Raw JSON report machine-readable
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 341,
"has_wiki": false,
"homepage": null,
"languages": {
"Ruby": 91931,
"Shell": 131
},
"pushed_at": "2026-07-27T14:11:36Z",
"created_at": "2019-12-14T21:06:56Z",
"owner_type": "Organization",
"updated_at": "2026-07-27T14:05:01Z",
"description": null,
"is_archived": false,
"is_disabled": false,
"license_spdx": null,
"default_branch": "main",
"license_spdx_raw": null,
"primary_language": "Ruby",
"significant_languages": [
"Ruby"
]
},
"owner": {
"blog": "https://www.guideline.com",
"name": "Guideline Technologies",
"type": "Organization",
"login": "guideline-tech",
"company": null,
"location": null,
"followers": 7,
"avatar_url": "https://avatars.githubusercontent.com/u/11547170?v=4",
"created_at": "2015-03-18T23:56:41Z",
"is_verified": null,
"public_repos": 17,
"account_age_days": 4148
},
"license": {
"state": "absent",
"spdx_id": null,
"raw_spdx": null,
"file_present": false,
"scorecard_found": false,
"profile_has_license": false
},
"activity": {
"releases": [
{
"tag": "v2.4.2",
"kind": "patch",
"published_at": "2026-07-27T14:11:49Z"
},
{
"tag": "v2.4.1",
"kind": "patch",
"published_at": "2026-06-15T14:59:54Z"
},
{
"tag": "v2.4.0",
"kind": "minor",
"published_at": "2026-04-29T13:36:44Z"
},
{
"tag": "v2.3.0",
"kind": "minor",
"published_at": "2026-04-07T14:50:12Z"
},
{
"tag": "v2.2.0",
"kind": "minor",
"published_at": "2025-04-08T15:38:34Z"
}
],
"recent_commits": [
{
"oid": "609471cb5ac7d0beb01fc78c28f6ac5775b6bd44",
"body": "Co-authored-by: Claude Sonnet 5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Bump patch version to 2.4.2 and update bundler to 4.0.17 (#217)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-07-27T14:01:43Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "75fc3a474bcd7b02c26d20f68f7cd72b496919a3",
"body": "The gemspec declared no runtime dependencies, but lib/ requires activesupport, concurrent-ruby, and benchmark. These resolved only by luck via the activerecord dev dependency and Ruby's default gems.\n\nbenchmark and irb become bundled gems in Ruby 4.0, so they will no longer be present without an explicit declaration.",
"is_bot": false,
"headline": "Declare missing gem dependencies (#216)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-07-27T13:24:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "951a32aa1a9594d94dca78baacf3bab87bad1696",
"body": "…up (#215)\n\n* [bundler] Bump concurrent-ruby from 1.3.7 to 1.3.8 in the monthly group\n\nBumps the monthly group with 1 update: [concurrent-ruby](https://github.com/ruby-concurrency/concurrent-ruby).\n\n\nUpdates `concurrent-ruby` from 1.3.7 to 1.3.8\n- [Release notes](https://github.com/ruby-concurrency/\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump concurrent-ruby from 1.3.7 to 1.3.8 in the monthly gro…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-20T14:01:15Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "1e2af8019515c19dfd36f7bf399571366240a765",
"body": "* [bundler] Bump json from 2.20.0 to 2.21.1 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.20.0 to 2.21.1\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.20.0 to 2.21.1 in the monthly group (#214)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-13T13:40:58Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b191232401400a7526707a9e70eee9909e9d2472",
"body": "Bumps the monthly group with 1 update: [globalid](https://github.com/rails/globalid).\n\n\nUpdates `globalid` from 1.3.0 to 1.4.0\n- [Release notes](https://github.com/rails/globalid/releases)\n- [Commits](https://github.com/rails/globalid/compare/v1.3.0...v1.4.0)\n\n---\nupdated-dependencies:\n- dependency-\n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump globalid from 1.3.0 to 1.4.0 in the monthly group (#213)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-24T12:37:08Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e543882939bb94d5970b7ea512f34951515518e2",
"body": "* [bundler] Bump json from 2.19.9 to 2.20.0 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.19.9 to 2.20.0\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.19.9 to 2.20.0 in the monthly group (#212)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-23T14:08:31Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "833c1068f18df34eca81dc9475c619b2b965725d",
"body": "* [bundler] Bump the monthly group with 2 updates\n\nBumps the monthly group with 2 updates: [concurrent-ruby](https://github.com/ruby-concurrency/concurrent-ruby) and [i18n](https://github.com/ruby-i18n/i18n).\n\n\nUpdates `concurrent-ruby` from 1.3.6 to 1.3.7\n- [Release notes](https://github.com/ruby-c\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group with 2 updates (#209)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-22T15:06:29Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "913117ca0f5023a3a0fe0ae62060f9688a3e7ef4",
"body": "* [bundler] Bump concurrent-ruby from 1.3.6 to 1.3.7\n\nBumps [concurrent-ruby](https://github.com/ruby-concurrency/concurrent-ruby) from 1.3.6 to 1.3.7.\n- [Release notes](https://github.com/ruby-concurrency/concurrent-ruby/releases)\n- [Changelog](https://github.com/ruby-concurrency/concurrent-ruby/bl\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump concurrent-ruby from 1.3.6 to 1.3.7 (#211)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-22T15:05:34Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "128f01c36f960893c5221bd27f15732a792ebe8a",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6 to 7.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v6...v7)\n\n---\nupdated-dependenc\n[…]\nirect:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[github-actions] Bump actions/checkout from 6 to 7 (#210)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-22T14:42:51Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9805f808b2877fbb651d3e5f7449a61654da00a8",
"body": "* chore: gemspec cleanup — metadata, constants, v2.4.1\n\n* chore: bundle update",
"is_bot": false,
"headline": "chore: gemspec cleanup — metadata, v2.4.1 (#208)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-06-15T13:37:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0c54896884a86345da55f7a8e7ddacd8b4ea271d",
"body": "* [bundler] Bump json from 2.19.8 to 2.19.9 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.19.8 to 2.19.9\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.19.8 to 2.19.9 in the monthly group (#207)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-12T13:57:33Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "1d4c57b5bd1bd13c80fdaf893740db7490ad179a",
"body": null,
"is_bot": false,
"headline": "bump bundler to 4.0.14 to fix dependabot (#206)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-06-11T14:55:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c1b8456677730050c880404edba0a648ef70ced1",
"body": "Bumps the monthly group with 1 update: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `sqlite3` from 2.9.4 to 2.9.5\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](https://github.com/sparklemotion/sqlite3-ruby/blob/main/CHANGELOG.md)\n- [Co\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump sqlite3 from 2.9.4 to 2.9.5 in the monthly group (#204)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-08T13:52:21Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c1aa1f2536086ed457effd808c49e66fe9c2b15d",
"body": "* [bundler] Bump json from 2.19.7 to 2.19.8 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.19.7 to 2.19.8\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.19.7 to 2.19.8 in the monthly group (#203)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-04T13:50:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "82fc7e6e01a89022cf764c5698bee2af193b9449",
"body": "* [bundler] Bump json from 2.19.5 to 2.19.7 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.19.5 to 2.19.7\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.19.5 to 2.19.7 in the monthly group (#202)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-05-28T13:53:01Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "323399e3d4814e34998124d1204df8cd9f54b6e4",
"body": null,
"is_bot": false,
"headline": "bump bundler version and appraisals (#201)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-05-22T18:09:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6c0ee45ae3f657fba3a30a4b426817474ce1be0e",
"body": "* [bundler] Bump sqlite3 from 2.9.3 to 2.9.4 in the monthly group\n\nBumps the monthly group with 1 update: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `sqlite3` from 2.9.3 to 2.9.4\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](https://\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump sqlite3 from 2.9.3 to 2.9.4 in the monthly group (#200)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-05-06T16:08:00Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4848d8df3bd62b39699fe810d7d465fa7d30b8e2",
"body": "* [bundler] Bump minitest from 6.0.5 to 6.0.6 in the monthly group\n\nBumps the monthly group with 1 update: [minitest](https://github.com/minitest/minitest).\n\n\nUpdates `minitest` from 6.0.5 to 6.0.6\n- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)\n- [Commits](https://githu\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump minitest from 6.0.5 to 6.0.6 in the monthly group (#199)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-05-04T12:07:08Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "05dba5d6c31c8a5cf3058a6d6424d4e3a58dcbae",
"body": "Cached fixtures can hold values whose validity depends on real-world\ntime, and downstream consumers currently have no clean place to refresh\nthem per test run. The existing :execution and :time_access triggers\nonly fire on cache miss / time access, leaving cache-hit reads\nunobservable. This adds a :\n[…]\ne-existing reference state before\nisolation-dependency loading) and not on the recovery rebuild path when\nthe locator returns nil.\n\nCo-authored-by: Claude Opus 4.7 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "Add :load hook fired on cached fixture access (#198)",
"author_name": "Aaron Rosenthal",
"author_login": "aaronrosenthal",
"committed_at": "2026-04-29T13:35:14Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "ed831269948f819b907eda64d23d7288ce0755de",
"body": "* [bundler] Bump minitest from 6.0.4 to 6.0.5 in the monthly group\n\nBumps the monthly group with 1 update: [minitest](https://github.com/minitest/minitest).\n\n\nUpdates `minitest` from 6.0.4 to 6.0.5\n- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)\n- [Commits](https://githu\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump minitest from 6.0.4 to 6.0.5 in the monthly group (#197)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-22T12:02:50Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8c348bff745d4622c3e4ad911ee599f433f723f3",
"body": "* [bundler] Bump the monthly group with 2 updates\n\nBumps the monthly group with 2 updates: [bigdecimal](https://github.com/ruby/bigdecimal) and [json](https://github.com/ruby/json).\n\n\nUpdates `bigdecimal` from 4.1.1 to 4.1.2\n- [Release notes](https://github.com/ruby/bigdecimal/releases)\n- [Changelog\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group with 2 updates (#196)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-20T19:15:35Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b12db0bd8e12327de0782e664be74e73251273b1",
"body": "* [bundler] Bump the monthly group with 2 updates\n\nBumps the monthly group with 2 updates: [rake](https://github.com/ruby/rake) and [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `rake` from 13.4.1 to 13.4.2\n- [Release notes](https://github.com/ruby/rake/releases)\n- [Changelog](\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group with 2 updates (#195)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-17T12:06:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b2108b6a3e109542ffbde5e839997157247d42f1",
"body": "* [bundler] Bump minitest from 6.0.3 to 6.0.4 in the monthly group\n\nBumps the monthly group with 1 update: [minitest](https://github.com/minitest/minitest).\n\n\nUpdates `minitest` from 6.0.3 to 6.0.4\n- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)\n- [Commits](https://githu\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump minitest from 6.0.3 to 6.0.4 in the monthly group (#194)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-15T16:35:47Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5b93826fcf5e0ea7a4ed0c6aeb401500171c3600",
"body": "* [bundler] Bump rake from 13.3.1 to 13.4.1 in the monthly group\n\nBumps the monthly group with 1 update: [rake](https://github.com/ruby/rake).\n\n\nUpdates `rake` from 13.3.1 to 13.4.1\n- [Release notes](https://github.com/ruby/rake/releases)\n- [Changelog](https://github.com/ruby/rake/blob/master/Histor\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump rake from 13.3.1 to 13.4.1 in the monthly group (#193)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-14T19:40:04Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a31623894495c384ae5234e0bf08ae4a414c9120",
"body": "* Drop Ruby 3.2 from CI test matrix\n\nCo-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>\n\n* Update appraisals\n\nCo-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>\n\n---------\n\nCo-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "Drop Ruby 3.2 from CI test matrix (#192)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-04-07T14:22:10Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "611d8d9b588bd3c32d9855ce864414e75c851145",
"body": "…191)\n\n* [bundler] Bump bigdecimal from 4.1.0 to 4.1.1 in the monthly group\n\nBumps the monthly group with 1 update: [bigdecimal](https://github.com/ruby/bigdecimal).\n\n\nUpdates `bigdecimal` from 4.1.0 to 4.1.1\n- [Release notes](https://github.com/ruby/bigdecimal/releases)\n- [Changelog](https://github\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump bigdecimal from 4.1.0 to 4.1.1 in the monthly group (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-06T12:40:00Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3f7646fafff38917f5dbf4613c16cd6d708e204f",
"body": "* [bundler] Bump minitest from 6.0.2 to 6.0.3 in the monthly group\n\nBumps the monthly group with 1 update: [minitest](https://github.com/minitest/minitest).\n\n\nUpdates `minitest` from 6.0.2 to 6.0.3\n- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)\n- [Commits](https://githu\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump minitest from 6.0.2 to 6.0.3 in the monthly group (#190)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-01T19:23:30Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "63a0bbb4383619bea44d6322dcd951199315e9fd",
"body": "* Update default Ruby to 3.4.9\n\nCI continues to test against Ruby 3.2, 3.3, and 3.4.\n\nCo-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>\n\n* Add mise.lock for Ruby 3.4.9\n\n---------\n\nCo-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "Update default Ruby to 3.4.9 (#189)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-03-31T14:50:11Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "c2c7874db11c8926aec890bf5bcecc5e97af80f9",
"body": null,
"is_bot": false,
"headline": "Bump Ruby to 3.3.11 (#188)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2026-03-30T22:00:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "44db29eb6550afdc4949e6392222a09d3c83a92e",
"body": "…187)\n\n* [bundler] Bump bigdecimal from 4.0.1 to 4.1.0 in the monthly group\n\nBumps the monthly group with 1 update: [bigdecimal](https://github.com/ruby/bigdecimal).\n\n\nUpdates `bigdecimal` from 4.0.1 to 4.1.0\n- [Release notes](https://github.com/ruby/bigdecimal/releases)\n- [Changelog](https://github\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump bigdecimal from 4.0.1 to 4.1.0 in the monthly group (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-30T13:20:15Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ac14fd1b04682bcbc6aee65c336c7d50b658a558",
"body": "* [bundler] Bump the rails group with 3 updates\n\nBumps the rails group with 3 updates: [activerecord](https://github.com/rails/rails), [activemodel](https://github.com/rails/rails) and [activesupport](https://github.com/rails/rails).\n\n\nUpdates `activerecord` from 8.1.2.1 to 8.1.3\n- [Release notes](h\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the rails group with 3 updates (#186)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-25T12:59:55Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d1fdf2f499f285f1126d63ab9cea68488147b897",
"body": "* [bundler] Bump activesupport from 8.1.2 to 8.1.2.1\n\nBumps [activesupport](https://github.com/rails/rails) from 8.1.2 to 8.1.2.1.\n- [Release notes](https://github.com/rails/rails/releases)\n- [Changelog](https://github.com/rails/rails/blob/v8.1.2.1/activesupport/CHANGELOG.md)\n- [Commits](https://git\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump activesupport from 8.1.2 to 8.1.2.1 (#184)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-23T21:26:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3ca1ba95fd1e1810c7d02b0bb000c223cdf9557e",
"body": "* [bundler] Bump json from 2.19.1 to 2.19.2 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.19.1 to 2.19.2\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.19.1 to 2.19.2 in the monthly group (#183)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-19T13:48:31Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "40ca0aee5d19744f2e68f070c4614fe2199866cd",
"body": "* [bundler] Bump the monthly group with 2 updates\n\nBumps the monthly group with 2 updates: [mocha](https://github.com/freerange/mocha) and [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `mocha` from 3.0.2 to 3.1.0\n- [Changelog](https://github.com/freerange/mocha/blob/main/RELEAS\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group with 2 updates (#182)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-16T14:43:52Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "84181f6ab5c9d000514b72f90a1f2c2169d95a66",
"body": "* [bundler] Bump timeout from 0.6.0 to 0.6.1 in the monthly group\n\nBumps the monthly group with 1 update: [timeout](https://github.com/ruby/timeout).\n\n\nUpdates `timeout` from 0.6.0 to 0.6.1\n- [Release notes](https://github.com/ruby/timeout/releases)\n- [Commits](https://github.com/ruby/timeout/compar\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump timeout from 0.6.0 to 0.6.1 in the monthly group (#181)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-13T13:25:29Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3478a04c956cccca507e986f39d60e43345fbebb",
"body": "* [bundler] Bump json from 2.19.0 to 2.19.1 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.19.0 to 2.19.1\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.19.0 to 2.19.1 in the monthly group (#180)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-09T13:05:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "56cd355dfecdd55b901ffcd50366c19d728f3f20",
"body": "* [bundler] Bump json from 2.18.1 to 2.19.0 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.18.1 to 2.19.0\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.18.1 to 2.19.0 in the monthly group (#179)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-06T14:11:21Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "11963885e17b0547d49b9bd6e03000674641ee12",
"body": "* [bundler] Bump sqlite3 from 2.9.0 to 2.9.1 in the monthly group\n\nBumps the monthly group with 1 update: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `sqlite3` from 2.9.0 to 2.9.1\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](https://\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump sqlite3 from 2.9.0 to 2.9.1 in the monthly group (#178)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-02T15:53:08Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "6d2cecd85c44d726d472239497a9194e0c0f818d",
"body": "Bumps the monthly group with 1 update: [minitest](https://github.com/minitest/minitest).\n\n\nUpdates `minitest` from 6.0.1 to 6.0.2\n- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)\n- [Commits](https://github.com/minitest/minitest/compare/v6.0.1...v6.0.2)\n\n---\nupdated-depend\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump minitest from 6.0.1 to 6.0.2 in the monthly group (#177)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-25T22:03:54Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8fb10b4c344d544607cfd490714ec15b42b84664",
"body": "* [bundler] Bump mocha from 3.0.1 to 3.0.2 in the monthly group\n\nBumps the monthly group with 1 update: [mocha](https://github.com/freerange/mocha).\n\n\nUpdates `mocha` from 3.0.1 to 3.0.2\n- [Changelog](https://github.com/freerange/mocha/blob/main/RELEASE.md)\n- [Commits](https://github.com/freerange/m\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump mocha from 3.0.1 to 3.0.2 in the monthly group (#176)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-19T16:35:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4c3d63d01dbc7a73e2e0f9152132f2cdfdb0331b",
"body": "* [bundler] Bump json from 2.18.0 to 2.18.1 in the monthly group\n\nBumps the monthly group with 1 update: [json](https://github.com/ruby/json).\n\n\nUpdates `json` from 2.18.0 to 2.18.1\n- [Release notes](https://github.com/ruby/json/releases)\n- [Changelog](https://github.com/ruby/json/blob/master/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump json from 2.18.0 to 2.18.1 in the monthly group (#175)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-11T14:19:02Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e7b7e778cfb5d76146a91a94462a5023171304b8",
"body": "* [bundler] Bump prism from 1.8.0 to 1.9.0 in the monthly group\n\nBumps the monthly group with 1 update: [prism](https://github.com/ruby/prism).\n\n\nUpdates `prism` from 1.8.0 to 1.9.0\n- [Release notes](https://github.com/ruby/prism/releases)\n- [Changelog](https://github.com/ruby/prism/blob/main/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump prism from 1.8.0 to 1.9.0 in the monthly group (#174)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-01-29T19:22:14Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7c7039cef3256c796b6488d2c8fd6dae68065966",
"body": "Bumps the monthly group with 1 update: [byebug](https://github.com/deivid-rodriguez/byebug).\n\n\nUpdates `byebug` from 12.0.0 to 13.0.0\n- [Release notes](https://github.com/deivid-rodriguez/byebug/releases)\n- [Changelog](https://github.com/deivid-rodriguez/byebug/blob/main/CHANGELOG.md)\n- [Commits](ht\n[…]\npe: version-update:semver-major\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump byebug from 12.0.0 to 13.0.0 in the monthly group (#173)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-01-22T15:37:22Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "33a4aed3233b3b8d37344c2f471b6ab12e26495b",
"body": "* [bundler] Bump prism from 1.7.0 to 1.8.0 in the monthly group\n\nBumps the monthly group with 1 update: [prism](https://github.com/ruby/prism).\n\n\nUpdates `prism` from 1.7.0 to 1.8.0\n- [Release notes](https://github.com/ruby/prism/releases)\n- [Changelog](https://github.com/ruby/prism/blob/main/CHANGE\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump prism from 1.7.0 to 1.8.0 in the monthly group (#172)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-01-14T14:38:30Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "436a9758e9411263ce8736d3a0f551a3d215559b",
"body": "* [bundler] Bump the rails group with 3 updates\n\nBumps the rails group with 3 updates: [activerecord](https://github.com/rails/rails), [activemodel](https://github.com/rails/rails) and [activesupport](https://github.com/rails/rails).\n\n\nUpdates `activerecord` from 8.1.1 to 8.1.2\n- [Release notes](htt\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the rails group with 3 updates (#171)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-01-12T13:38:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b31dfcdd2a90fb9930c5073294ca936415f39734",
"body": "* [bundler] Bump thor from 1.4.0 to 1.5.0 in the monthly group\n\nBumps the monthly group with 1 update: [thor](https://github.com/rails/thor).\n\n\nUpdates `thor` from 1.4.0 to 1.5.0\n- [Release notes](https://github.com/rails/thor/releases)\n- [Commits](https://github.com/rails/thor/compare/v1.4.0...v1.5\n[…]\ned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump thor from 1.4.0 to 1.5.0 in the monthly group (#170)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-01-07T13:33:41Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "25a93ff9a029895821f6bd5c0dc8f691745e3a53",
"body": "…169)\n\nBumps the monthly group with 4 updates in the / directory: [m](https://github.com/qrush/m), [minitest](https://github.com/minitest/minitest), [sqlite3](https://github.com/sparklemotion/sqlite3-ruby) and [i18n](https://github.com/ruby-i18n/i18n).\n\n\nUpdates `m` from 1.6.2 to 1.7.0\n- [Release no\n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 5 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-29T16:09:43Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f1f57136601f4676befac59eda34202e98d907a2",
"body": "* Bump bundler to latest\n\n* latest",
"is_bot": false,
"headline": "Bump bundler to latest (#166)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-12-18T14:19:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8000a4d51fd72668afb1c29f6418b50ffc5f0e84",
"body": "…163)\n\nBumps the monthly group with 4 updates in the / directory: [minitest](https://github.com/minitest/minitest), [mocha](https://github.com/freerange/mocha), [concurrent-ruby](https://github.com/ruby-concurrency/concurrent-ruby) and [json](https://github.com/ruby/json).\n\n\nUpdates `minitest` from \n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 4 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-16T23:41:00Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a213ceba6546a5d52c9ee2b3bb1bbf98bd77f6f3",
"body": "* update to bundler4 and related\n\n* Add rails appraisal testing\n\n* Add rails appraisal testing\n\n* install appraisal first\n\n* install appraisal first",
"is_bot": false,
"headline": "update to bundler4 and related (#160)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-12-08T15:40:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7ee12bc2104f7b3b56a7c76fe5652dc49969bdea",
"body": "…159)\n\nBumps the monthly group with 3 updates in the / directory: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby), [connection_pool](https://github.com/mperham/connection_pool) and [timeout](https://github.com/ruby/timeout).\n\n\nUpdates `sqlite3` from 2.8.0 to 2.8.1\n- [Release notes](https://\n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 3 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-08T15:11:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "65190f5994c1cbcebe8f42296ce18b13ee314fc5",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 5 to 6.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v5...v6)\n\n---\nupdated-dependenc\n[…]\nirect:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[github-actions] Bump actions/checkout from 5 to 6 (#155)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-11-25T14:23:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dfb7ffa11f2aecac9ae8b60807199f12f9c223d1",
"body": "…156)\n\nBumps the monthly group with 3 updates in the / directory: [minitest](https://github.com/minitest/minitest), [mocha](https://github.com/freerange/mocha) and [connection_pool](https://github.com/mperham/connection_pool).\n\n\nUpdates `minitest` from 5.26.1 to 5.26.2\n- [Changelog](https://github.c\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 3 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-11-25T14:23:07Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "63aef54b32b5f14e2cf2fa866b8d23e61e88bdea",
"body": null,
"is_bot": false,
"headline": "bump bundler (#152)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-11-12T21:03:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b4345c304de2c42d9d4804867e1acd1d958c3960",
"body": null,
"is_bot": false,
"headline": "chore(infra): mise setup (#151)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-11-12T17:23:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9dac38b2c2f46319f575947e1db7825f11ae2b73",
"body": "…150)\n\nBumps the monthly group with 6 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [minitest](https://github.com/minitest/minitest) | `5.26.0` | `5.26.1` |\n| [mocha](https://github.com/freerange/mocha) | `2.7.1` | `2.8.0` |\n| [rake](https://github.com/ruby/rake) | `13.3\n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 6 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-11-12T16:11:10Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d198613f87b09154a13e880c6f614ee7f962c36c",
"body": null,
"is_bot": false,
"headline": "action* with rails as well (#144)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-10-22T15:41:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ce0e2b8bbe5341281c0c20659cff2c3bebecbe74",
"body": null,
"is_bot": false,
"headline": "Setup rails specific dependabot group (#143)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-10-22T14:09:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8bdb6685dadba40aa26f6fd39e882657a11a2c55",
"body": "Bumps [benchmark](https://github.com/ruby/benchmark) from 0.4.1 to 0.5.0.\n- [Release notes](https://github.com/ruby/benchmark/releases)\n- [Commits](https://github.com/ruby/benchmark/compare/v0.4.1...v0.5.0)\n\n---\nupdated-dependencies:\n- dependency-name: benchmark\n dependency-version: 0.5.0\n depende\n[…]\ny-type: indirect\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump benchmark from 0.4.1 to 0.5.0 (#142)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-10-22T13:50:26Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "265bbe499451a36bd0348eac1734b9403738ac7a",
"body": "…140)\n\nBumps the monthly group with 1 update: [bigdecimal](https://github.com/ruby/bigdecimal).\n\n\nUpdates `bigdecimal` from 3.3.0 to 3.3.1\n- [Release notes](https://github.com/ruby/bigdecimal/releases)\n- [Changelog](https://github.com/ruby/bigdecimal/blob/master/CHANGES.md)\n- [Commits](https://githu\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump bigdecimal from 3.3.0 to 3.3.1 in the monthly group (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-10-20T13:13:02Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "97de94fd05385cb88ba001c51cc8c30289877c11",
"body": "Bumps the monthly group with 2 updates: [minitest](https://github.com/minitest/minitest) and [bigdecimal](https://github.com/ruby/bigdecimal).\n\n\nUpdates `minitest` from 5.25.5 to 5.26.0\n- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)\n- [Commits](https://github.com/minite\n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group with 2 updates (#139)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-10-08T12:15:52Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "9fe2d8b9472bb91262bd667b8b9e954d326e80e6",
"body": "Bumps the monthly group with 1 update: [uri](https://github.com/ruby/uri).\n\n\nUpdates `uri` from 1.0.3 to 1.0.4\n- [Release notes](https://github.com/ruby/uri/releases)\n- [Commits](https://github.com/ruby/uri/compare/v1.0.3...v1.0.4)\n\n---\nupdated-dependencies:\n- dependency-name: uri\n dependency-versi\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump uri from 1.0.3 to 1.0.4 in the monthly group (#138)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-10-07T19:59:02Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "dcdd4a12b0c87011e8e4b0748496d72b95c37c33",
"body": "…137)\n\nBumps the monthly group with 3 updates in the / directory: [globalid](https://github.com/rails/globalid), [activerecord](https://github.com/rails/rails) and [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `globalid` from 1.2.1 to 1.3.0\n- [Release notes](https://github.com/\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 6 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-10-06T15:18:52Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "652eff95ff31c10af2438f5fe995da58a2557fdd",
"body": "…up (#133)\n\nBumps the monthly group with 1 update: [connection_pool](https://github.com/mperham/connection_pool).\n\n\nUpdates `connection_pool` from 2.5.3 to 2.5.4\n- [Changelog](https://github.com/mperham/connection_pool/blob/main/Changes.md)\n- [Commits](https://github.com/mperham/connection_pool/comp\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump connection_pool from 2.5.3 to 2.5.4 in the monthly gro…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-09-02T13:04:34Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3fce2cd6e13aab32b82322db91aaa3da96331b92",
"body": "…p (#131)\n\nBumps the bundler group with 1 update: [activerecord](https://github.com/rails/rails).\n\n\nUpdates `activerecord` from 8.0.2 to 8.0.2.1\n- [Release notes](https://github.com/rails/rails/releases)\n- [Changelog](https://github.com/rails/rails/blob/v8.0.2.1/activerecord/CHANGELOG.md)\n- [Commits\n[…]\nndency-type: direct:development\n dependency-group: bundler\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump activerecord from 8.0.2 to 8.0.2.1 in the bundler grou…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-08-14T13:04:05Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "60da51ffd276f7b43b6f5eee0ec0705a6b4813a1",
"body": "Bumps the monthly group with 3 updates: [activerecord](https://github.com/rails/rails), [activemodel](https://github.com/rails/rails) and [activesupport](https://github.com/rails/rails).\n\n\nUpdates `activerecord` from 8.0.2 to 8.0.2.1\n- [Release notes](https://github.com/rails/rails/releases)\n- [Chan\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group with 3 updates (#132)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-08-14T13:03:52Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c153849476d604419955ad28750ad114bd782ebc",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 4 to 5.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v4...v5)\n\n---\nupdated-dependenc\n[…]\nirect:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[github-actions] Bump actions/checkout from 4 to 5 (#130)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-08-11T13:36:00Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "6261a178ce5d481e05f488085879c73f44f85008",
"body": null,
"is_bot": false,
"headline": "Bump ruby version to latest patch (#129)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-07-25T14:54:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "098cf24002c08451d9d6e2c1cf02c2034ec2235e",
"body": null,
"is_bot": false,
"headline": "chore(deps): update bundler and dependencies (#128)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-07-22T13:12:49Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "358a52186791addd6979e1fc064aaf2030557917",
"body": "Bumps the monthly group with 1 update: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `sqlite3` from 2.7.2 to 2.7.3\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](https://github.com/sparklemotion/sqlite3-ruby/blob/main/CHANGELOG.md)\n- [Co\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump sqlite3 from 2.7.2 to 2.7.3 in the monthly group (#127)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-07-22T13:02:06Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3d3c8a0b1702a22e6fc39fb9ecfeec401ce41479",
"body": "Bumps the monthly group with 1 update: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `sqlite3` from 2.7.1 to 2.7.2\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](https://github.com/sparklemotion/sqlite3-ruby/blob/main/CHANGELOG.md)\n- [Co\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump sqlite3 from 2.7.1 to 2.7.2 in the monthly group (#126)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-07-16T13:25:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "0a7a16f8d4af9c8baa0be9bd566f39949d13257e",
"body": "Bumps the monthly group with 1 update: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `sqlite3` from 2.7.0 to 2.7.1\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](https://github.com/sparklemotion/sqlite3-ruby/blob/main/CHANGELOG.md)\n- [Co\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump sqlite3 from 2.7.0 to 2.7.1 in the monthly group (#125)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-07-07T13:20:26Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "323af602f1df3bc7ccc0fabac5602d6549287f2d",
"body": "Bumps the monthly group with 1 update: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby).\n\n\nUpdates `sqlite3` from 2.6.0 to 2.7.0\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](https://github.com/sparklemotion/sqlite3-ruby/blob/main/CHANGELOG.md)\n- [Co\n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump sqlite3 from 2.6.0 to 2.7.0 in the monthly group (#124)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-06-10T17:41:18Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "30d7c53d038353c281331e2ef5c3ae49fda92ee1",
"body": "…123)\n\nBumps the monthly group with 1 update: [bigdecimal](https://github.com/ruby/bigdecimal).\n\n\nUpdates `bigdecimal` from 3.2.1 to 3.2.2\n- [Release notes](https://github.com/ruby/bigdecimal/releases)\n- [Changelog](https://github.com/ruby/bigdecimal/blob/master/CHANGES.md)\n- [Commits](https://githu\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump bigdecimal from 3.2.1 to 3.2.2 in the monthly group (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-06-09T14:11:09Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "da94c022fa4d8af36f9f6e675570b3e98179f75a",
"body": "…122)\n\nBumps the monthly group with 1 update: [bigdecimal](https://github.com/ruby/bigdecimal).\n\n\nUpdates `bigdecimal` from 3.2.0 to 3.2.1\n- [Release notes](https://github.com/ruby/bigdecimal/releases)\n- [Changelog](https://github.com/ruby/bigdecimal/blob/master/CHANGES.md)\n- [Commits](https://githu\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump bigdecimal from 3.2.0 to 3.2.1 in the monthly group (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-06-02T13:45:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e851af03d93aecb7ee53385320e558dad003c3aa",
"body": "…121)\n\nBumps the monthly group with 5 updates in the / directory:\n\n| Package | From | To |\n| --- | --- | --- |\n| [rake](https://github.com/ruby/rake) | `13.2.1` | `13.3.0` |\n| [base64](https://github.com/ruby/base64) | `0.2.0` | `0.3.0` |\n| [benchmark](https://github.com/ruby/benchmark) | `0.4.0` | \n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 5 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-06-02T13:39:41Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "28444af314164ec52b73acc25005cc0663190c75",
"body": null,
"is_bot": false,
"headline": "chore(deps): update bundler and dependencies (#119)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-05-14T13:29:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "012bc35454a74170eccef765ac9a4e919846c31e",
"body": "…118)\n\nBumps the monthly group with 2 updates in the / directory: [connection_pool](https://github.com/mperham/connection_pool) and [mini_portile2](https://github.com/flavorjones/mini_portile).\n\n\nUpdates `connection_pool` from 2.5.0 to 2.5.3\n- [Changelog](https://github.com/mperham/connection_pool/b\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 2 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-05-14T13:18:29Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "71063bd79006501f85c05e5b197d5d2f2785280d",
"body": null,
"is_bot": false,
"headline": "bump ruby and bundler to latest patch version (#116)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-04-16T13:08:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "073c197f8c316680233e7897c2c448afad8f1708",
"body": null,
"is_bot": false,
"headline": "Require MFA for RubyGems (#115)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-04-09T20:25:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "36b5ccd16fe77a96637c3892fcc4c5942e8ad0b5",
"body": null,
"is_bot": false,
"headline": "clean up files included (#114)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-04-08T20:24:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9ad68984f331492aa37a38b67dda679da4dbbeb4",
"body": null,
"is_bot": false,
"headline": "Fix up gemspec (#113)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-04-08T15:17:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "008c57c765ac605480064530963380f6e5a8e28f",
"body": "* Version 2.2.0 release\n\n* Version 2.2.0 release",
"is_bot": false,
"headline": "Version 2.2.0 release (#112)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-04-08T15:06:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b16e395ea4c25fead4175ed2679b84c89d63dbe3",
"body": null,
"is_bot": false,
"headline": "Add Ruby 3.4 tests, bump dependencies (#111)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-04-07T17:02:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5d83d9460e43d0253cc5ab344f0c10719274460c",
"body": "…110)\n\nBumps the monthly group with 2 updates in the / directory: [byebug](https://github.com/deivid-rodriguez/byebug) and [logger](https://github.com/ruby/logger).\n\n\nUpdates `byebug` from 11.1.3 to 12.0.0\n- [Release notes](https://github.com/deivid-rodriguez/byebug/releases)\n- [Changelog](https://g\n[…]\npe: version-update:semver-minor\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 2 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-03-31T13:10:23Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8d157ab1c2c54e6819165a3b7b062d1e58ce6615",
"body": null,
"is_bot": false,
"headline": "bump bundler for uri security fix (#108)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-03-17T14:43:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f6ef063485498d8a6159b39d39a83af19db99ed4",
"body": "…107)\n\nBumps the monthly group with 1 update: [minitest](https://github.com/minitest/minitest).\n\n\nUpdates `minitest` from 5.25.4 to 5.25.5\n- [Changelog](https://github.com/minitest/minitest/blob/master/History.rdoc)\n- [Commits](https://github.com/minitest/minitest/compare/v5.25.4...v5.25.5)\n\n---\nupd\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump minitest from 5.25.4 to 5.25.5 in the monthly group (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-03-13T11:56:19Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8cf6ddea16af1c948efa4f4caeb9249f02e9ff91",
"body": "Bumps the monthly group with 3 updates: [activerecord](https://github.com/rails/rails), [activemodel](https://github.com/rails/rails) and [activesupport](https://github.com/rails/rails).\n\n\nUpdates `activerecord` from 8.0.1 to 8.0.2\n- [Release notes](https://github.com/rails/rails/releases)\n- [Change\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group with 3 updates (#106)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-03-12T13:22:21Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "cb775f7cd79ec0981d30f08de4e543455b37aec3",
"body": "Bumps the monthly group with 1 update: [uri](https://github.com/ruby/uri).\n\n\nUpdates `uri` from 1.0.2 to 1.0.3\n- [Release notes](https://github.com/ruby/uri/releases)\n- [Commits](https://github.com/ruby/uri/compare/v1.0.2...v1.0.3)\n\n---\nupdated-dependencies:\n- dependency-name: uri\n dependency-type:\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump uri from 1.0.2 to 1.0.3 in the monthly group (#105)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-02-27T13:06:19Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "38c524800e959e5b59365ba630961bfa0e77c7af",
"body": null,
"is_bot": false,
"headline": "bump bundler to 2.6.5 (#104)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-02-24T15:58:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d95b6dcce2a6d3b2d2baa649ca32f7920d76b46f",
"body": "…103)\n\nBumps the monthly group with 2 updates in the / directory: [sqlite3](https://github.com/sparklemotion/sqlite3-ruby) and [logger](https://github.com/ruby/logger).\n\n\nUpdates `sqlite3` from 2.5.0 to 2.6.0\n- [Release notes](https://github.com/sparklemotion/sqlite3-ruby/releases)\n- [Changelog](htt\n[…]\npe: version-update:semver-patch\n dependency-group: monthly\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 2 updates (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-02-24T14:21:06Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "eb4820b6a8c222652b1f332df1c18d5a41b31a83",
"body": "* remove duplicate ttl method. Fixtury 2.1.1\n\n* remove duplicate ttl method. Fixtury 2.1.1",
"is_bot": false,
"headline": "attrreader (#101)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-02-11T15:55:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9dfb110aecc540c8b895e19fb6bde81b09b922e7",
"body": "* Fixtury 2.1.0: bump to ruby 3.3.7 by default, test vs 3.2 and 3.3\n\n* Gemfile.lock\n\n* fix 3.3.7 warnings/errors",
"is_bot": false,
"headline": "Fixtury 2.1.0: bump to ruby 3.3.7 by default, test vs 3.2 and 3.3 (#100)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-02-11T15:46:54Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2c96f1c0893fa3530ca0aee068e484bb3d18cb00",
"body": "* preserve the backtrace of the original error when wrapping in a DefinitionExecutionError\n\n* bump version",
"is_bot": false,
"headline": "Rndcore 6643 expose backtrace in fixture build failure (#99)",
"author_name": "Mike Nelson",
"author_login": "mnelson",
"committed_at": "2025-02-05T21:11:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "98ee6acd3f316f5b2082b351d931b38ce17c9402",
"body": "* remove old travis file, organize versions\n\n* bundle install",
"is_bot": false,
"headline": "remove old travis file, organize versions (#98)",
"author_name": "Aaron Averbuch",
"author_login": "ahaverbuch",
"committed_at": "2025-01-22T19:11:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "84fa51622dfe13978b46f61c4727d6d00e7208d2",
"body": "* [bundler] Bump the monthly group across 1 directory with 2 updates\n\nBumps the monthly group with 2 updates in the / directory: [concurrent-ruby](https://github.com/ruby-concurrency/concurrent-ruby) and [i18n](https://github.com/ruby-i18n/i18n).\n\n\nUpdates `concurrent-ruby` from 1.3.4 to 1.3.5\n- [Re\n[…]\n: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Aaron Averbuch <10715707+ahaverbuch@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 2 updates (#97)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-01-21T15:54:13Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b33bc3e24fcef46aeea8d656e44369cfbc38f109",
"body": "Bumps the monthly group with 2 updates in the / directory: [connection_pool](https://github.com/mperham/connection_pool) and [logger](https://github.com/ruby/logger).\r\n\r\n\r\nUpdates `connection_pool` from 2.4.1 to 2.5.0\r\n- [Changelog](https://github.com/mperham/connection_pool/blob/main/Changes.md)\r\n-\n[…]\nersion-update:semver-patch\r\n dependency-group: monthly\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "[bundler] Bump the monthly group across 1 directory with 2 updates (#95)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-01-13T12:57:11Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b21d08df161075f82c2b9da45ea90b363e091c34",
"body": "* remove explicit rollback behaviors\r\n\r\n* lockfile",
"is_bot": false,
"headline": "Remove explicit AR behaviors from minitest hooks (#93)",
"author_name": "Mike Nelson",
"author_login": "mnelson",
"committed_at": "2025-01-02T20:38:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "82ab2bdd42bdd5e711e0e512e6618029a0894733",
"body": "* wrap time access with a hook to allow for timecop resets\r\n\r\n* bump version\r\n\r\n* update lockfile",
"is_bot": false,
"headline": "Time access (#92)",
"author_name": "Mike Nelson",
"author_login": "mnelson",
"committed_at": "2025-01-02T19:24:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d5e5639e9828b86c28e832f6a4e69c91f9fc8112",
"body": "…sactional fixtures to rollback as needed (#90)\n\n* use lock_thread on connection pools to allow for transactional fixtures to rollback as needed\r\n\r\n* Allow for pin_connections",
"is_bot": false,
"headline": "Use lock_thread/pin_connections on connection pools to allow for tran…",
"author_name": "Carl Kim",
"author_login": "cjhkim",
"committed_at": "2025-01-02T19:18:48Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 5,
"commits_last_year": 65,
"latest_release_at": "2026-07-27T14:11:49Z",
"latest_release_tag": "v2.4.2",
"releases_from_tags": false,
"days_since_last_push": 0,
"active_weeks_last_year": 34,
"days_since_latest_release": 0,
"mean_days_between_releases": 118.7
},
"community": {
"has_readme": true,
"has_license": false,
"has_description": false,
"has_contributing": false,
"health_percentage": 12,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "fixtury",
"exists": true,
"license": "MIT",
"keywords": [],
"ecosystem": "rubygems",
"matches_repo": true,
"registry_url": "https://rubygems.org/gems/fixtury",
"is_deprecated": false,
"latest_version": "2.4.2",
"repository_url": "https://github.com/guideline-tech/fixtury",
"versions_count": 33,
"total_downloads": 1593494,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": null,
"first_published_at": "2020-01-07T03:29:56.155000Z",
"latest_published_at": "2026-07-27T14:11:07.657000Z",
"latest_version_yanked": null,
"days_since_latest_publish": 0
}
]
},
"popularity": {
"forks": 2,
"stars": 16,
"watchers": 10,
"fork_history": {
"days": [
{
"date": "2020-07-29",
"count": 1
},
{
"date": "2020-10-23",
"count": 1
}
],
"complete": true,
"collected": 2,
"total_forks": 2
},
"star_history": null,
"open_issues_and_prs": 1
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [
"mise.toml"
],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [],
"largest_source_bytes": 9043,
"source_files_sampled": 39,
"oversized_source_files": 0,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"Gemfile"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {},
"advisory_count": 0,
"affected_count": 0,
"assessed_count": 36,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 13,
"direct_affected_count": 0
},
"ecosystems": [
"rubygems"
],
"dependencies": [
{
"name": "appraisal",
"manifest": "Gemfile",
"ecosystem": "rubygems",
"version_constraint": "~> 2.5"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "appraisal",
"direct": true,
"version": "2.5.0",
"ecosystem": "rubygems"
},
{
"name": "activemodel",
"direct": false,
"version": "8.1.3",
"ecosystem": "rubygems"
},
{
"name": "activerecord",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "activerecord",
"direct": false,
"version": "8.1.3",
"ecosystem": "rubygems"
},
{
"name": "activesupport",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "activesupport",
"direct": false,
"version": "8.1.3",
"ecosystem": "rubygems"
},
{
"name": "base64",
"direct": false,
"version": "0.3.0",
"ecosystem": "rubygems"
},
{
"name": "benchmark",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "benchmark",
"direct": false,
"version": "0.5.0",
"ecosystem": "rubygems"
},
{
"name": "bigdecimal",
"direct": false,
"version": "4.1.2",
"ecosystem": "rubygems"
},
{
"name": "bundler",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "byebug",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "byebug",
"direct": false,
"version": "13.0.0",
"ecosystem": "rubygems"
},
{
"name": "concurrent-ruby",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "concurrent-ruby",
"direct": false,
"version": "1.3.8",
"ecosystem": "rubygems"
},
{
"name": "connection_pool",
"direct": false,
"version": "3.0.2",
"ecosystem": "rubygems"
},
{
"name": "drb",
"direct": false,
"version": "2.2.3",
"ecosystem": "rubygems"
},
{
"name": "erb",
"direct": false,
"version": "6.0.6",
"ecosystem": "rubygems"
},
{
"name": "globalid",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "globalid",
"direct": false,
"version": "1.4.0",
"ecosystem": "rubygems"
},
{
"name": "i18n",
"direct": false,
"version": "1.15.2",
"ecosystem": "rubygems"
},
{
"name": "io-console",
"direct": false,
"version": "0.8.2",
"ecosystem": "rubygems"
},
{
"name": "irb",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "irb",
"direct": false,
"version": "1.18.0",
"ecosystem": "rubygems"
},
{
"name": "json",
"direct": false,
"version": "2.21.1",
"ecosystem": "rubygems"
},
{
"name": "logger",
"direct": false,
"version": "1.7.0",
"ecosystem": "rubygems"
},
{
"name": "m",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "m",
"direct": false,
"version": "1.7.0",
"ecosystem": "rubygems"
},
{
"name": "minitest",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "minitest",
"direct": false,
"version": "6.0.6",
"ecosystem": "rubygems"
},
{
"name": "mocha",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "mocha",
"direct": false,
"version": "3.1.0",
"ecosystem": "rubygems"
},
{
"name": "pp",
"direct": false,
"version": "0.6.4",
"ecosystem": "rubygems"
},
{
"name": "prettyprint",
"direct": false,
"version": "0.2.0",
"ecosystem": "rubygems"
},
{
"name": "prism",
"direct": false,
"version": "1.9.0",
"ecosystem": "rubygems"
},
{
"name": "rake",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "rake",
"direct": false,
"version": "13.4.2",
"ecosystem": "rubygems"
},
{
"name": "rbs",
"direct": false,
"version": "4.1.0",
"ecosystem": "rubygems"
},
{
"name": "rdoc",
"direct": false,
"version": "8.0.0",
"ecosystem": "rubygems"
},
{
"name": "reline",
"direct": false,
"version": "0.6.3",
"ecosystem": "rubygems"
},
{
"name": "ruby2_keywords",
"direct": false,
"version": "0.0.5",
"ecosystem": "rubygems"
},
{
"name": "securerandom",
"direct": false,
"version": "0.4.1",
"ecosystem": "rubygems"
},
{
"name": "sqlite3",
"direct": false,
"version": null,
"ecosystem": "rubygems"
},
{
"name": "sqlite3",
"direct": false,
"version": "2.9.5",
"ecosystem": "rubygems"
},
{
"name": "thor",
"direct": false,
"version": "1.5.0",
"ecosystem": "rubygems"
},
{
"name": "timeout",
"direct": false,
"version": "0.6.1",
"ecosystem": "rubygems"
},
{
"name": "tsort",
"direct": false,
"version": "0.2.0",
"ecosystem": "rubygems"
},
{
"name": "tzinfo",
"direct": false,
"version": "2.0.6",
"ecosystem": "rubygems"
},
{
"name": "uri",
"direct": false,
"version": "1.1.1",
"ecosystem": "rubygems"
}
],
"collected": true,
"truncated": false,
"total_count": 49,
"direct_count": 1,
"indirect_count": 48
}
},
"maintainership": {
"issues": {
"open_prs": 1,
"merged_prs": 137,
"open_issues": 0,
"closed_ratio": null,
"closed_issues": 0,
"closed_unmerged_prs": 78
},
"bus_factor": 1,
"bot_contributors": 1,
"top_contributors": [
{
"type": "User",
"login": "mnelson",
"commits": 63,
"avatar_url": "https://avatars.githubusercontent.com/u/51276?v=4"
},
{
"type": "User",
"login": "ahaverbuch",
"commits": 37,
"avatar_url": "https://avatars.githubusercontent.com/u/10715707?v=4"
},
{
"type": "User",
"login": "aaronrosenthal",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/10172096?v=4"
},
{
"type": "User",
"login": "cjhkim",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/8713436?v=4"
}
],
"contributors_sampled": 4,
"top_contributor_share": 0.618
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"build.yml"
],
"has_docs_dir": false,
"linter_configs": [],
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"Gemfile.lock"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": null,
"reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 10,
"reason": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 10,
"reason": "all changesets reviewed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 6,
"reason": "project has 2 contributing companies or organizations -- score normalized to 6",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 0,
"reason": "license file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "19 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 0,
"reason": "dependency not pinned by hash detected -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "SAST tool is not run on all commits -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": null,
"reason": "no releases found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 10,
"reason": "0 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "609471cb5ac7d0beb01fc78c28f6ac5775b6bd44",
"ran_at": "2026-07-27T14:16:19Z",
"aggregate_score": 6.1,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": true
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-27T14:02:34Z",
"oldest_open_prs": [
{
"number": 205,
"created_at": "2026-06-09T19:18:28Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2026-07-27T14:01:43Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": []
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/guideline-tech/fixtury",
"host": "github.com",
"name": "fixtury",
"owner": "guideline-tech"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 63,
"inputs": {
"security": 69,
"vitality": 88,
"community": 39,
"governance": 62,
"engineering": 53
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "excellent",
"name": "Vitality",
"value": 88,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "excellent",
"name": "Development activity",
"note": null,
"notes": [],
"value": 86,
"inputs": {
"commits_last_year": 65,
"human_commit_share": 0.33,
"days_since_last_push": 0,
"active_weeks_last_year": 34
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 0 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 0
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "34/52 weeks with commits",
"points": 23.5,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 34
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "65 commits in the last year",
"points": 16.3,
"status": "partial",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 65
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "19 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 92,
"inputs": {
"releases_count": 5,
"latest_release_tag": "v2.4.2",
"releases_from_tags": false,
"days_since_latest_release": 0,
"mean_days_between_releases": 118.7
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "5 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 5
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 0 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 0
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~118.7 days",
"points": 19.8,
"status": "partial",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 118.7
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 0,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 0 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 0
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "at_risk",
"name": "Community & Adoption",
"value": 39,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "critical",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 24,
"inputs": {
"forks": 2,
"stars": 16,
"watchers": 10,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "16 stars",
"points": 19.1,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 16
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "2 forks",
"points": 0,
"status": "missed",
"details": [
{
"code": "forks",
"params": {
"count": 2
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "10 watchers",
"points": 5.3,
"status": "partial",
"details": [
{
"code": "watchers",
"params": {
"count": 10
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "critical",
"name": "Community health",
"note": null,
"notes": [],
"value": 25,
"inputs": {
"has_readme": true,
"has_license": false,
"has_contributing": false,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "no license file detected",
"points": 0,
"status": "missed",
"details": [
{
"code": "license_absent",
"params": {}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
},
{
"key": "ecosystem_adoption",
"band": "good",
"name": "Ecosystem adoption (downloads)",
"note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"registry_dependents"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 81,
"inputs": {
"packages": [
"fixtury"
],
"dependents": null,
"ecosystems": "rubygems",
"total_downloads": 1593494,
"monthly_downloads": null
},
"components": [
{
"key": "total_downloads",
"name": "Total downloads",
"detail": "1,593,494 downloads all-time across rubygems",
"points": 64.4,
"status": "partial",
"details": [
{
"code": "downloads_total",
"params": {
"count": 1593494,
"ecosystems": "rubygems"
}
}
],
"max_points": 80
},
{
"key": "registry_dependents",
"name": "Registry dependents",
"detail": "not reported by this ecosystem",
"points": 0,
"status": "excluded",
"details": [
{
"code": "not_reported_by_this_ecosystem",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 62,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "critical",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 29,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 4,
"top_contributor_share": 0.618
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 62% of commits",
"points": 8.6,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 62
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "4 contributors",
"points": 5.4,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 4
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 2 contributing companies or organizations -- score normalized to 6",
"points": 6,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "good",
"name": "Issue & PR responsiveness",
"note": "Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"issue_resolution"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 74,
"inputs": {
"merged_prs": 137,
"open_issues": 0,
"closed_issues": 0,
"issue_closed_ratio": null,
"closed_unmerged_prs": 78
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "no issues or no data",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_issues_or_data",
"params": {}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "137/215 decided PRs merged",
"points": 24.4,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 137,
"decided": 215
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "all changesets reviewed",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "moderate",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 58,
"inputs": {
"followers": 7,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "guideline-tech",
"public_repos": 17,
"account_age_days": 4148
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "7 followers of guideline-tech",
"points": 6.5,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 7,
"login": "guideline-tech"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "17 public repos, account ~11 yr old",
"points": 21.1,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 17
}
},
{
"code": "account_age_years",
"params": {
"years": 11
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"fixtury"
],
"ecosystems": "rubygems",
"any_deprecated": false,
"min_days_since_publish": 0
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on rubygems",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "rubygems"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 0 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 0
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "33 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 33
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "moderate",
"name": "Engineering Quality",
"value": 53,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "moderate",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 68,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": false,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "1 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 1
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
"points": 20,
"status": "met",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "at_risk",
"name": "Documentation",
"note": null,
"notes": [],
"value": 30,
"inputs": {
"topics": [],
"has_wiki": false,
"homepage": null,
"has_readme": true,
"has_docs_dir": false,
"has_description": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "moderate",
"name": "Security",
"value": 69,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "moderate",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging, Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"branch_protection",
"packaging",
"signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 61,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 15,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 3,
"scorecard_aggregate": 6.1
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "30 out of 30 merged PRs checked by a CI test -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "all changesets reviewed",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 2 contributing companies or organizations -- score normalized to 6",
"points": 1.5,
"status": "partial",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "19 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "0 existing vulnerabilities detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 36 resolved dependencies against OSV; 13 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories",
"no_advisories_left_outstanding"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 36
}
},
{
"code": "advisories_unassessed",
"params": {
"count": 13
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 100,
"inputs": {
"source": "osv",
"advisories": 0,
"affected_packages": 0,
"assessed_packages": 36,
"unassessed_packages": 13,
"affected_by_severity": "none",
"direct_affected_packages": 0
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "no direct dependency carries a known advisory",
"points": 35,
"status": "met",
"details": [
{
"code": "no_direct_advisories",
"params": {}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory carries a publication date",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_no_publication_date",
"params": {}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 36,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 3
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "moderate",
"name": "AI Readiness",
"value": 55,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "at_risk",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 1,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "33 of 33 human commits state their intent (structured subject or explanatory body)",
"points": 40,
"status": "met",
"details": [
{
"code": "legible_history",
"params": {
"legible": 33,
"sampled": 33
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "moderate",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 66,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"Gemfile.lock"
],
"has_dockerfile": false,
"typed_language": false,
"bootstrap_files": [
"mise.toml"
],
"has_devcontainer": false,
"has_linter_config": false,
"typecheck_configs": [],
"agent_commit_share": 0.04,
"toolchain_manifests": [],
"dependency_bot_commit_share": 0.67
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": "mise.toml",
"points": 18,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "mise.toml"
}
}
],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "4 of the last 100 commits agent-authored or agent-credited",
"points": 8,
"status": "partial",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 4,
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "67 of the last 100 commits are automated dependency updates",
"points": 8,
"status": "met",
"details": [
{
"code": "dependency_bot_commits",
"params": {
"count": 67,
"sampled": 100
}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "moderate",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 55,
"inputs": {
"primary_language": "Ruby",
"largest_source_bytes": 9043,
"source_files_sampled": 39,
"oversized_source_files": 0
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "Ruby without a type-check config",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_typecheck_config_language",
"params": {
"language": "Ruby"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "0/39 source files over 60KB",
"points": 55,
"status": "met",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 39,
"oversized": 0
}
}
],
"max_points": 55
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
],
"report_type": "repository",
"generated_at": "2026-07-27T14:16:37.844018Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/g/guideline-tech/fixtury.svg",
"full_name": "guideline-tech/fixtury",
"license_state": "absent",
"license_spdx": null
}