NameID 16 + STAT particles.\n- Update tests to pass with new check criteria.",
          "is_bot": false,
          "headline": "[family_and_style_max_length] Modernize check",
          "author_name": "Stephen Nixon",
          "author_login": "arrowtype",
          "committed_at": "2025-10-02T18:09:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "65060259fa733079a45692192f334b3dbda0b4a7",
          "body": null,
          "is_bot": false,
          "headline": "fix changelog",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-10-02T15:25:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "67853142ec5ccd91a6c818fb8b4fa10d1a6bd21d",
          "body": null,
          "is_bot": false,
          "headline": "fix pylint: Non-iterable value visuals is used in an iterating context",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-10-02T14:42:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca40bd4a07e02d85d4d419638e99ef1b5233361f",
          "body": null,
          "is_bot": false,
          "headline": "Alternate solution",
          "author_name": "Jens Kutilek",
          "author_login": "jenskutilek",
          "committed_at": "2025-09-29T05:26:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6ce68d79d72b6d2bb59bb05308e1d9c166e05956",
          "body": "…iles",
          "is_bot": false,
          "headline": "Add instances_/name_length_req to pending review lists of vendor prof…",
          "author_name": "Khaled Hosny",
          "author_login": "khaledhosny",
          "committed_at": "2025-09-29T05:10:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b8ff2c9a7757682cf122e12a9c7576104fa2c93a",
          "body": "Similar to name_length_req, but checks the family and subfamily names of\nthe instances, computed from STAT table.\n\nAdd the new check to Microsoft profile.\n\nAlso add failing test case for the new check as well as name_length_req.",
          "is_bot": false,
          "headline": "Add instances_name_length_req check",
          "author_name": "Khaled Hosny",
          "author_login": "khaledhosny",
          "committed_at": "2025-09-29T05:10:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d289f332beb6b272a0aa2c7451bb87aa22da5473",
          "body": "(issue #5028)",
          "is_bot": false,
          "headline": "Replace pkg_resources by importlib.resources",
          "author_name": "Jens Kutilek",
          "author_login": "jenskutilek",
          "committed_at": "2025-08-27T12:59:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b130c8e83a1e23835826cbebd0e7ce49574b8ab",
          "body": null,
          "is_bot": false,
          "headline": "Update CHANGELOG.md",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-07-04T14:58:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3f41ded4afd14256b0b797f66c176d49e98b0b75",
          "body": null,
          "is_bot": false,
          "headline": "Check `base_has_width` is no longer considered experimental.",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-07-04T14:56:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "35b3a8fb4a47378fb59d3f5f725939ccb77a2576",
          "body": null,
          "is_bot": false,
          "headline": "update version on docs/source/conf.py",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-07-04T14:56:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e5b97828ef51af7eb051092e089efd77e236c47a",
          "body": null,
          "is_bot": false,
          "headline": "Updating cache of vendor IDs list from Microsoft's website",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-07-04T14:56:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3050e3ed4cdc051dce9f48d66220a9cd7c170bb",
          "body": null,
          "is_bot": false,
          "headline": "updating CHANGELOG for v1.0.1 release",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-07-04T14:56:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "758c9a5e4b1722126ce3708464a2a13072ec58eb",
          "body": "This was broken since the old ids in exclude_checks were never mapped\nto new ones.",
          "is_bot": false,
          "headline": "Fix using old check ids in excluded checks",
          "author_name": "Khaled Hosny",
          "author_login": "khaledhosny",
          "committed_at": "2025-06-16T21:38:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5368d52df5a425f38022fae453d3921154da5f17",
          "body": null,
          "is_bot": false,
          "headline": "Update CHANGELOG.md",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-06-16T21:37:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "01287ef5e14c43ebddc3f021c6c743523c1a32c3",
          "body": null,
          "is_bot": false,
          "headline": "Don't check interpolation issues on VF without gvar table",
          "author_name": "Jens Kutilek",
          "author_login": "jenskutilek",
          "committed_at": "2025-06-12T06:01:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ed26b2f8f16a5656a8d0d79200aa73a8da905c5c",
          "body": null,
          "is_bot": false,
          "headline": "Don't crash if a variable font has no STAT table",
          "author_name": "Jens Kutilek",
          "author_login": "jenskutilek",
          "committed_at": "2025-06-12T05:59:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9532556b923c09ac2dc2b1a50a9afec48a5c43cc",
          "body": "* Extend test_check_monospace to fail with CFF\n* Fix \"opentype/monospace\": remove conditions \"is_ttf\" + remove \"glyf\" from required tables\n\nOn the opentype profile.\n\n(issue #5030)",
          "is_bot": false,
          "headline": "fixes check_monospace to also work with CFF",
          "author_name": "Olli Meier",
          "author_login": "ollimeier",
          "committed_at": "2025-06-12T05:58:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a2dc9ad8ad1d0ccee0d29e59e8584070c7819464",
          "body": "(issue #5023)",
          "is_bot": false,
          "headline": "Fix test_checks_unique_glyphnames",
          "author_name": "Olli Meier",
          "author_login": "ollimeier",
          "committed_at": "2025-06-02T10:20:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "49dcd6a8926f28075884b4fb1892eb334cfb7164",
          "body": null,
          "is_bot": false,
          "headline": "Mention Fontspector on README.md",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-07T20:48:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef00ee7e935f6dfe48925d3a6c61569872181698",
          "body": null,
          "is_bot": false,
          "headline": "update CHANGELOG in preparation for new release",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-07T20:48:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f5859b38be10fb7f56ad22ff026f843f03067279",
          "body": null,
          "is_bot": false,
          "headline": "update version on docs/source/conf.py",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-07T20:48:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8417d7b162fcb70382928e020eba5b4f8af21b0",
          "body": null,
          "is_bot": false,
          "headline": "Updating cache of vendor IDs list from Microsoft's website",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-07T20:48:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2123354f8f74803558842bf55eeed19d33a3240b",
          "body": null,
          "is_bot": false,
          "headline": "update version on docs/source/conf.py",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-06T14:15:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b6796e8044e6d89e5b49652239f33d8947151c00",
          "body": null,
          "is_bot": false,
          "headline": "Updating cache of vendor IDs list from Microsoft's website",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-06T14:15:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d827b4fc36c7c2552331587be8235f2d3025c61",
          "body": null,
          "is_bot": false,
          "headline": "update \"always latest\" dependencies of the GoogleFonts profile",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-06T14:15:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e04b249f7dc95f1934e620472b73cbae969a40a8",
          "body": "This reverts commit 83966c8382d5bf92d6d8972dd2ef4ec100a46226.\n\n(issue #4990)",
          "is_bot": false,
          "headline": "Revert \"Deprecate opentype/dsig\"",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-06T13:46:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2d7b0617bad1f96cdd17fe56c013f310fa30a826",
          "body": null,
          "is_bot": false,
          "headline": "fix a typo",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-06T13:03:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0f9b1772d8e44743cbc7dbf50e0451c6f60badef",
          "body": "To make sure 'sunu' script tag (for Sunuwar) is recognized as a valid tag\non the 'opentype/layout_valid_script_tags' check.\n\n(issue #5014)",
          "is_bot": false,
          "headline": "Set a minimum requirement for the opentypespec dependency.",
          "author_name": "Felipe Correa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-05-06T13:03:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5e5b8f6cbf749e34bbf854f60613e7d19a42ae4e",
          "body": "'typographic_family_name' on Universal profile.\n\nFix for supporting families without typographic family name.\n\n(PR #5012)",
          "is_bot": false,
          "headline": "Fix typographic family name",
          "author_name": "Guido Ferreyra",
          "author_login": "guidoferreyra",
          "committed_at": "2025-04-01T20:52:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6c0f42f21e414fc310f4950c9feb4df77af7cafe",
          "body": null,
          "is_bot": false,
          "headline": "Add reserverd family name to camel case exceptions",
          "author_name": "Guido Ferreyra",
          "author_login": "guidoferreyra",
          "committed_at": "2025-03-25T16:58:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "50b9cc545103e244d85d47a4fb5e84a854ca4652",
          "body": "Fix base_has_width on Universal profile.\nExamine non-mark glyphs rather than mark glyphs; ignore PUA.\n\n(issue #5007)",
          "is_bot": false,
          "headline": "fix `base_has_width` and add test",
          "author_name": "Bob Hallissy",
          "author_login": "bobh0303",
          "committed_at": "2025-03-19T00:44:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "780e2b2900f91599c1902d0029bfc68a775d8091",
          "body": null,
          "is_bot": false,
          "headline": "Improve wording of lacks-caret-pos-gdef WARN",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-03-07T14:07:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1b4fcb8f72be945fc69f608b41a5dd444cd6c28a",
          "body": null,
          "is_bot": false,
          "headline": "[ligature_carets] Don't error if the font has no GDEF table",
          "author_name": "Jens Kutilek",
          "author_login": "jenskutilek",
          "committed_at": "2025-03-07T14:07:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "75db649914931c7635e441d9696026d8615f3771",
          "body": "Adding UoqMunThenKhung to the camelcased family name exception list.",
          "is_bot": false,
          "headline": "Update camelcased_familyname_exceptions.txt",
          "author_name": "Aaron Bell",
          "author_login": "aaronbell",
          "committed_at": "2025-03-07T13:43:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eab6d90695ed9cf6f0be5fdd0dbc8743e57cc315",
          "body": "There was one call site where we were accidentally passing a raw\nException as a message instead of a serialised summary, which was\ncrashing the HTML reporter.\n\nThis commit corrects this by serialising at that site, adds more types\nto Message to automatically warn for this category of issue in the\nfuture, and pulls the stack trace formatting code out into a public\nfunction to provide more error details in more places.",
          "is_bot": false,
          "headline": "Fix raw error crashing HTML reporter, add types, and share error helper",
          "author_name": "Harry Dalton",
          "author_login": "Hoolean",
          "committed_at": "2025-02-27T01:35:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4cc71b39c73f6eb7033d82bf413b6fe96c763c96",
          "body": "because it is an AAT table.\n\n(issue #4989)",
          "is_bot": false,
          "headline": "unwanted_tables: Remove checking for 'prop'",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-13T04:23:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "27044ceb16efbcb088e46b6bca6ac60c35271943",
          "body": "(issue #4991)",
          "is_bot": false,
          "headline": "migrate unwanted_aat_tables to OpenType profile",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-13T04:23:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dc758217143d53119d268aaf620b9059815e383d",
          "body": "Remove it form the list of unwanted_aat_tables\n\n(issue #4992)",
          "is_bot": false,
          "headline": "EBSC table is not an AAT table.",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-13T04:23:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "68a7e99ff1bc0ed5e596923c8462854773743ee5",
          "body": "on the legacy_checkids.py file.\n\n(issue #4987)",
          "is_bot": false,
          "headline": "fix typo on shape_languages check ID",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-07T03:18:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ffe83a2824631ddbabdbf69c47b8128647de30d1",
          "body": "…tifact@v4\n\n(issue #4986)",
          "is_bot": false,
          "headline": "Update GH-Actions: actions/upload-artifact@v4 and actions/download-ar…",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-04T21:25:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0a716a9e49521bb23df31f0d39934429537776f",
          "body": null,
          "is_bot": false,
          "headline": "update CHANGELOG in preparation for new release",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-04T00:34:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "46e4a933e7bffde0040d7de158dbc50aa9dbdda6",
          "body": null,
          "is_bot": false,
          "headline": "update version on docs/source/conf.py",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-04T00:34:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "23e4ee78a2d99b1b6eff2898314bedcfc08865e7",
          "body": null,
          "is_bot": false,
          "headline": "Updating cache of vendor IDs list from Microsoft's website",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-04T00:34:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5cfc3a58458b515fda2c162f39057ce03922699",
          "body": null,
          "is_bot": false,
          "headline": "update axisregistry dependency",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-02-04T00:34:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f84ac84bd9e717d041edd4f9b75de0211ef1df3f",
          "body": null,
          "is_bot": false,
          "headline": "update changelog",
          "author_name": "Marc Foley",
          "author_login": "m4rc1e",
          "committed_at": "2025-01-30T00:40:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2bd96e25ec9ad59bf9656dfc458150daaa8b5bd0",
          "body": null,
          "is_bot": false,
          "headline": "check_base_has_width: user correct param",
          "author_name": "Marc Foley",
          "author_login": "m4rc1e",
          "committed_at": "2025-01-30T00:40:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0b6c4f819cbfdf6e24c292cd8e94a9e8aebf5862",
          "body": "It seems to be debatable since high hamza is used also in Kazakh where\nsmall high hamza is acceptable. Instead of complicated and possibly\nerror prune language detection, lets make it a warning.",
          "is_bot": false,
          "headline": "[arabic_high_hamza] Make the size of high hamza a warning",
          "author_name": "Khaled Hosny",
          "author_login": "khaledhosny",
          "committed_at": "2025-01-28T16:07:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6051e9a77143490c842506e5452f2e5fdbc25774",
          "body": null,
          "is_bot": false,
          "headline": "[arabic_high_hamza] Simplify getting high hamza glyph name",
          "author_name": "Khaled Hosny",
          "author_login": "khaledhosny",
          "committed_at": "2025-01-28T16:07:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f42ba3343c39e7b3efb7ba5f5082734f94880bfb",
          "body": "This part of the check doesn’t depend on the presence of regular hamza.",
          "is_bot": false,
          "headline": "[arabic_high_hamza] Check high hamza isn’t mark even if hamza is missing",
          "author_name": "Khaled Hosny",
          "author_login": "khaledhosny",
          "committed_at": "2025-01-28T16:07:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c0d89404977e66f52bd520d816d4fe6040e1187a",
          "body": "It should be checking U+0674 ARABIC LETTER HIGH HAMZA and not U+0675\nARABIC LETTER HIGH HAMZA ALEF.\n\nFixes https://github.com/fonttools/fontbakery/issues/4290",
          "is_bot": false,
          "headline": "[arabic_high_hamza] Check the correct code point",
          "author_name": "Khaled Hosny",
          "author_login": "khaledhosny",
          "committed_at": "2025-01-28T16:07:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bee93e20fb7aa0234f75f06631db50d453856f25",
          "body": null,
          "is_bot": false,
          "headline": "update shaperglot dependency",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-28T16:04:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5dd2c3bb161745facd5f66c576dbcbaf9e5e8df6",
          "body": "(issue #2719 / PR #4980 / https://github.com/fonttools/fontbakery/issues/2684#issuecomment-559297019)",
          "is_bot": false,
          "headline": "fontdata_namecheck: use API endpoint",
          "author_name": "Marc Foley",
          "author_login": "m4rc1e",
          "committed_at": "2025-01-28T14:27:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bdf627a047c38aea1e98ff4430f2dbc8e961dac7",
          "body": "* better testing of italic/family relation, not just file names\r\n* Update ital_axis.py\r\n* fix error due to familyname in name space\r\n\r\n(PR #4966)",
          "is_bot": false,
          "headline": "Rework segment_vf_collection",
          "author_name": "Ben Kiel",
          "author_login": "benkiel",
          "committed_at": "2025-01-22T20:55:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ad9252135d87211930a1828b39da01dcc32f65c",
          "body": null,
          "is_bot": false,
          "headline": "update gflanguages dependency",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-17T19:48:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ea63555ca8f3a304f9df95bd70bcda63c3a793fe",
          "body": null,
          "is_bot": false,
          "headline": "update CHANGELOG in preparation for new release",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-17T19:48:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "baec0893b8f20ecdebeccfe87da853afcb2f3f04",
          "body": null,
          "is_bot": false,
          "headline": "Fix mock URLs",
          "author_name": "Simon Cozens",
          "author_login": "simoncozens",
          "committed_at": "2025-01-17T15:57:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e09454de9ca85cff7ef72d561ee5dcf802039b96",
          "body": null,
          "is_bot": false,
          "headline": "Change GF production metadata URL to https",
          "author_name": "Simon Cozens",
          "author_login": "simoncozens",
          "committed_at": "2025-01-17T15:57:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2576807c6b7574a354a0d85208c92285b4c9dea2",
          "body": "(issue #4975)",
          "is_bot": false,
          "headline": "vttclean is now merged into unwanted_tables",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-17T11:01:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "865798a32ada035cdd39e2e4b8a44b1245dab3c7",
          "body": "At Universal profile.\n\n(issue #4972)",
          "is_bot": false,
          "headline": "merge no_debugging_tables into unwanted_tables",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-17T04:08:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7b75e1faa9995a833410d8f1621676f56c89b3ca",
          "body": "…oint is not covered\n\n(PR #4969)",
          "is_bot": false,
          "headline": "SKIP instead of ERROR if `opentype/slant_direction`'s reference codep…",
          "author_name": "Harry Dalton",
          "author_login": "Hoolean",
          "committed_at": "2025-01-13T17:20:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5314a0a8432bc26aca71ea6114d7f7c87d51f226",
          "body": "…ation",
          "is_bot": false,
          "headline": "Add fontbakery-venv to gitignore to match the developer doc recommend…",
          "author_name": "Ben Kiel",
          "author_login": "benkiel",
          "committed_at": "2025-01-13T12:54:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "17d795a97ce45ce6961708e446ac83f0717dfcab",
          "body": null,
          "is_bot": false,
          "headline": "update README with link to Simon's 1-min video about Unified-Font-Repo",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-13T12:53:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "df55b17ff8fa7ccc8296f2f65b371ff08c4ac974",
          "body": "due to usage of varLib.interpolatableHelpers.InterpolatableProblem\n\n(issue #4961)",
          "is_bot": false,
          "headline": "bump fonttools dependency to >= 4.47.0",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-13T12:53:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "207e1b7f61e59ef1bf88ddb11c2607001b85b43e",
          "body": "(issue #4891)",
          "is_bot": false,
          "headline": "fix readthedocs setup",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-10T12:34:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "334a9749bc29e583a52998c7a4920f765a98276e",
          "body": null,
          "is_bot": false,
          "headline": "update CHANGELOG in preparation for new release",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-10T04:22:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e494fbc00412037be4f93447cb28e63b25c757c",
          "body": null,
          "is_bot": false,
          "headline": "update version on docs/source/conf.py",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-10T04:22:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "81c0f1797fd4544cd902c7d6fab1553dec3476d9",
          "body": null,
          "is_bot": false,
          "headline": "Updating cache of vendor IDs list from Microsoft's website",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-10T04:22:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5dec9b121bf6b8d42cf271aaa31b7f23d5b09c75",
          "body": "Just in case the profile does not declare these values, the check itself\nmust have something as the default.\n\nI am not very happy about this fix. There must be a better way of\nhandling this...",
          "is_bot": false,
          "headline": "file_size check needs default values",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-10T04:22:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc70071f8db23e199383a43886c993ef78422f66",
          "body": "…les and profile overrides.\n\n(issue #4942)",
          "is_bot": false,
          "headline": "Also translate legacy check-IDs when they're referenced via config fi…",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2025-01-09T21:59:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "942be6381d56e19a1ac58041d4d40ad0902c5479",
          "body": null,
          "is_bot": false,
          "headline": "update URL to latest legacy-checkids.py file",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-29T05:45:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1c10ccebad1bf34570914e9e6056dfbb39b3fcf3",
          "body": null,
          "is_bot": false,
          "headline": "update CHANGELOG in preparation for new release",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-29T05:45:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "faf7cf737353178ef1554d98738f8f8da7f97709",
          "body": null,
          "is_bot": false,
          "headline": "update version on docs/source/conf.py",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-29T05:45:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b5134dc9fa90313edaa04952cad5d8d6abfa2717",
          "body": null,
          "is_bot": false,
          "headline": "update glyphsets dependency",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-29T05:28:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "31970cdc5807c3b75c2f9b6e223aca57ffda535f",
          "body": "Renaming it to googlefonts/render_own_name\nMigrating from Universal back to Google Fonts\n\nbased on feedback by @khaledhosny\n\n(issue #4944)",
          "is_bot": false,
          "headline": "Move render_own_name back to Google Fonts profile",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-29T01:31:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac2641133564e8241dfdcfbdda9c33d7bec2ad95",
          "body": "The EPAR table is/was a way of expressing common licensing permissions and restrictions in metadata.\nAlmost nothing supported it, and we gave it a chance for quite a while...\n\n(issues #4947)",
          "is_bot": false,
          "headline": "Deprecate 'epar' check (Universal profile)",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-29T00:35:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7333d916491aa4caca03ee313c8b2093a4635f47",
          "body": "based on feedback from @khaledhosny\n\n(issue #4945)",
          "is_bot": false,
          "headline": "migrate colorfont_tables check back to Google Fonts profile",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-29T00:14:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8658bca9552d55d168cae68518f8bae27bc1d290",
          "body": "All reporters are now listing which legacy check-IDs were used on the `--check-id` and `--exclude-checkid` options and instructing the users to update to the new naming scheme, because the old ones will be permanently deprecated in the next major release.\n\n(issue #4942)",
          "is_bot": false,
          "headline": "Implemented a backwards compatibility feature for legacy check-IDs.",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-28T23:47:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ccbfdce8b06e1fc8a10d80c1e27cf2e29be138c2",
          "body": "(issue #4844)",
          "is_bot": false,
          "headline": "Fix links to check documentation on GitHub Markdown reports",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-28T09:29:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "553371d961b1b9f1c8b11417f8da87a9729a523f",
          "body": "Check base characters have non-zero advance width.\n\nAdded to the Universal profile\n\nBack-ported from FontSpector:\nhttps://github.com/simoncozens/fontspector/commit/564e18c8deb779f47474411927e6bdbe3427500b\n\n(issue #4906)",
          "is_bot": false,
          "headline": "New check: base_has_width",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-28T08:11:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d3535de81791def452eb460f6efa1108c0b8d9f3",
          "body": null,
          "is_bot": false,
          "headline": "minor cleanup",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-28T08:11:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "83db7cc2a6ad58585ddec9397306e0420843edb1",
          "body": "Added to the OpenType profile.\n\nReplaces the old checks (also from OpenType profile):\n- opentype/italic_axis_in_stat\n- opentype/italic_axis_in_stat_is_boolean\n- opentype/italic_axis_last\n\nLarge chunk of code back-ported from FontSpector.\n\n(issue #4865)",
          "is_bot": false,
          "headline": "new check: STAT/ital_axis",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-28T04:48:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9a33924125b97012338dcb7a942d7f4c36db56c6",
          "body": "googlefonts/varfont/bold_wght_coord from Google Fonts profile.\nRenamed to varfont/bold_wght_coord\n\n(PR #4938)",
          "is_bot": false,
          "headline": "Move varfont/bold_wght_coord to Universal profile",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-27T04:16:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "592a41b91d8cc7b5cbaec288d5f43c328dfa0843",
          "body": null,
          "is_bot": false,
          "headline": "minor fixes to sphinx warnings",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-27T04:16:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2aad8726efe5e1d9299881ae2f2e077476d559fa",
          "body": "googlefonts/varfont/duplicate_instance_names from Google Fonts profile.\nRenamed to varfont/duplicate_instance_names\n\n(PR #4937)",
          "is_bot": false,
          "headline": "Move varfont/duplicate_instance_names to Universal profile",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-27T01:33:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c3ea61f6c2e0acf94d3414293c1935a322e1a512",
          "body": null,
          "is_bot": false,
          "headline": "git-ignore auto-generated .rst files",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-26T21:07:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a0d52c1afc5fea1c70cc8a74f11b7b096fca3f6e",
          "body": null,
          "is_bot": false,
          "headline": "update issur & PR references in the changelog",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-26T21:01:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a789ffa2b26348e385a16b775ad0a4a4a65e8958",
          "body": "Backporting from FontSpector.\n(issue #4865)",
          "is_bot": false,
          "headline": "Merge opentype/fsselection_matches_macstyle into opentype/fsselection",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-26T21:01:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c5dc2db308c09a03370b5602d49de2fb69cfcd5b",
          "body": null,
          "is_bot": false,
          "headline": "minor improvement to documentation of checks: display section names",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-26T08:13:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "da825ff0746641429cc4827ffd4a25ac3b1388b3",
          "body": "auto-generate the .rst files for the check implementations so that it\ndoes not have to be manually maintained.",
          "is_bot": false,
          "headline": "revamp documentation of checks on readthedocs",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-26T06:23:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "618789e63489cb436f30624f8c22e7a6603c84e9",
          "body": null,
          "is_bot": false,
          "headline": "almost done documenting check-ID renaming",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-25T08:44:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1a6604ee1dc3a720afada1717ade8b6c68617e1b",
          "body": null,
          "is_bot": false,
          "headline": "more documentation at legacy_checkids.py",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-25T08:10:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c0b2f95008b256742cf337ea026af53e1fd40e9f",
          "body": null,
          "is_bot": false,
          "headline": "a few improvements to the documentation at legacy_checkids.py",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-24T21:44:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "555d55f0ffcc1f7f5b29b483719bd0caf4821fe9",
          "body": null,
          "is_bot": false,
          "headline": "do not run black on the legacy_checkids.py file",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-24T21:18:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d08a8e9877276f93e7b4c9236c863318be4da837",
          "body": "\"com.google.fonts/check/fstype\":                \"googlefonts/fstype\",\n\"com.google.fonts/check/os2/use_typo_metrics\":  \"googlefonts/use_typo_metrics\",\n\"com.google.fonts/check/usweightclass\":         \"googlefonts/weightclass\",\n\"com.typenetwork/check/usweightclass\":          \"typenetwork/weightclass\",",
          "is_bot": false,
          "headline": "Rename a few more checks:",
          "author_name": "Felipe Corrêa da Silva Sanches",
          "author_login": "felipesanches",
          "committed_at": "2024-12-24T21:18:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 70,
      "commits_last_year": 10,
      "latest_release_at": "2025-10-02T18:34:25Z",
      "latest_release_tag": "v1.1.0",
      "releases_from_tags": false,
      "days_since_last_push": 262,
      "active_weeks_last_year": 5,
      "days_since_latest_release": 295,
      "mean_days_between_releases": 36.2
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 75,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "fontbakery",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "pypi",
          "matches_repo": null,
          "registry_url": "https://pypi.org/project/fontbakery/",
          "is_deprecated": false,
          "latest_version": "1.1.0",
          "repository_url": null,
          "versions_count": 146,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": 71835,
          "first_published_at": "2014-11-12T07:48:33.995932Z",
          "latest_published_at": "2025-10-02T18:34:22.516821Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 295
        }
      ]
    },
    "popularity": {
      "forks": 108,
      "stars": 683,
      "watchers": 45,
      "fork_history": {
        "days": [
          {
            "date": "2014-03-09",
            "count": 1
          },
          {
            "date": "2014-03-25",
            "count": 1
          },
          {
            "date": "2014-04-16",
            "count": 1
          },
          {
            "date": "2014-04-18",
            "count": 1
          },
          {
            "date": "2014-06-05",
            "count": 1
          },
          {
            "date": "2014-07-08",
            "count": 1
          },
          {
            "date": "2014-07-15",
            "count": 1
          },
          {
            "date": "2014-11-28",
            "count": 1
          },
          {
            "date": "2015-06-24",
            "count": 1
          },
          {
            "date": "2015-07-02",
            "count": 1
          },
          {
            "date": "2015-07-16",
            "count": 1
          },
          {
            "date": "2015-10-12",
            "count": 1
          },
          {
            "date": "2015-11-23",
            "count": 1
          },
          {
            "date": "2015-12-13",
            "count": 1
          },
          {
            "date": "2016-08-15",
            "count": 1
          },
          {
            "date": "2016-09-07",
            "count": 1
          },
          {
            "date": "2016-09-25",
            "count": 1
          },
          {
            "date": "2017-04-06",
            "count": 1
          },
          {
            "date": "2017-07-21",
            "count": 1
          },
          {
            "date": "2017-08-07",
            "count": 1
          },
          {
            "date": "2017-08-24",
            "count": 1
          },
          {
            "date": "2017-10-11",
            "count": 1
          },
          {
            "date": "2018-01-05",
            "count": 1
          },
          {
            "date": "2018-01-07",
            "count": 1
          },
          {
            "date": "2018-05-31",
            "count": 1
          },
          {
            "date": "2018-06-28",
            "count": 1
          },
          {
            "date": "2018-08-09",
            "count": 1
          },
          {
            "date": "2018-10-02",
            "count": 1
          },
          {
            "date": "2018-10-20",
            "count": 1
          },
          {
            "date": "2018-11-06",
            "count": 1
          },
          {
            "date": "2018-11-07",
            "count": 1
          },
          {
            "date": "2018-11-15",
            "count": 1
          },
          {
            "date": "2018-12-10",
            "count": 1
          },
          {
            "date": "2018-12-20",
            "count": 1
          },
          {
            "date": "2019-01-23",
            "count": 1
          },
          {
            "date": "2019-10-08",
            "count": 1
          },
          {
            "date": "2019-10-30",
            "count": 1
          },
          {
            "date": "2019-12-03",
            "count": 1
          },
          {
            "date": "2020-03-19",
            "count": 1
          },
          {
            "date": "2020-04-14",
            "count": 1
          },
          {
            "date": "2020-04-22",
            "count": 1
          },
          {
            "date": "2020-06-14",
            "count": 1
          },
          {
            "date": "2020-06-15",
            "count": 1
          },
          {
            "date": "2020-06-25",
            "count": 1
          },
          {
            "date": "2020-08-11",
            "count": 1
          },
          {
            "date": "2020-09-10",
            "count": 1
          },
          {
            "date": "2020-11-10",
            "count": 1
          },
          {
            "date": "2021-01-14",
            "count": 1
          },
          {
            "date": "2021-01-18",
            "count": 1
          },
          {
            "date": "2021-03-08",
            "count": 1
          },
          {
            "date": "2021-03-09",
            "count": 1
          },
          {
            "date": "2021-03-11",
            "count": 1
          },
          {
            "date": "2021-03-23",
            "count": 1
          },
          {
            "date": "2021-03-31",
            "count": 1
          },
          {
            "date": "2021-04-04",
            "count": 1
          },
          {
            "date": "2021-04-06",
            "count": 1
          },
          {
            "date": "2021-05-14",
            "count": 1
          },
          {
            "date": "2021-06-09",
            "count": 1
          },
          {
            "date": "2021-08-01",
            "count": 1
          },
          {
            "date": "2021-09-08",
            "count": 1
          },
          {
            "date": "2021-10-20",
            "count": 1
          },
          {
            "date": "2021-11-23",
            "count": 1
          },
          {
            "date": "2022-01-20",
            "count": 1
          },
          {
            "date": "2022-01-21",
            "count": 1
          },
          {
            "date": "2022-01-28",
            "count": 1
          },
          {
            "date": "2022-02-04",
            "count": 1
          },
          {
            "date": "2022-07-21",
            "count": 1
          },
          {
            "date": "2022-09-15",
            "count": 1
          },
          {
            "date": "2022-10-13",
            "count": 1
          },
          {
            "date": "2022-10-20",
            "count": 1
          },
          {
            "date": "2022-11-08",
            "count": 1
          },
          {
            "date": "2022-12-03",
            "count": 1
          },
          {
            "date": "2022-12-20",
            "count": 1
          },
          {
            "date": "2023-01-01",
            "count": 1
          },
          {
            "date": "2023-01-10",
            "count": 1
          },
          {
            "date": "2023-04-25",
            "count": 1
          },
          {
            "date": "2023-06-29",
            "count": 1
          },
          {
            "date": "2023-07-01",
            "count": 1
          },
          {
            "date": "2023-07-03",
            "count": 1
          },
          {
            "date": "2023-09-12",
            "count": 1
          },
          {
            "date": "2023-12-05",
            "count": 1
          },
          {
            "date": "2024-04-03",
            "count": 1
          },
          {
            "date": "2024-04-18",
            "count": 1
          },
          {
            "date": "2024-05-29",
            "count": 1
          },
          {
            "date": "2024-06-27",
            "count": 1
          },
          {
            "date": "2024-10-13",
            "count": 1
          },
          {
            "date": "2024-10-16",
            "count": 1
          },
          {
            "date": "2024-11-15",
            "count": 1
          },
          {
            "date": "2024-12-10",
            "count": 1
          },
          {
            "date": "2025-01-11",
            "count": 1
          },
          {
            "date": "2025-02-19",
            "count": 1
          },
          {
            "date": "2025-03-03",
            "count": 1
          },
          {
            "date": "2025-03-11",
            "count": 1
          },
          {
            "date": "2025-08-15",
            "count": 1
          },
          {
            "date": "2025-11-21",
            "count": 1
          },
          {
            "date": "2026-01-10",
            "count": 1
          },
          {
            "date": "2026-02-25",
            "count": 1
          },
          {
            "date": "2026-02-26",
            "count": 1
          },
          {
            "date": "2026-05-15",
            "count": 1
          },
          {
            "date": "2026-07-06",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 100,
        "total_forks": 108
      },
      "star_history": null,
      "open_issues_and_prs": 302
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "docs/Makefile"
      ],
      "api_schema_files": [
        "Lib/fontbakery/axes.proto",
        "Lib/fontbakery/designers.proto",
        "Lib/fontbakery/fonts_public.proto"
      ],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [],
      "largest_source_bytes": 136146,
      "source_files_sampled": 517,
      "oversized_source_files": 2,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "pyproject.toml"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 36,
        "malicious_count": 0,
        "assessed_package": "pypi:fontbakery@1.1.0",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "pypi"
      ],
      "dependencies": [
        {
          "name": "beziers",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 0.6.0, == 0.6.*"
        },
        {
          "name": "cmarkgfm",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 0.4"
        },
        {
          "name": "defcon",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "dehinter",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 3.1.0"
        },
        {
          "name": "fontTools",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 4.47.0"
        },
        {
          "name": "freetype-py",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "< 2.4.0"
        },
        {
          "name": "Jinja2",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 3.0.0"
        },
        {
          "name": "munkres",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "opentypespec",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 1.9.2"
        },
        {
          "name": "opentype-sanitizer",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 9.1.0, == 9.*"
        },
        {
          "name": "packaging",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 14.5"
        },
        {
          "name": "pip-api",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "PyYAML",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "requests",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 2.19"
        },
        {
          "name": "rich",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "toml",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "typing_extensions",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "ufolint",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "ufo2ft",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 2.25.2"
        },
        {
          "name": "uharfbuzz",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": null
        },
        {
          "name": "vharfbuzz",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">= 0.2.0"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "beziers",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "cmarkgfm",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "defcon",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "dehinter",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "fonttools",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "freetype-py",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "jinja2",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "munkres",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "opentype-sanitizer",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "opentypespec",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "packaging",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pip-api",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pyyaml",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "requests",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "rich",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "toml",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "typing-extensions",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "ufo2ft",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "ufolint",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "uharfbuzz",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "vharfbuzz",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 21,
        "direct_count": 21,
        "indirect_count": 0
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 3,
        "merged_prs": 2131,
        "open_issues": 299,
        "closed_ratio": 0.883,
        "closed_issues": 2260,
        "closed_unmerged_prs": 152
      },
      "bus_factor": 2,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "felipesanches",
          "commits": 3701,
          "avatar_url": "https://avatars.githubusercontent.com/u/213676?v=4"
        },
        {
          "type": "User",
          "login": "davelab6",
          "commits": 951,
          "avatar_url": "https://avatars.githubusercontent.com/u/261579?v=4"
        },
        {
          "type": "User",
          "login": "vitalyvolkov",
          "commits": 860,
          "avatar_url": "https://avatars.githubusercontent.com/u/205409?v=4"
        },
        {
          "type": "User",
          "login": "xen",
          "commits": 653,
          "avatar_url": "https://avatars.githubusercontent.com/u/31260?v=4"
        },
        {
          "type": "User",
          "login": "simoncozens",
          "commits": 392,
          "avatar_url": "https://avatars.githubusercontent.com/u/106728?v=4"
        },
        {
          "type": "User",
          "login": "miguelsousa",
          "commits": 290,
          "avatar_url": "https://avatars.githubusercontent.com/u/2119742?v=4"
        },
        {
          "type": "User",
          "login": "m4rc1e",
          "commits": 244,
          "avatar_url": "https://avatars.githubusercontent.com/u/7525512?v=4"
        },
        {
          "type": "User",
          "login": "madig",
          "commits": 197,
          "avatar_url": "https://avatars.githubusercontent.com/u/380829?v=4"
        },
        {
          "type": "User",
          "login": "graphicore",
          "commits": 188,
          "avatar_url": "https://avatars.githubusercontent.com/u/393132?v=4"
        },
        {
          "type": "User",
          "login": "chrissimpkins",
          "commits": 91,
          "avatar_url": "https://avatars.githubusercontent.com/u/4249591?v=4"
        }
      ],
      "contributors_sampled": 59,
      "top_contributor_share": 0.461
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "build_publish.yml",
        "install_run.yml",
        "lint_test.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": true,
      "has_linter_config": true,
      "has_precommit_config": true
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 7,
            "reason": "12 out of 16 merged PRs checked by a CI test -- score normalized to 7",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 5,
            "reason": "Found 10/19 approved changesets -- score normalized to 5",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 64 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 3,
            "reason": "SAST tool is not run on all commits -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "9a85e003d36ebfbbfe68c6d362e5db5a6434332c",
        "ran_at": "2026-07-25T15:01:29Z",
        "aggregate_score": 5.1,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-05-02T22:31:34Z",
      "oldest_open_prs": [
        {
          "number": 5055,
          "created_at": "2026-01-08T11:23:22Z",
          "last_comment_at": "2026-02-24T08:00:39Z",
          "last_comment_author": "MihailJP"
        },
        {
          "number": 5057,
          "created_at": "2026-02-26T08:15:52Z",
          "last_comment_at": "2026-04-01T14:54:37Z",
          "last_comment_author": "janbrasna"
        },
        {
          "number": 5059,
          "created_at": "2026-03-01T21:10:58Z",
          "last_comment_at": "2026-05-17T21:35:11Z",
          "last_comment_author": "PeterDekkers"
        }
      ],
      "last_merged_pr_at": "2025-11-04T18:52:25Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 1600,
          "created_at": "2017-10-03T19:42:56Z",
          "last_comment_at": "2024-12-04T10:02:30Z",
          "last_comment_author": "simoncozens"
        },
        {
          "number": 1647,
          "created_at": "2017-11-11T00:27:29Z",
          "last_comment_at": "2018-06-26T06:01:45Z",
          "last_comment_author": "felipesanches"
        },
        {
          "number": 1680,
          "created_at": "2017-12-21T17:43:32Z",
          "last_comment_at": "2018-01-15T12:04:32Z",
          "last_comment_author": "m4rc1e"
        },
        {
          "number": 1708,
          "created_at": "2018-02-14T14:20:50Z",
          "last_comment_at": "2018-05-01T10:17:37Z",
          "last_comment_author": "m4rc1e"
        },
        {
          "number": 1784,
          "created_at": "2018-04-13T08:26:58Z",
          "last_comment_at": "2018-04-18T21:01:15Z",
          "last_comment_author": "fantasai"
        },
        {
          "number": 1814,
          "created_at": "2018-04-20T11:00:18Z",
          "last_comment_at": "2018-10-17T11:08:58Z",
          "last_comment_author": "anthrotype"
        },
        {
          "number": 1820,
          "created_at": "2018-04-22T21:13:34Z",
          "last_comment_at": "2022-02-24T05:28:27Z",
          "last_comment_author": "davelab6"
        },
        {
          "number": 1824,
          "created_at": "2018-04-23T10:29:35Z",
          "last_comment_at": "2018-10-21T16:08:16Z",
          "last_comment_author": "madig"
        },
        {
          "number": 1834,
          "created_at": "2018-04-25T09:29:19Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1838,
          "created_at": "2018-04-29T10:52:28Z",
          "last_comment_at": "2019-01-29T13:30:03Z",
          "last_comment_author": "davelab6"
        },
        {
          "number": 1839,
          "created_at": "2018-04-29T15:16:05Z",
          "last_comment_at": "2018-04-29T15:21:43Z",
          "last_comment_author": "felipesanches"
        },
        {
          "number": 1864,
          "created_at": "2018-05-14T21:06:13Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 1903,
          "created_at": "2018-06-06T15:37:42Z",
          "last_comment_at": "2020-07-07T10:52:07Z",
          "last_comment_author": "drj11"
        },
        {
          "number": 1904,
          "created_at": "2018-06-07T10:56:23Z",
          "last_comment_at": "2018-06-13T09:15:12Z",
          "last_comment_author": "graphicore"
        },
        {
          "number": 1905,
          "created_at": "2018-06-07T15:46:35Z",
          "last_comment_at": "2018-09-19T16:57:38Z",
          "last_comment_author": "madig"
        },
        {
          "number": 1907,
          "created_at": "2018-06-08T10:57:08Z",
          "last_comment_at": "2020-09-01T12:09:20Z",
          "last_comment_author": "justvanrossum"
        },
        {
          "number": 1919,
          "created_at": "2018-06-15T18:09:58Z",
          "last_comment_at": "2018-06-16T08:34:06Z",
          "last_comment_author": "moyogo"
        },
        {
          "number": 1943,
          "created_at": "2018-06-28T19:05:18Z",
          "last_comment_at": "2018-09-29T04:25:00Z",
          "last_comment_author": "felipesanches"
        },
        {
          "number": 2002,
          "created_at": "2018-08-06T12:32:47Z",
          "last_comment_at": "2018-12-13T18:08:50Z",
          "last_comment_author": "felipesanches"
        },
        {
          "number": 2004,
          "created_at": "2018-08-06T18:14:04Z",
          "last_comment_at": "2018-08-24T15:01:47Z",
          "last_comment_author": "madig"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/fonttools/fontbakery",
    "host": "github.com",
    "name": "fontbakery",
    "owner": "fonttools"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 69,
      "inputs": {
        "security": 61,
        "vitality": 38,
        "community": 81,
        "governance": 74,
        "engineering": 92
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "at_risk",
        "name": "Vitality",
        "value": 38,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "critical",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 16,
            "inputs": {
              "commits_last_year": 10,
              "human_commit_share": 1,
              "days_since_last_push": 262,
              "active_weeks_last_year": 5
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 262 days ago",
                "points": 3.6,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 262
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "5/52 weeks with commits",
                "points": 3.5,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 5
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "10 commits in the last year",
                "points": 9.4,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "good",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 70,
            "inputs": {
              "releases_count": 70,
              "latest_release_tag": "v1.1.0",
              "releases_from_tags": false,
              "days_since_latest_release": 295,
              "mean_days_between_releases": 36.2
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "70 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 70
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 295 days ago",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 295
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~36.2 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 36.2
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "dormant",
              "guards": [
                "recent_release",
                "dependencies_clean"
              ],
              "signals": [
                "issue_rot",
                "scorecard_unmaintained"
              ],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": 1,
              "unanswered_open_issues": 7,
              "days_since_last_merged_pr": 262,
              "days_since_last_human_commit": 262,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "no human commit for 262 days, with nothing left unanswered; held at dormant by a release within the year, no affected dependency",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_quiet",
                    "params": {
                      "days": 262
                    }
                  },
                  {
                    "code": "abandonment_guarded",
                    "params": {
                      "guards": "a release within the year, no affected dependency"
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "good",
        "name": "Community & Adoption",
        "value": 81,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "good",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 72,
            "inputs": {
              "forks": 108,
              "stars": 683,
              "watchers": 45,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "683 stars",
                "points": 46,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 683
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "108 forks",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 108
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "45 watchers",
                "points": 9.1,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 45
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "good",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 81,
            "inputs": {
              "packages": [
                "fontbakery"
              ],
              "dependents": null,
              "ecosystems": "pypi",
              "total_downloads": null,
              "monthly_downloads": 71835
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "71,835 downloads/month across pypi",
                "points": 64.8,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 71835,
                      "ecosystems": "pypi"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "good",
        "name": "Sustainability & Governance",
        "value": 74,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "moderate",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 61,
            "inputs": {
              "bus_factor": 2,
              "contributors_sampled": 59,
              "top_contributor_share": 0.461
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "2 contributor(s) cover half of all commits",
                "points": 25.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 46% of commits",
                "points": 12.1,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 46
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "59 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 59
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 64 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "merged_prs": 2131,
              "open_issues": 299,
              "closed_issues": 2260,
              "issue_closed_ratio": 0.883,
              "closed_unmerged_prs": 152
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "88% of issues closed",
                "points": 41.3,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 88
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "2131/2283 decided PRs merged",
                "points": 35.7,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 2131,
                      "decided": 2283
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 10/19 approved changesets -- score normalized to 5",
                "points": 7.5,
                "status": "partial",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 66,
            "inputs": {
              "followers": 119,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "fonttools",
              "public_repos": 18,
              "account_age_days": 3657
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "119 followers of fonttools",
                "points": 14.9,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 119,
                      "login": "fonttools"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "18 public repos, account ~10 yr old",
                "points": 21.3,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 18
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 10
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 91,
            "inputs": {
              "packages": [
                "fontbakery"
              ],
              "ecosystems": "pypi",
              "any_deprecated": false,
              "min_days_since_publish": 295
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on pypi",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "pypi"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 295 days ago",
                "points": 26,
                "status": "partial",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 295
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "146 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 146
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 92,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 94,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": true,
              "has_precommit_config": true
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "3 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 16,
                "status": "met",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 9.6,
                "status": "met",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "12 out of 16 merged PRs checked by a CI test -- score normalized to 7",
                "points": 14,
                "status": "partial",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "command-line-tool",
                "font",
                "quality-assurance"
              ],
              "has_wiki": false,
              "homepage": "https://fontbakery.readthedocs.io",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://fontbakery.readthedocs.io",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "3 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 61,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 51,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 5.1
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "12 out of 16 merged PRs checked by a CI test -- score normalized to 7",
                "points": 1.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 10/19 approved changesets -- score normalized to 5",
                "points": 3.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 64 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 3",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the pypi:fontbakery@1.1.0 runtime dependency closure — what installing the published package pulls in — 36 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "pypi:fontbakery@1.1.0",
                  "assessed": 36
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 36,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 36,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 16
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "at_risk",
        "name": "AI Readiness",
        "value": 44,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "critical",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 12,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.23,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "23 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 12.3,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 23,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 51,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [
                "docs/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "docs/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "docs/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 11,
                "status": "met",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "moderate",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "primary_language": "Python",
              "largest_source_bytes": 136146,
              "source_files_sampled": 517,
              "oversized_source_files": 2
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Python without a type-check config",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_typecheck_config_language",
                    "params": {
                      "language": "Python"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "2/517 source files over 60KB",
                "points": 54.8,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 517,
                      "oversized": 2
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "good",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 80,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": [
                "Lib/fontbakery/axes.proto",
                "Lib/fontbakery/designers.proto",
                "Lib/fontbakery/fonts_public.proto"
              ]
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": "Lib/fontbakery/axes.proto, Lib/fontbakery/designers.proto, Lib/fontbakery/fonts_public.proto",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Lib/fontbakery/axes.proto, Lib/fontbakery/designers.proto, Lib/fontbakery/fonts_public.proto"
                    }
                  }
                ],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-25T15:02:00.463175Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/f/fonttools/fontbakery.svg",
  "full_name": "fonttools/fontbakery",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsPyPI.