Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-29 07:43 UTC

jnummelin / k0s

K0s

GoCustom license★ 0 stars⑂ 0 forkssince Nov 2020forkView on GitHub ↗

jnummelin/k0s holds a health index of 49 out of 100, placing it in the At risk band. It scores highest on Vitality (73/100) and lowest on Community & Adoption (9/100). It was last updated today. 2 contributors account for most of its recent work.

49
overall / 100
At risk

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

49
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

Jussi NummelinPersonal account
59 followers81 public repossince Jan 2013

This repository is owned by a personal account. A single-owner project carries more continuity risk than an organization-backed one.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
Gogithub.com/k0sproject/k0spoints to another repo — not scoredv0.13.1-501930 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

73Good · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
31.2/36Commit cadence — 45/52 weeks with commits
18/18Commit volume — 2,060 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year2,060
human_commit_share0.76
days_since_last_push0
active_weeks_last_year45
How it's scored
27/27Ships releases — 1 releases published
0/36Release recency — latest release 1,919 days ago
12.6/27Release cadence — cadence unknown (single release)
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count1
latest_release_tagtmp
releases_from_tagsno
days_since_latest_release1,919
mean_days_between_releases

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

9Critical · 18% of overall
How it's scored
0/60Stars — 0 stars
0/25Forks — 0 forks
0/15Watchers — 0 watchers
Inputs used
forks0
stars0
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
0/22.5README
16.9/22.5License — license file present, not a recognized license
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeno
has_licenseno
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

54Moderate · 24% of overall
How it's scored
25.2/54Bus factor — 2 contributor(s) cover half of all commits
11.9/22.5Commit distribution — top contributor authored 47% of commits
13.5/13.5Contributor breadth — 96 contributors
10/10OpenSSF Scorecard: Contributors — project has 31 contributing companies or organizations
Inputs used
bus_factor2
contributors_sampled96
top_contributor_share0.473
How it's scored
0/46.8Issue resolution — no issues or no data
21/38.3PR acceptance — 127/231 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Inputs used
merged_prs127
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs104
Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.
How it's scored
10/30Ownership backing — personal (user) account
0/20Verified domain — not applicable to user accounts
12.8/25Owner reach — 59 followers of jnummelin
25/25Track record — 81 public repos, account ~13 yr old
Inputs used
followers59
owner_typeUser
is_verified
owner_loginjnummelin
public_repos81
account_age_days4,950
Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.

Engineering Quality

Are baseline engineering and documentation practices in place?

63Moderate · 20% of overall
How it's scored
24/24CI workflows — 24 workflow(s)
24/24Tests present
16/16Linter config — .golangci.yml
0/9.6Pre-commit hooks
6.4/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — no data
Inputs used
has_ciyes
has_testsyes
has_editorconfigyes
has_linter_configyes
has_precommit_configno
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.

Documentation

25Critical
How it's scored
0/30README
25/25Documentation directory
0/15Documentation / homepage site
0/10Repository description
0/10Topics
0/10Wiki
Inputs used
topics
has_wikino
homepage
has_readmeno
has_docs_diryes
has_descriptionno

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

37At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — no data
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 31 contributing companies or organizations
0/10Dangerous-Workflow — dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
3.5/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 7
0/5SAST — no SAST tool detected
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 31 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate3.7
Excluded from scoring (no data or not applicable): ci_tests, packaging. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

67Moderate · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
37.2/40Legible commit history — 53 of 76 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.697
agent_instruction_files
agent_instruction_max_bytes
How it's scored
18/18One-command bootstrap — Makefile, docs/Makefile, embedded-bins/Makefile, inttest/Makefile
22/22Automated tests
11/11Lint / format config — .golangci.yml
11/11Static type checking — Go (statically typed)
10/10Reproducible environment — Dockerfile, lockfile
0/10Demonstrated agent practice — no agent-authored commits among the last 100
8/8Automated maintenance — 12 of the last 100 commits are automated dependency updates
7/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 7
Inputs used
has_nixno
has_testsyes
lockfilesgo.sum
has_dockerfileyes
typed_languageyes
bootstrap_filesMakefile, docs/Makefile, embedded-bins/Makefile, inttest/Makefile
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0
toolchain_manifestsbuild/go.mod, go.mod
dependency_bot_commit_share0.12
How it's scored
45/45Type-checkable code — Go (statically typed)
55/55Manageable file sizes — 0/695 source files over 60KB
Inputs used
primary_languageGo
largest_source_bytes46,754
source_files_sampled695
oversized_source_files0
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — examples
Inputs used
example_dirsexamples
has_mcp_signalno
api_schema_files

Key facts

0GitHub stars
96contributors
2,060commits, last 12 months
0days since last push
1releases
2bus factor
0open issues
Go, PyPIpackage ecosystems

Data collection warnings

  • Community profile unavailable
  • go package 'github.com/k0sproject/k0s' points at a different repository (https://github.com/k0sproject/k0s); excluded from ecosystem scoring
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

More detail

OpenSSF Scorecard 3.7 / 10
3.7aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-29 07:43 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
n/aCI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 31 contributing companies or organizations
0Dangerous-Workflowdangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
7Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 7
0SASTno SAST tool detected
10Security-Policysecurity policy file detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities31 existing vulnerabilities detected
Direct dependencies 77
RegistryPackageVersion constraintManifest
Gogithub.com/BurntSushi/tomlv1.6.0go.mod
Gogithub.com/Masterminds/semver/v3v3.5.0go.mod
Gogithub.com/Masterminds/sprigv2.22.0+incompatiblego.mod
Gogithub.com/Microsoft/go-winiov0.6.3-0.20251027160822-ad3df93bed29go.mod
Gogithub.com/asaskevich/govalidatorv0.0.0-20230301143203-a9d515a09cc2go.mod
Gogithub.com/avast/retry-gov3.0.0+incompatiblego.mod
Gogithub.com/bombsimon/logrusr/v4v4.1.0go.mod
Gogithub.com/cilium/ebpfv0.21.0go.mod
Gogithub.com/cloudflare/cfsslv1.6.5go.mod
Gogithub.com/containerd/cgroups/v3v3.1.3go.mod
Gogithub.com/containerd/containerd/apiv1.11.1go.mod
Gogithub.com/containerd/containerd/v2v2.3.1go.mod
Gogithub.com/containerd/platformsv1.0.0-rc.4go.mod
Gogithub.com/distribution/referencev0.6.0go.mod
Gogithub.com/dustin/go-humanizev1.0.1go.mod
Gogithub.com/evanphx/json-patchv5.9.11+incompatiblego.mod
Gogithub.com/fsnotify/fsnotifyv1.10.1go.mod
Gogithub.com/go-logr/logrv1.4.3go.mod
Gogithub.com/go-openapi/jsonpointerv0.23.1go.mod
Gogithub.com/go-playground/validator/v10v10.30.3go.mod
Gogithub.com/google/go-cmpv0.7.0go.mod
Gogithub.com/k0sproject/bootloosev0.9.6go.mod
Gogithub.com/k0sproject/versionv0.8.0go.mod
Gogithub.com/kardianos/servicev1.2.4go.mod
Gogithub.com/logrusorgru/aurora/v3v3.0.0go.mod
Gogithub.com/mitchellh/go-homedirv1.1.0go.mod
Gogithub.com/opencontainers/go-digestv1.0.0go.mod
Gogithub.com/opencontainers/image-specv1.1.1go.mod
Gogithub.com/opencontainers/runtime-specv1.3.0go.mod
Gogithub.com/opencontainers/selinuxv1.15.1go.mod
Gogithub.com/otiai10/copyv1.14.1go.mod
Gogithub.com/pelletier/go-tomlv1.9.5go.mod
Gogithub.com/robfig/cronv1.2.0go.mod
Gogithub.com/segmentio/analytics-go/v3v3.3.0go.mod
Gogithub.com/sirupsen/logrusv1.9.4go.mod
Gogithub.com/spf13/cobrav1.10.2go.mod
Gogithub.com/spf13/pflagv1.0.10go.mod
Gogithub.com/stretchr/testifyv1.11.1go.mod
Gogithub.com/urfave/cli/v2v2.27.7go.mod
Gogithub.com/vishvananda/netlinkv1.3.1go.mod
Gogithub.com/vmware-tanzu/sonobuoyv0.57.3go.mod
Gogithub.com/zcalusic/sysinfov1.1.3go.mod
Gogo.etcd.io/etcd/api/v3v3.6.12go.mod
Gogo.etcd.io/etcd/client/pkg/v3v3.6.12go.mod
Gogo.etcd.io/etcd/client/v3v3.6.12go.mod
Gogo.etcd.io/etcd/etcdutl/v3v3.6.12go.mod
Gogo.uber.org/zapv1.28.0go.mod
Gogolang.org/x/cryptov0.52.0go.mod
Gogolang.org/x/modv0.37.0go.mod
Gogolang.org/x/syncv0.21.0go.mod
Gogolang.org/x/sysv0.46.0go.mod
Gogolang.org/x/textv0.38.0go.mod
Gogolang.org/x/toolsv0.45.0go.mod
Gogoogle.golang.org/grpcv1.81.1go.mod
Gohelm.sh/helm/v3v3.21.0go.mod
Gomodernc.org/sqlitev1.52.0go.mod
Gooras.land/oras-go/v2v2.6.0go.mod
Gosigs.k8s.io/controller-runtimev0.24.1go.mod
Gosigs.k8s.io/yamlv1.6.0go.mod
Gok8s.io/apiv0.36.1go.mod
Gok8s.io/apiextensions-apiserverv0.36.1go.mod
Gok8s.io/apimachineryv0.36.1go.mod
Gok8s.io/apiserverv0.36.1go.mod
Gok8s.io/cli-runtimev0.36.1go.mod
Gok8s.io/client-gov0.36.1go.mod
Gok8s.io/cloud-providerv0.36.1go.mod
Gok8s.io/cluster-bootstrapv0.36.1go.mod
Gok8s.io/component-basev0.36.1go.mod
Gok8s.io/component-helpersv0.36.1go.mod
Gok8s.io/cri-apiv0.36.1go.mod
Gok8s.io/kube-aggregatorv0.36.1go.mod
Gok8s.io/kube-proxyv0.36.1go.mod
Gok8s.io/kubectlv0.36.1go.mod
Gok8s.io/kubeletv0.36.1go.mod
Gok8s.io/kubernetesv1.36.1go.mod
Gok8s.io/mount-utilsv0.36.1go.mod
Gok8s.io/utilsv0.0.0-20260319190234-28399d86e0b5go.mod
All dependencies not collected

The resolved dependency set could not be collected for this report: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": true,
      "size_kb": 40390,
      "has_wiki": false,
      "homepage": null,
      "languages": {
        "Go": 2653048,
        "HCL": 53139,
        "Shell": 27189,
        "Makefile": 27648,
        "Dockerfile": 14826
      },
      "pushed_at": "2026-07-28T13:04:12Z",
      "created_at": "2020-11-05T19:24:15Z",
      "owner_type": "User",
      "updated_at": "2026-06-09T20:11:32Z",
      "description": "K0s",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "main",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "Go",
      "significant_languages": [
        "Go"
      ]
    },
    "owner": {
      "blog": null,
      "name": "Jussi Nummelin",
      "type": "User",
      "login": "jnummelin",
      "company": null,
      "location": "Ylöjärvi, Finland",
      "followers": 59,
      "avatar_url": "https://avatars.githubusercontent.com/u/3205505?v=4",
      "created_at": "2013-01-07T11:12:36Z",
      "is_verified": null,
      "public_repos": 81,
      "account_age_days": 4950
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": false
    },
    "activity": {
      "releases": [
        {
          "tag": "tmp",
          "kind": "other",
          "published_at": "2021-04-26T12:38:51Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "347ba1c93785a930a3c54382b253367c7d413b31",
          "body": null,
          "is_bot": false,
          "headline": "Strip default images from the config with non-default repo (#7738)",
          "author_name": "Alexey Makhov",
          "author_login": "makhov",
          "committed_at": "2026-06-09T19:01:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e4f2f3cff992d3090bbfaab986b3940a2ae2b2f",
          "body": null,
          "is_bot": true,
          "headline": "Bump golang.org/x/mod from 0.36.0 to 0.37.0 (#7769)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-09T17:24:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "31128ce8b149cade710e8fa5b748c0522573c444",
          "body": "Signed-off-by: amakhov <amakhov@mirantis.com>",
          "is_bot": false,
          "headline": "Strip default images from the config with non-default repo. NLLB images",
          "author_name": "amakhov",
          "author_login": "makhov",
          "committed_at": "2026-06-09T16:51:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e87c9f645cdda4ad03141a26fef2b94858e29ec8",
          "body": "Bumps [golang.org/x/mod](https://github.com/golang/mod) from 0.36.0 to 0.37.0.\n- [Commits](https://github.com/golang/mod/compare/v0.36.0...v0.37.0)\n\n---\nupdated-dependencies:\n- dependency-name: golang.org/x/mod\n  dependency-version: 0.37.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump golang.org/x/mod from 0.36.0 to 0.37.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-09T16:19:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d3b9f033544078d17a9b220206f63f4e40975782",
          "body": null,
          "is_bot": true,
          "headline": "Bump golang.org/x/text from 0.37.0 to 0.38.0 (#7768)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-09T16:16:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5aaa5dc2ea008fd0d3794316eeca27a1ed4f879b",
          "body": null,
          "is_bot": false,
          "headline": "Remove v1.34 upgrade path (#7752)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-09T15:59:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b9c7b4e74553fb2f1e09939d0d595023f3013557",
          "body": null,
          "is_bot": false,
          "headline": "Group Renovate PRs for konnectivity and Traefik (#7754)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-09T15:01:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff853cc3ebaab3a135fdca31b4a5e44dd9a5e212",
          "body": "Bumps [golang.org/x/text](https://github.com/golang/text) from 0.37.0 to 0.38.0.\n- [Release notes](https://github.com/golang/text/releases)\n- [Commits](https://github.com/golang/text/compare/v0.37.0...v0.38.0)\n\n---\nupdated-dependencies:\n- dependency-name: golang.org/x/text\n  dependency-version: 0.38.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump golang.org/x/text from 0.37.0 to 0.38.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-09T13:53:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "af66455bb5bdafae781ec9abb862c94ff452f45f",
          "body": "… (#7765)",
          "is_bot": false,
          "headline": "Wait for k0s api to boot before checking the cert in customca inttest…",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-09T11:40:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c27ce65b912b0927e6cd34e66db8a5428564ec8e",
          "body": "Remove the transitional code that was required to support upgrading k0s\nfrom v1.34 to v1.35. Due to the bugs fixed in d48936440 and 9422dde94,\nmost of the code that was scheduled for removal in v1.36 needs to stay\nuntil v1.37. Adjust the comments accordingly.\n\nWith that in mind, the actual removals \n[…]\nis state, and neither does v1.36.\n\nSee: 9422dde94 (\"Correctly set lease labels\")\nSee: d48936440 (\"Fix Autopilot labeling for worker node leases\")\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Remove v1.34 upgrade path",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-09T09:37:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ee3373ac0b0b7440d69bccb927cdda7f71967c95",
          "body": "When a grouped update includes the k0sproject image, use that image's\npretty version in the PR title, including the k0s suffix. Otherwise,\nfall back to the distinct pretty versions from the grouped updates.\n\nAlso disable group settings for single dependency updates so single\nbumps keep their depende\n[…]\nm the update set, for example:\n\n- Bump konnectivity to v0.36.0\n- Bump Traefik to v3.7.4\n\nFor mixed-versions:\n\n- Bump Traefik to v3.7.4 to v3.7.5\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Group Renovate PRs for konnectivity and Traefik",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-09T08:55:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a083dc6e2a83aaafeff5203ae3916a0a72cb66c7",
          "body": null,
          "is_bot": true,
          "headline": "Bump modernc.org/sqlite from 1.51.0 to 1.52.0 (#7759)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-09T08:19:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5a3d3504a89c52c4b1956d4f5d185537a674c29f",
          "body": "Previously we waited only for k8s API to be up but that does NOT guarantee the cert even should've renewed.\n\nSigned-off-by: Jussi Nummelin <jnummelin@mirantis.com>",
          "is_bot": false,
          "headline": "Wait for k0s api to boot before checking the cert in customca inttest",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-09T07:58:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fa717885109dd606a321aa8bc3e9db46c8ae57f8",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/library/traefik Docker tag to v3.7.4 (#7756)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-09T07:54:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e1442655481933216690efc5c6b354fe658abe2f",
          "body": null,
          "is_bot": true,
          "headline": "Bump golang.org/x/sys from 0.45.0 to 0.46.0 (#7760)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-09T07:47:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "06de3e59d1481b1d6a1e515938e08322fa627d4f",
          "body": null,
          "is_bot": false,
          "headline": "Correctly set lease labels (#7762)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-09T07:31:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2360c9be4516f64463ef572ddb7fcb5179fa9a70",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump quay.io/k0sproject/traefik Docker tag to v3.7.4-k0s.0 (#7758)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-09T06:44:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a08ba6ab3132cca46de58f78a883a6c7aa2447a1",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump replicatedhq/troubleshoot to v0.129.3 (#7763)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-09T06:15:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a40a3957e64d1046c533bf4d5aa31f753275e12b",
          "body": "Bumps [golang.org/x/sys](https://github.com/golang/sys) from 0.45.0 to 0.46.0.\n- [Commits](https://github.com/golang/sys/compare/v0.45.0...v0.46.0)\n\n---\nupdated-dependencies:\n- dependency-name: golang.org/x/sys\n  dependency-version: 0.46.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump golang.org/x/sys from 0.45.0 to 0.46.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-09T06:09:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0e130629a8da3a89f0ad1699d7b73e50d4e4072c",
          "body": null,
          "is_bot": true,
          "headline": "Bump golang.org/x/sync from 0.20.0 to 0.21.0 (#7761)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-09T06:06:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d73d6dec3734618f61ab81ff0215be47c1e6355c",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump replicatedhq/troubleshoot to v0.129.3",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-08T17:30:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9422dde94a8372dc9535f075cbf71d53be80db51",
          "body": "The Kubernetes leader election client's LeaseLock expects the labels\nto be set on the Lease object directly in the Labels field, rather than\nin the LeaseMeta's Labels field. The LeaseConfig struct was doing it\nthe wrong way. Because of this, k0s never set any labels on the lease\nobjects it held.\n\nDu\n[…]\nel.\n\nFixes: 4f8f2438e (\"Manage draining and cordoning via Autopilot controller\")\nSee: d48936440 (\"Fix Autopilot labeling for worker node leases\")\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Correctly set lease labels",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-08T14:31:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "268563e46c20cd01a27c952617d6d34a75954918",
          "body": "Bumps [golang.org/x/sync](https://github.com/golang/sync) from 0.20.0 to 0.21.0.\n- [Commits](https://github.com/golang/sync/compare/v0.20.0...v0.21.0)\n\n---\nupdated-dependencies:\n- dependency-name: golang.org/x/sync\n  dependency-version: 0.21.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump golang.org/x/sync from 0.20.0 to 0.21.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-08T13:53:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "58f17068c0b03fb0e84b66f9074a58605caae3be",
          "body": "Bumps [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) from 1.51.0 to 1.52.0.\n- [Changelog](https://gitlab.com/cznic/sqlite/blob/master/CHANGELOG.md)\n- [Commits](https://gitlab.com/cznic/sqlite/compare/v1.51.0...v1.52.0)\n\n---\nupdated-dependencies:\n- dependency-name: modernc.org/sqlite\n  dependency-version: 1.52.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump modernc.org/sqlite from 1.51.0 to 1.52.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-08T13:52:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "abcc56ba7494a535bf3f4fe71ca9ce92dfcf5a0c",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump quay.io/k0sproject/traefik Docker tag to v3.7.4-k0s.0",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-08T13:52:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "814eee7ae3c755b157e016b4c7dbcf53fece49bb",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/library/traefik Docker tag to v3.7.4",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-06T09:14:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e05cde29c08522346062e0fa77954ad5738b070d",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/anchore/syft Docker tag to v1.45.1 (#7755)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-06T06:06:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb7cb6c909e88ac943bf4f054a2052cd005ab428",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/anchore/syft Docker tag to v1.45.1",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T17:09:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cb16a96bbb620df3fe4b4d67ab4f920dac5f0dc9",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump quay.io/k0sproject/traefik Docker tag to v3.7.3-k0s.0 (#7753)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T13:26:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3fea365a480e1f3c05d1a4973e8031703e76b58f",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump konnectivity to v0.36.0 (#7739)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T12:46:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3ce6e98d13b6a9c50632ec1742ae1fc536bb1ef2",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/library/traefik Docker tag to v3.7.3 (#7750)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T12:40:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8115277f8478dcd72fd4e4fa2f32feeb7d7adc04",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump konnectivity",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T09:38:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ca97253dd2de4059b6e8d79f7894906fcf3cf89",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump quay.io/k0sproject/traefik Docker tag to v3.7.3-k0s.0",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T09:38:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "73a60382f4432df8eee251a06231f06bc81c175b",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/library/traefik Docker tag to v3.7.3",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T09:38:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "261658d4a49ad091073841246dd4919de043b658",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump go to v1.26.4 (#7723)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T08:14:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e476229f4d0e9da5ad26cbe4cf10f9b4cdbaa7ec",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump Terraform aws to v6.49.0 (#7751)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T06:36:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b45c5f606687ffc8aebdb315be40a665602ef3d9",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump Terraform aws to v6.49.0",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-05T05:56:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc70002852b8eab3114a3930ed38f19d1e70b546",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump go to v1.26.4",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-04T13:31:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0637a107011fa075b25089b99d98c7682c379b38",
          "body": null,
          "is_bot": false,
          "headline": "Makefile: fix chmod on MacOS (#7744)",
          "author_name": "Natanael Copa",
          "author_login": "ncopa",
          "committed_at": "2026-06-04T11:05:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c628923ad493ad64b71b285a2e675002ab352f26",
          "body": "MacOS's chmod does not support `--`.\n\nFixes error when building airgap bundle:\n\n> chmod a+r -- 'airgap-image-bundle-linux-arm64.tar'\n> chmod: --: No such file or directory\n\nref: https://www.unix.com/man_page/osx/1/chmod/\nSigned-off-by: Natanael Copa <ncopa@mirantis.com>",
          "is_bot": false,
          "headline": "Makefile: fix chmod on MacOS",
          "author_name": "Natanael Copa",
          "author_login": "ncopa",
          "committed_at": "2026-06-04T09:36:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3bd6d91ee9238ccb865e4199b4a41667e905a45d",
          "body": null,
          "is_bot": false,
          "headline": "Remove gold linker for ARM architectures (#7734)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-04T08:44:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d1c1e6d7cf49879041a2b0804ae268a102833673",
          "body": "Signed-off-by: amakhov <amakhov@mirantis.com>",
          "is_bot": false,
          "headline": "Strip default images from the config with non-default repo",
          "author_name": "amakhov",
          "author_login": "makhov",
          "committed_at": "2026-06-04T08:43:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4882f52d6d448d9d8330af77b48e69717ebe0464",
          "body": null,
          "is_bot": false,
          "headline": "Fix Autopilot labeling for worker node leases (#7731)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-04T08:29:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c52aa80ed5c4d001987b4ec7f0a52313933eec44",
          "body": "… logic (#7713)",
          "is_bot": false,
          "headline": "containerd 2.x: use native config merging instead of custom CRI merge…",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-04T07:44:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7781665534228f4c1d3d504d6ef58bd73085ef8e",
          "body": null,
          "is_bot": false,
          "headline": "Bump containerd to v2.3.1 (#7566)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-04T07:16:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f3ee865c7aaab8886d39341261c4f5068dcda285",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump Terraform aws to v6.48.0 (#7740)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-04T07:00:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc6933c630c7f4b24abad983362b575460c0d7c6",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump Terraform aws to v6.48.0",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-04T01:39:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0bd1d422826e1cc9c3d436c5c8215c331a009c65",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump containerd to v2.3.1",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-03T21:31:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "83778e5c16865a929d451138469a88cc2242f4ec",
          "body": "….13-k0s.0 (#7737)\n\nSigned-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump quay.io/k0sproject/kube-router Docker tag to v2.10.0-iptables1.8…",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-03T19:33:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98cf1c5de8eb9142f05fd5645519bb6f8c2c6c69",
          "body": "….13-k0s.0\n\nSigned-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump quay.io/k0sproject/kube-router Docker tag to v2.10.0-iptables1.8…",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-03T18:07:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "49f2b91cdaea2baae96aac8a93d4f05af6490b1d",
          "body": null,
          "is_bot": false,
          "headline": "Don't use hard-coded containerd version in upgrade inttest (#7733)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-03T17:32:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ef22028d779212dac68f3673aab193d9b38da46c",
          "body": "Go no longer requires this and is happy to use a recent GNU linker. See\nupstream Go commit a8032d4c78 and its 1.26 backport 0b4d5f85e6.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Remove gold linker for ARM architectures",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-03T12:40:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "796083298a336793b350c1529649b3f4b5f32e77",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump k3s-io/kine to v0.16.2 (#7724)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-03T12:14:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a27105a926589e4bc3fd87cc5cb31f1709c318c8",
          "body": "This allows automatic version bumps without breaking the tests or\nrequiring manual intervention. Also leave a note that this test can be\ndropped in v1.37, as v1.36 is already running containerd v2.\n\nSneak in some improvements: replace the unconditional 30 seconds wait\ninterval with a watch that waits until it observes an updated renewal\ntime in the worker node's lease object.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Don't use hard-coded containerd version in upgrade inttest",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-03T12:11:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4217c05b4dc21d059eb42d939b1901977f36fd0f",
          "body": null,
          "is_bot": false,
          "headline": "Add `--ignore-pre-flight-checks` to install cmds (#7728)",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-03T12:06:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7250e440532d6cdf8b8d88cda4748c59769265a6",
          "body": "Augment the ha3x3 integration test to assert that each worker node lease\ncarries a holder identity equal to the node name.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Test holder identities after Autopilot updates",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-03T11:23:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d489364400e43fd6a1b9e54847d1501b5886adf2",
          "body": "The original idea was to stamp each worker's node lease with the\ncentral-cordoning label set to k0s's current invocation ID, then have\nthe Autopilot controller confirm that the worker is running a compatible\nk0s version by comparing the label's value against the lease's holder\nidentity. This is the \n[…]\n Patch it to the node name if it's not set after applying the\nlabel.\n\nFixes: 4f8f2438e (\"Manage draining and cordoning via Autopilot controller\")\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Fix Autopilot labeling for worker node leases",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-03T11:23:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "111352a09b1e7af374d86d516ca2def79283b628",
          "body": null,
          "is_bot": true,
          "headline": "Bump github.com/opencontainers/selinux from 1.15.0 to 1.15.1 (#7718)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-03T11:00:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "35be241a56f8238206e99a44d416d7e396d4f2f4",
          "body": "…#7719)",
          "is_bot": true,
          "headline": "Bump github.com/go-playground/validator/v10 from 10.30.2 to 10.30.3 (…",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-03T10:40:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "92f1fc803b42adf2ce4122e77d78d6a031374d59",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump k3s-io/kine to v0.16.2",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-03T10:04:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7ca530a499394703aa4b6e470594cf5bee259741",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/anchore/syft Docker tag to v1.45.0 (#7725)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-03T09:55:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "14e3ecf66de7cfe282a0ae23eefc66f70e07ca09",
          "body": "In this PR I use the existing `WorkerOpts` to \"smuggle\" the flag for all needed places.\nThis I do not have to do all the wiring up as separate flag in multiple commands.\n\nFixes #7717\n\nSigned-off-by: Jussi Nummelin <jnummelin@mirantis.com>",
          "is_bot": false,
          "headline": "Add `--ignore-pre-flight-checks` to install cmds",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-03T09:37:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e4cc8974b096225e93ff7f4bd87fff9d0e96fa5e",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump docker.io/anchore/syft Docker tag to v1.45.0",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-03T01:35:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "906f6c68bc4c788352a7f2546f6fe4833f9a8bb1",
          "body": null,
          "is_bot": true,
          "headline": "Bump pip from 26.1.1 to 26.1.2 in /docs (#7721)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-02T20:20:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "51e8e6fa9f103ecf92b51f8f286b5c7c0b86c242",
          "body": null,
          "is_bot": true,
          "headline": "Bump idna from 3.17 to 3.18 in /docs (#7720)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-02T20:16:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6335721fcd41f62ca07f2bedccc1989e301c0e84",
          "body": "Bumps [pip](https://github.com/pypa/pip) from 26.1.1 to 26.1.2.\n- [Changelog](https://github.com/pypa/pip/blob/main/NEWS.rst)\n- [Commits](https://github.com/pypa/pip/compare/26.1.1...26.1.2)\n\n---\nupdated-dependencies:\n- dependency-name: pip\n  dependency-version: 26.1.2\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump pip from 26.1.1 to 26.1.2 in /docs",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-02T17:28:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3ce97603824268d8152aa2f51dc9a5b731b4035a",
          "body": "Bumps [idna](https://github.com/kjd/idna) from 3.17 to 3.18.\n- [Release notes](https://github.com/kjd/idna/releases)\n- [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.md)\n- [Commits](https://github.com/kjd/idna/compare/v3.17...v3.18)\n\n---\nupdated-dependencies:\n- dependency-name: idna\n  dependency-version: '3.18'\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump idna from 3.17 to 3.18 in /docs",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-02T17:28:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8c115eddabf8907729957953796b8b706e226b40",
          "body": "Bumps [github.com/go-playground/validator/v10](https://github.com/go-playground/validator) from 10.30.2 to 10.30.3.\n- [Release notes](https://github.com/go-playground/validator/releases)\n- [Commits](https://github.com/go-playground/validator/compare/v10.30.2...v10.30.3)\n\n---\nupdated-dependencies:\n- \n[…]\nb.com/go-playground/validator/v10\n  dependency-version: 10.30.3\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github.com/go-playground/validator/v10 from 10.30.2 to 10.30.3",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-02T17:27:02Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "62dc5091596b0467862d1ef5fab063318370f9b6",
          "body": "Bumps [github.com/opencontainers/selinux](https://github.com/opencontainers/selinux) from 1.15.0 to 1.15.1.\n- [Release notes](https://github.com/opencontainers/selinux/releases)\n- [Commits](https://github.com/opencontainers/selinux/compare/v1.15.0...v1.15.1)\n\n---\nupdated-dependencies:\n- dependency-n\n[…]\n github.com/opencontainers/selinux\n  dependency-version: 1.15.1\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github.com/opencontainers/selinux from 1.15.0 to 1.15.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-02T17:26:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "68b50611f6d94811cea3f28e4582b27bd857709a",
          "body": "[renovate] Fix kubernetes version bumps for 1.35",
          "is_bot": false,
          "headline": "Merge pull request #7636 from juanluisvaladas/fix-kube-bumps",
          "author_name": "Juan-Luis de Sousa-Valadas Castaño",
          "author_login": "juanluisvaladas",
          "committed_at": "2026-06-02T13:46:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "350d30fb962f75bd0079e3c3bdb05f783f396b0c",
          "body": "If a controller is permanently removed without going through the normal\nleave procedure (e.g. after a backup restore), its `EtcdMember` object\nremains marked as joined even though the controller is no longer present\nin the etcd cluster. This is confusing and may cause operators to draw\nfalse conclus\n[…]\nhat stale members are\ndetected after restore and that all members are correctly marked as\njoined once the cluster has been fully restored. Fan out the three\nbackup test variants into separate CI runs.",
          "is_bot": false,
          "headline": "Detect and reconcile stale EtcdMember objects (#7644)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T13:40:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6bca0d60ebf523de74750fe3fb881cb7237c3d03",
          "body": "… CRI handling logic\n\nSigned-off-by: Jussi Nummelin <jnummelin@mirantis.com>",
          "is_bot": false,
          "headline": "Fix docs around containerd drop-in configs, no need to mention custom…",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-02T11:53:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0955379d436e93e9c5395964b3a72ea32be0bf59",
          "body": "Containerd 2.x natively deep-merges plugin sections from imported config\nfiles, making k0s's manual RFC 7396 merge patch redundant. Replace the\ncustom merge pipeline with a single glob import in the main config:\n\n  imports = [\"/etc/k0s/containerd.d/*.toml\"]\n\nK0s CRI defaults (sandbox image, Windows \n[…]\n. The fsnotify watcher is retained to trigger a SIGHUP whenever\nthe drop-in directory changes, preserving the dynamic reconfiguration\nbehaviour.\n\nSigned-off-by: Jussi Nummelin <jnummelin@mirantis.com>",
          "is_bot": false,
          "headline": "containerd: use native config merging instead of custom CRI merge logic",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-02T09:45:33Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "25a3cdb99353d8cd648fc4b6895a700965385863",
          "body": null,
          "is_bot": false,
          "headline": "Add containerd config drop-in validation to sysprobes (#7693)",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-02T09:42:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4462ce635599028a520cc0323473f2861a66170e",
          "body": "After a backup restore, only the first controller is brought up\ninitially, while the EtcdMember objects of the remaining controllers\nstill show them as joined. The test verifies that the reconciler\ndetects these stale members and marks them as not joined, then confirms\nall members are correctly marked as joined once the cluster is fully\nrestored.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Check etcd member reconciliation in backup inttest",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "78bf89e9ef3a37ceb1085aeb1fdb6b4a34b6b7ca",
          "body": "Run the etcd, stream and kine tests in parallel instead of in sequence.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Fan out backup integration test",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac1dd606fab81228dae0548866b0d55f5b1988e4",
          "body": "EtcdMember objects whose member ID is no longer present in the etcd\ncluster are now marked as Joined=false (if not already marked as such),\nwithout requiring Spec.Leave to be set. This covers cases where a\ncontroller is permanently removed (e.g., after a backup restore) but was\nnever asked to leave.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Mark members absent from the etcd cluster as not joined",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "efa4446cd33cc2958181a8d9a9a7355a9a18efe8",
          "body": "Rather than creating a new etcd client and fetching the member list\nwithin each reconcileMember call, create one client and fetch the list\nonce per resync cycle. This avoids redundant connections and ensures\nthat all members are evaluated against a consistent snapshot.\n\nIf listing the etcd cluster members fails, all EtcdMember objects are\nupdated concurrently with the error status before returning.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Use a shared etcd client and member list when reconciling",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fd15b32c5992a825716a92a33c641ba1517807ff",
          "body": "Match EtcdMember objects to etcd cluster members by member ID rather\nthan by name. Names can diverge after a node is renamed or re-added,\nwhereas the member ID uniquely identifies a specific etcd member\ninstance.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Use the member ID to match etcd members",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "791aa20f71a9cdab7bd126926785c26a73a715de",
          "body": "If the stored member ID cannot be parsed as a hex uint64, update the\nEtcdMember status with the error before returning, so the failure is\nvisible in the API rather than only in the log.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Record a proper status when member IDs are invalid",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d0e5f745ef72a0e1acfad9278cb64c2494ed44d",
          "body": "This is mainly to ensure the correct JSON format.\n\nAllow to inject a special etcd member list client via the context, so\nthat the tests have some means of injecting etcd responses.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "Add unit tests for etcd list-members subcommand",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3513de7664361f720bfac4ab1e3e84f7d6a48d30",
          "body": "Unify the capitalization and wording of log messages, add missing\nlog entries for etcd client errors, add descriptive prefixes to\nStatus.Message, and use short-form if assignments to avoid inadvertently\noverwriting the err variable.\n\nSigned-off-by: Tom Wieczorek <twieczorek@mirantis.com>",
          "is_bot": false,
          "headline": "More consistent error handling in etcd member reconciler",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-02T08:37:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "521202c234aeec5f918ccccb37f7cf645da684e4",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump etcd to v3.6.12 (#7709)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-02T06:52:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "55db36e4990b211099db2e72610150091a358845",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump etcd to v3.6.12",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-01T21:37:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f2f54afa5715bea3108b9367defa1c29275c0ce",
          "body": null,
          "is_bot": false,
          "headline": "Self-remove from etcd cluster before stopping (#7649)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-01T11:50:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b9bc83617cdd44443ec5c730dec61ed3aff3d010",
          "body": null,
          "is_bot": false,
          "headline": "Keep primary IP address family out of cluster-wide config (#7695)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-06-01T08:29:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8e95def88281d94471abde62c8f0928c7a6c1dbc",
          "body": "This way we can report possible problems earlier as users might need to fix e.g. v2 -> v3\nconfig snippets in the case of upgrade.\n\nSigned-off-by: Jussi Nummelin <jnummelin@mirantis.com>",
          "is_bot": false,
          "headline": "Add containerd config drop-in validation to sysprobes",
          "author_name": "Jussi Nummelin",
          "author_login": "jnummelin",
          "committed_at": "2026-06-01T08:28:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "555d161b62d35636682def69c6c794225388118d",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump k3s-io/kine to v0.16.1 (#7705)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-06-01T07:17:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae40b2bd01abf3268995fcb14e8845ec1287a4b1",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump k3s-io/kine to v0.16.1",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-05-30T09:09:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5062c3eb4ef1447f184d196629b32e93c39ed825",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump replicatedhq/troubleshoot to v0.129.1 (#7704)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-05-29T21:20:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ec939482a0ea39e20995f405228d918a2879a92",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump replicatedhq/troubleshoot to v0.129.1",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-05-29T21:07:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cfc9ef1f76264e6aa3c03fbf00f4bc608635d915",
          "body": null,
          "is_bot": false,
          "headline": "Set an appropriate status when a leaving member isn't found (#7650)",
          "author_name": "Tom Wieczorek",
          "author_login": "twz123",
          "committed_at": "2026-05-29T05:44:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9a6b25c6e293c7d41f12ad8bf92b94cc338eb583",
          "body": null,
          "is_bot": true,
          "headline": "Bump platformdirs from 4.9.6 to 4.10.0 in /docs (#7701)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-29T04:53:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "17cf166c8d6496a86d2f9fd17adf3292f0e6ff89",
          "body": null,
          "is_bot": true,
          "headline": "Bump idna from 3.16 to 3.17 in /docs (#7700)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-28T20:57:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf2a734e87173b5b4ff6f28830de7bdc72207d68",
          "body": null,
          "is_bot": true,
          "headline": "Bump modernc.org/sqlite from 1.50.1 to 1.51.0 (#7699)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-28T20:37:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97992480fec2a996fb4eb0d56114f98071c9be3d",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump Terraform aws to v6.47.0 (#7702)",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-05-28T20:10:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "73ff2c9001e8f786aeecaa837bb6955b44d31267",
          "body": "Signed-off-by: k0s-bot <110385897+k0s-bot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Bump Terraform aws to v6.47.0",
          "author_name": "k0s-bot",
          "author_login": "k0s-bot",
          "committed_at": "2026-05-28T17:40:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c78175903cd098580869eb1f2114b9f630614a36",
          "body": "Bumps [platformdirs](https://github.com/tox-dev/platformdirs) from 4.9.6 to 4.10.0.\n- [Release notes](https://github.com/tox-dev/platformdirs/releases)\n- [Changelog](https://github.com/tox-dev/platformdirs/blob/main/docs/changelog.rst)\n- [Commits](https://github.com/tox-dev/platformdirs/compare/4.9.\n[…]\ns:\n- dependency-name: platformdirs\n  dependency-version: 4.10.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump platformdirs from 4.9.6 to 4.10.0 in /docs",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-28T15:56:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f788f2d0f5bc47ae920d9622758c0e5966966a7f",
          "body": "Bumps [idna](https://github.com/kjd/idna) from 3.16 to 3.17.\n- [Release notes](https://github.com/kjd/idna/releases)\n- [Changelog](https://github.com/kjd/idna/blob/master/HISTORY.md)\n- [Commits](https://github.com/kjd/idna/compare/v3.16...v3.17)\n\n---\nupdated-dependencies:\n- dependency-name: idna\n  dependency-version: '3.17'\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump idna from 3.16 to 3.17 in /docs",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-28T15:56:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9bb3a30c75faee0b43085cec05ea412ecb3097cc",
          "body": "Bumps [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) from 1.50.1 to 1.51.0.\n- [Changelog](https://gitlab.com/cznic/sqlite/blob/master/CHANGELOG.md)\n- [Commits](https://gitlab.com/cznic/sqlite/compare/v1.50.1...v1.51.0)\n\n---\nupdated-dependencies:\n- dependency-name: modernc.org/sqlite\n  dependency-version: 1.51.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump modernc.org/sqlite from 1.50.1 to 1.51.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-28T15:55:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 1,
      "commits_last_year": 2060,
      "latest_release_at": "2021-04-26T12:38:51Z",
      "latest_release_tag": "tmp",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 45,
      "days_since_latest_release": 1919,
      "mean_days_between_releases": null
    },
    "community": {
      "has_readme": false,
      "has_license": false,
      "has_description": false,
      "has_contributing": false,
      "health_percentage": null,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/k0sproject/k0s",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": false,
          "registry_url": "https://pkg.go.dev/github.com/k0sproject/k0s",
          "is_deprecated": false,
          "latest_version": "v0.13.1",
          "repository_url": "https://github.com/k0sproject/k0s",
          "versions_count": 50,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2021-04-15T08:15:58Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 1930
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 0,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_stars": 0,
        "collected_at": null
      },
      "open_issues_and_prs": 19
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "docs/Makefile",
        "embedded-bins/Makefile",
        "inttest/Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "build/go.mod",
        "go.mod"
      ],
      "largest_source_bytes": 46754,
      "source_files_sampled": 695,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "build/go.mod",
        "docs/requirements.txt",
        "docs/requirements_pip.txt",
        "go.mod"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "pypi"
      ],
      "dependencies": [
        {
          "name": "github.com/BurntSushi/toml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/Masterminds/semver/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.5.0"
        },
        {
          "name": "github.com/Masterminds/sprig",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.22.0+incompatible"
        },
        {
          "name": "github.com/Microsoft/go-winio",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.3-0.20251027160822-ad3df93bed29"
        },
        {
          "name": "github.com/asaskevich/govalidator",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20230301143203-a9d515a09cc2"
        },
        {
          "name": "github.com/avast/retry-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.0+incompatible"
        },
        {
          "name": "github.com/bombsimon/logrusr/v4",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.1.0"
        },
        {
          "name": "github.com/cilium/ebpf",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.21.0"
        },
        {
          "name": "github.com/cloudflare/cfssl",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.5"
        },
        {
          "name": "github.com/containerd/cgroups/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.1.3"
        },
        {
          "name": "github.com/containerd/containerd/api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/containerd/containerd/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.3.1"
        },
        {
          "name": "github.com/containerd/platforms",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0-rc.4"
        },
        {
          "name": "github.com/distribution/reference",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.6.0"
        },
        {
          "name": "github.com/dustin/go-humanize",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.1"
        },
        {
          "name": "github.com/evanphx/json-patch",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.9.11+incompatible"
        },
        {
          "name": "github.com/fsnotify/fsnotify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.1"
        },
        {
          "name": "github.com/go-logr/logr",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.4.3"
        },
        {
          "name": "github.com/go-openapi/jsonpointer",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.23.1"
        },
        {
          "name": "github.com/go-playground/validator/v10",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v10.30.3"
        },
        {
          "name": "github.com/google/go-cmp",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/k0sproject/bootloose",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.9.6"
        },
        {
          "name": "github.com/k0sproject/version",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.8.0"
        },
        {
          "name": "github.com/kardianos/service",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.4"
        },
        {
          "name": "github.com/logrusorgru/aurora/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.0"
        },
        {
          "name": "github.com/mitchellh/go-homedir",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.0"
        },
        {
          "name": "github.com/opencontainers/go-digest",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/opencontainers/image-spec",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.1"
        },
        {
          "name": "github.com/opencontainers/runtime-spec",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.0"
        },
        {
          "name": "github.com/opencontainers/selinux",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.15.1"
        },
        {
          "name": "github.com/otiai10/copy",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.1"
        },
        {
          "name": "github.com/pelletier/go-toml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.9.5"
        },
        {
          "name": "github.com/robfig/cron",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.0"
        },
        {
          "name": "github.com/segmentio/analytics-go/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.3.0"
        },
        {
          "name": "github.com/sirupsen/logrus",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.9.4"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/spf13/pflag",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.10"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/urfave/cli/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.27.7"
        },
        {
          "name": "github.com/vishvananda/netlink",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.3.1"
        },
        {
          "name": "github.com/vmware-tanzu/sonobuoy",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.57.3"
        },
        {
          "name": "github.com/zcalusic/sysinfo",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.3"
        },
        {
          "name": "go.etcd.io/etcd/api/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.6.12"
        },
        {
          "name": "go.etcd.io/etcd/client/pkg/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.6.12"
        },
        {
          "name": "go.etcd.io/etcd/client/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.6.12"
        },
        {
          "name": "go.etcd.io/etcd/etcdutl/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.6.12"
        },
        {
          "name": "go.uber.org/zap",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.28.0"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.52.0"
        },
        {
          "name": "golang.org/x/mod",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.37.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.21.0"
        },
        {
          "name": "golang.org/x/sys",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.46.0"
        },
        {
          "name": "golang.org/x/text",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.38.0"
        },
        {
          "name": "golang.org/x/tools",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.45.0"
        },
        {
          "name": "google.golang.org/grpc",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.81.1"
        },
        {
          "name": "helm.sh/helm/v3",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.21.0"
        },
        {
          "name": "modernc.org/sqlite",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.52.0"
        },
        {
          "name": "oras.land/oras-go/v2",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.6.0"
        },
        {
          "name": "sigs.k8s.io/controller-runtime",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.24.1"
        },
        {
          "name": "sigs.k8s.io/yaml",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "k8s.io/api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/apiextensions-apiserver",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/apimachinery",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/apiserver",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/cli-runtime",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/client-go",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/cloud-provider",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/cluster-bootstrap",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/component-base",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/component-helpers",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/cri-api",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/kube-aggregator",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/kube-proxy",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/kubectl",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/kubelet",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/kubernetes",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.36.1"
        },
        {
          "name": "k8s.io/mount-utils",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.36.1"
        },
        {
          "name": "k8s.io/utils",
          "manifest": "go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20260319190234-28399d86e0b5"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 19,
        "merged_prs": 127,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 104
      },
      "bus_factor": 2,
      "bot_contributors": 4,
      "top_contributors": [
        {
          "type": "User",
          "login": "twz123",
          "commits": 3130,
          "avatar_url": "https://avatars.githubusercontent.com/u/1215104?v=4"
        },
        {
          "type": "User",
          "login": "ncopa",
          "commits": 858,
          "avatar_url": "https://avatars.githubusercontent.com/u/66357?v=4"
        },
        {
          "type": "User",
          "login": "jnummelin",
          "commits": 792,
          "avatar_url": "https://avatars.githubusercontent.com/u/3205505?v=4"
        },
        {
          "type": "User",
          "login": "k0s-bot",
          "commits": 442,
          "avatar_url": "https://avatars.githubusercontent.com/u/110385897?v=4"
        },
        {
          "type": "User",
          "login": "makhov",
          "commits": 274,
          "avatar_url": "https://avatars.githubusercontent.com/u/557879?v=4"
        },
        {
          "type": "User",
          "login": "renovate-bot",
          "commits": 186,
          "avatar_url": "https://avatars.githubusercontent.com/u/25180681?v=4"
        },
        {
          "type": "User",
          "login": "kke",
          "commits": 143,
          "avatar_url": "https://avatars.githubusercontent.com/u/224971?v=4"
        },
        {
          "type": "User",
          "login": "s0j",
          "commits": 115,
          "avatar_url": "https://avatars.githubusercontent.com/u/15170445?v=4"
        },
        {
          "type": "User",
          "login": "trawler",
          "commits": 104,
          "avatar_url": "https://avatars.githubusercontent.com/u/8340149?v=4"
        },
        {
          "type": "User",
          "login": "jasmingacic",
          "commits": 92,
          "avatar_url": "https://avatars.githubusercontent.com/u/8327751?v=4"
        }
      ],
      "contributors_sampled": 96,
      "top_contributor_share": 0.473
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "backport.yaml",
        "build-docs.yml",
        "build-image-bundle.yml",
        "build-k0s.yml",
        "commit.yaml",
        "conflicts.yaml",
        "dco.yaml",
        "dependabot-prs.yaml",
        "docs.yml",
        "go-completed.yaml",
        "go.yml",
        "lint-invisible-unicode.yaml",
        "lint.yaml",
        "ostests-e2e.yaml",
        "ostests-matrix.yaml",
        "ostests-nightly.yaml",
        "pr-closed.yaml",
        "publish-docs.yml",
        "release.yml",
        "renovate.yaml",
        "smoketest.yaml",
        "stale.yml",
        "unittests-k0s.yml",
        "win-wsl.yaml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        ".golangci.yml"
      ],
      "has_editorconfig": true,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 31 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 0,
            "reason": "dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 7,
            "reason": "dependency not pinned by hash detected -- score normalized to 7",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "31 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "347ba1c93785a930a3c54382b253367c7d413b31",
        "ran_at": "2026-07-29T07:43:15Z",
        "aggregate_score": 3.7,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-29T07:10:57Z",
      "oldest_open_prs": [
        {
          "number": 229,
          "created_at": "2026-03-13T11:28:17Z",
          "last_comment_at": "2026-07-15T23:58:36Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 231,
          "created_at": "2026-03-13T13:37:58Z",
          "last_comment_at": "2026-07-10T23:58:14Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 232,
          "created_at": "2026-03-13T13:38:05Z",
          "last_comment_at": "2026-07-10T23:58:12Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 233,
          "created_at": "2026-03-13T17:04:12Z",
          "last_comment_at": "2026-07-10T23:58:11Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 234,
          "created_at": "2026-03-13T17:05:24Z",
          "last_comment_at": "2026-07-10T00:05:03Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 235,
          "created_at": "2026-03-13T20:58:09Z",
          "last_comment_at": "2026-07-10T00:05:01Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 236,
          "created_at": "2026-03-13T20:58:23Z",
          "last_comment_at": "2026-07-10T00:04:59Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 237,
          "created_at": "2026-03-19T17:29:49Z",
          "last_comment_at": "2026-07-10T00:04:58Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 239,
          "created_at": "2026-03-20T03:14:07Z",
          "last_comment_at": "2026-07-10T00:04:56Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 240,
          "created_at": "2026-03-20T20:55:16Z",
          "last_comment_at": "2026-07-10T00:04:55Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 242,
          "created_at": "2026-03-21T03:06:33Z",
          "last_comment_at": "2026-07-10T00:04:53Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 243,
          "created_at": "2026-06-09T20:13:06Z",
          "last_comment_at": "2026-07-10T00:04:52Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 244,
          "created_at": "2026-06-09T22:01:51Z",
          "last_comment_at": "2026-07-11T23:55:45Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 245,
          "created_at": "2026-06-10T22:23:26Z",
          "last_comment_at": "2026-07-11T23:55:44Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 246,
          "created_at": "2026-06-10T22:23:33Z",
          "last_comment_at": "2026-07-11T23:55:43Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 247,
          "created_at": "2026-06-11T05:03:44Z",
          "last_comment_at": "2026-07-11T23:55:42Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 248,
          "created_at": "2026-06-11T05:05:57Z",
          "last_comment_at": "2026-07-11T23:55:40Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 249,
          "created_at": "2026-06-12T05:12:41Z",
          "last_comment_at": "2026-07-13T23:54:23Z",
          "last_comment_author": "github-actions"
        },
        {
          "number": 250,
          "created_at": "2026-06-18T12:00:53Z",
          "last_comment_at": "2026-07-18T23:54:29Z",
          "last_comment_author": "github-actions"
        }
      ],
      "last_merged_pr_at": "2026-03-12T15:33:51Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/jnummelin/k0s",
    "host": "github.com",
    "name": "k0s",
    "owner": "jnummelin"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "at_risk",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 49,
      "inputs": {
        "security": 37,
        "vitality": 73,
        "community": 9,
        "governance": 54,
        "engineering": 63
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 73,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "excellent",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 95,
            "inputs": {
              "commits_last_year": 2060,
              "human_commit_share": 0.76,
              "days_since_last_push": 0,
              "active_weeks_last_year": 45
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "45/52 weeks with commits",
                "points": 31.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 45
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "2060 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 2060
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "at_risk",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "releases_count": 1,
              "latest_release_tag": "tmp",
              "releases_from_tags": false,
              "days_since_latest_release": 1919,
              "mean_days_between_releases": null
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "1 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 1919 days ago",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 1919
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "cadence unknown (single release)",
                "points": 12.6,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence_unknown",
                    "params": {}
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 49,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 49 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 49
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "critical",
        "name": "Community & Adoption",
        "value": 9,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 0,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "0 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "critical",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 19,
            "inputs": {
              "has_readme": false,
              "has_license": false,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 54,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "moderate",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 61,
            "inputs": {
              "bus_factor": 2,
              "contributors_sampled": 96,
              "top_contributor_share": 0.473
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "2 contributor(s) cover half of all commits",
                "points": 25.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 47% of commits",
                "points": 11.9,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 47
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "96 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 96
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 31 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "at_risk",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 39,
            "inputs": {
              "merged_prs": 127,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 104
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "127/231 decided PRs merged",
                "points": 21,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 127,
                      "decided": 231
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 60,
            "inputs": {
              "followers": 59,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "jnummelin",
              "public_repos": 81,
              "account_age_days": 4950
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "59 followers of jnummelin",
                "points": 12.8,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 59,
                      "login": "jnummelin"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "81 public repos, account ~13 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 81
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 13
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 63,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "24 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 24
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": ".golangci.yml",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "critical",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 25,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": null,
              "has_readme": false,
              "has_docs_dir": true,
              "has_description": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 37,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "packaging"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 37,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 3.7
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 31 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "dangerous workflow patterns detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 7",
                "points": 3.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "31 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 8
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 67,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "at_risk",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 37,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.697,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "53 of 76 human commits state their intent (structured subject or explanatory body)",
                "points": 37.2,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 53,
                      "sampled": 76
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "excellent",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 87,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "docs/Makefile",
                "embedded-bins/Makefile",
                "inttest/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "build/go.mod",
                "go.mod"
              ],
              "dependency_bot_commit_share": 0.12
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, docs/Makefile, embedded-bins/Makefile, inttest/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, docs/Makefile, embedded-bins/Makefile, inttest/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": ".golangci.yml",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".golangci.yml"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Go (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "12 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 12,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 7",
                "points": 7,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 46754,
              "source_files_sampled": 695,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/695 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 695,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Community profile unavailable",
    "go package 'github.com/k0sproject/k0s' points at a different repository (https://github.com/k0sproject/k0s); excluded from ecosystem scoring",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-29T07:43:32.403174Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/j/jnummelin/k0s.svg",
  "full_name": "jnummelin/k0s",
  "license_state": "custom",
  "license_spdx": null
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsGo.