Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-24 02:24 UTC

mlflow-oidc / mlflow-oidc-auth

MLflow Tracking Server OIDC Auth plugin

Python · TypeScriptApache-2.0★ 123 stars⑂ 57 forkssince Apr 2024View on GitHub ↗

mlflow-oidc/mlflow-oidc-auth holds a health index of 75 out of 100, placing it in the Good band. It scores highest on Engineering Quality (96/100) and lowest on Sustainability & Governance (59/100). It was last updated today. A single contributor accounts for most of its recent work.

75
overall / 100
Good

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

75
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

7 followers8 public repossince Jan 2025

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publishTags
PyPImlflow-oidc-auth7.3.5-730 days agomlflowoauth2oidc

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

88Excellent · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
22.2/36Commit cadence — 32/52 weeks with commits
18/18Commit volume — 308 commits in the last year
10/10OpenSSF Scorecard: Maintained — 19 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year308
human_commit_share1
days_since_last_push0
active_weeks_last_year32
How it's scored
27/27Ships releases — 100 releases published
36/36Release recency — latest release 0 days ago
27/27Release cadence — a release every ~10.5 days
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Inputs used
releases_count100
latest_release_tagv7.3.5
releases_from_tagsno
days_since_latest_release0
mean_days_between_releases10.5

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

68Moderate · 18% of overall
How it's scored
33.8/60Stars — 123 stars
14.6/25Forks — 57 forks
4.3/15Watchers — 7 watchers
Inputs used
forks57
stars123
watchers7
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

Community health

85Excellent
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (Apache-2.0)
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateno

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

59Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
10.4/22.5Commit distribution — top contributor authored 54% of commits
13.5/13.5Contributor breadth — 16 contributors
10/10OpenSSF Scorecard: Contributors — project has 5 contributing companies or organizations
Inputs used
bus_factor1
contributors_sampled16
top_contributor_share0.539
How it's scored
27.4/46.8Issue resolution — 59% of issues closed
24.6/38.3PR acceptance — 92/143 decided PRs merged
7.5/15OpenSSF Scorecard: Code-Review — Found 14/24 approved changesets -- score normalized to 5
Inputs used
merged_prs92
open_issues41
closed_issues58
issue_closed_ratio0.586
closed_unmerged_prs51
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
6.5/25Owner reach — 7 followers of mlflow-oidc
9.9/25Track record — 8 public repos, account ~1 yr old
Inputs used
followers7
owner_typeOrganization
is_verified
owner_loginmlflow-oidc
public_repos8
account_age_days538
How it's scored
25/25Published & resolvable — 1 package(s) on pypi
35/35Publish recency — latest publish 0 days ago
20/20Version history — 73 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesmlflow-oidc-auth
ecosystemspypi
any_deprecatedno
min_days_since_publish0

Engineering Quality

Are baseline engineering and documentation practices in place?

96Excellent · 20% of overall
How it's scored
24/24CI workflows — 8 workflow(s)
24/24Tests present
16/16Linter config — eslint.config.js, tox.ini
9.6/9.6Pre-commit hooks
6.4/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 22 out of 22 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigyes
has_linter_configyes
has_precommit_configyes

Documentation

90Excellent
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://mlflow-oidc.github.io/mlflow-oidc-auth/
10/10Repository description
10/10Topics — 7 topics
0/10Wiki
Inputs used
topicsmlflow, mlflow-tracking-server, oauth2, oidc, permission-management, sso, machine-learning
has_wikino
homepagehttps://mlflow-oidc.github.io/mlflow-oidc-auth/
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

61Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
3.8/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 22 out of 22 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
3.8/7.5Code-Review — Found 14/24 approved changesets -- score normalized to 5
2.5/2.5Contributors — project has 5 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 19 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
2.5/5SAST — SAST tool is not run on all commits -- score normalized to 5
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
4.5/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 51 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated18
scorecard_versionv5.5.0
checks_inconclusive0
scorecard_aggregate6.1
How it's scored
10.5/35Direct dependencies free of known advisories — 2 affected: react-router 7.12.0 (high 8.1), dompurify 3.3.1 (moderate 6.9)
0/25Indirect dependencies free of known advisories — transitive set not separable from development and test dependencies in this scope
34.1/40No advisories left outstanding — 1 advisory-carrying package(s) unaddressed past 90 days; oldest published 142 days ago
Inputs used
sourceosv
advisories53
affected_packages15
assessed_packages392
unassessed_packages24
affected_by_severitycritical 2, high 10, moderate 2, low 1
direct_affected_packages2
Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 392 resolved dependencies against OSV. 24 could not be assessed — no resolved version, an unsupported ecosystem, or beyond the reported package list. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

69Moderate · 0% of overall
How it's scored
45/45Agent instructions — .github/copilot-instructions.md, .github/instructions/python.instructions.md, .github/instructions/react.instructions.md, CLAUDE.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 100 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share1
agent_instruction_files.github/copilot-instructions.md, .github/instructions/python.instructions.md, .github/instructions/react.instructions.md, CLAUDE.md
agent_instruction_max_bytes26,538
How it's scored
0/18One-command bootstrap
22/22Automated tests
11/11Lint / format config — eslint.config.js, tox.ini
11/11Static type checking — web-react/tsconfig.json
10/10Reproducible environment — Dockerfile, lockfile
10/10Demonstrated agent practice — 9 of the last 100 commits agent-authored or agent-credited
0/8Automated maintenance — no automated dependency updates observed
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfilesyarn.lock
has_dockerfileyes
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_configyes
typecheck_configsweb-react/tsconfig.json
agent_commit_share0.09
toolchain_manifests
dependency_bot_commit_share0
How it's scored
27/45Type-checkable code — Python with type-check config (web-react/tsconfig.json)
54.6/55Manageable file sizes — 4/609 source files over 60KB
Inputs used
primary_languagePython
largest_source_bytes126,517
source_files_sampled609
oversized_source_files4
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — notebooks
Inputs used
example_dirsnotebooks
has_mcp_signalno
api_schema_files

Key facts

123GitHub stars
16contributors
308commits, last 12 months
0days since last push
100releases
1bus factor
41open issues
npm, PyPIpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • deps.dev does not index pypi:mlflow-oidc-auth@7.3.5; advisories assessed against the repository dependency graph instead

More detail

Star and fork history 0 ★ / 57 ⇿
0Stars
57Forks
96Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

01020304050605722024-042025-052026-07
Major 7Minor 32Patch 30

Each point covers 3 days.

OpenSSF Scorecard 6.1 / 10
6.1aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-24 02:23 UTC

10Binary-Artifactsno binaries found in the repo
5Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests22 out of 22 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
5Code-ReviewFound 14/24 approved changesets -- score normalized to 5
10Contributorsproject has 5 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained19 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
5SASTSAST tool is not run on all commits -- score normalized to 5
10Security-Policysecurity policy file detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
6Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities51 existing vulnerabilities detected
Direct dependencies 20
RegistryPackageVersion constraintManifest
PyPImlflow<4,>=3.14.0pyproject.toml
PyPIpython-dotenv<2pyproject.toml
PyPIrequests<3,>=2.32.5pyproject.toml
PyPIsqlalchemy<3,>=2.0.46pyproject.toml
PyPIflask<4pyproject.toml
PyPIgunicorn<24pyproject.toml
PyPIalembic<2,!=1.18.4pyproject.toml
PyPIauthlib<2pyproject.toml
PyPIuvicorn>=0.41.0pyproject.toml
PyPIfastapi>=0.132.0pyproject.toml
PyPIasgiref>=3.11.1pyproject.toml
PyPIhttpx>=0.28.1pyproject.toml
PyPIcachetools>=5.5.0pyproject.toml
npm@fortawesome/fontawesome-svg-core^7.1.0web-react/package.json
npm@fortawesome/free-solid-svg-icons^7.1.0web-react/package.json
npm@fortawesome/react-fontawesome^3.1.0web-react/package.json
npmdompurify^3.3.0web-react/package.json
npmreact^19.1.1web-react/package.json
npmreact-dom^19.1.1web-react/package.json
npmreact-router^7.9.3web-react/package.json
All dependencies 416

Full resolved dependency set from the GitHub dependency graph: 20 direct and 396 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
npm@fortawesome/fontawesome-svg-core7.1.0direct
npm@fortawesome/free-solid-svg-icons7.1.0direct
npm@fortawesome/react-fontawesome3.1.1direct
npmdompurify3.3.1direct
npmreact19.2.3direct
npmreact-dom19.2.3direct
npmreact-router7.12.0direct
PyPIalembicdirect
PyPIasgirefdirect
PyPIauthlibdirect
PyPIcachetoolsdirect
PyPIfastapidirect
PyPIflaskdirect
PyPIgunicorndirect
PyPIhttpxdirect
PyPImlflowdirect
PyPIpython-dotenvdirect
PyPIrequestsdirect
PyPIsqlalchemydirect
PyPIuvicorndirect
npm@acemir/cssom0.9.30indirect
npm@adobe/css-tools4.4.4indirect
npm@asamuzakjp/css-color4.1.1indirect
npm@asamuzakjp/dom-selector6.7.6indirect
npm@asamuzakjp/nwsapi2.3.9indirect
npm@babel/code-frame7.27.1indirect
npm@babel/compat-data7.28.5indirect
npm@babel/core7.28.5indirect
npm@babel/generator7.28.5indirect
npm@babel/helper-compilation-targets7.27.2indirect
npm@babel/helper-globals7.28.0indirect
npm@babel/helper-module-imports7.27.1indirect
npm@babel/helper-module-transforms7.28.3indirect
npm@babel/helper-string-parser7.27.1indirect
npm@babel/helper-validator-identifier7.28.5indirect
npm@babel/helper-validator-option7.27.1indirect
npm@babel/helpers7.28.4indirect
npm@babel/parser7.28.5indirect
npm@babel/runtime7.28.4indirect
npm@babel/template7.27.2indirect
npm@babel/traverse7.28.5indirect
npm@babel/types7.28.5indirect
npm@bcoe/v8-coverage1.0.2indirect
npm@csstools/color-helpers5.1.0indirect
npm@csstools/css-calc2.1.4indirect
npm@csstools/css-color-parser3.1.0indirect
npm@csstools/css-parser-algorithms3.0.5indirect
npm@csstools/css-syntax-patches-for-csstree1.0.25indirect
npm@csstools/css-tokenizer3.0.4indirect
npm@emnapi/core1.8.1indirect
npm@emnapi/runtime1.8.1indirect
npm@emnapi/wasi-threads1.1.0indirect
npm@eslint-community/eslint-utils4.9.1indirect
npm@eslint-community/regexpp4.12.2indirect
npm@eslint-react/ast2.5.5indirect
npm@eslint-react/core2.5.5indirect
npm@eslint-react/eff2.5.5indirect
npm@eslint-react/shared2.5.5indirect
npm@eslint-react/var2.5.5indirect
npm@eslint/config-array0.21.1indirect
npm@eslint/config-helpers0.4.2indirect
npm@eslint/core0.17.0indirect
npm@eslint/eslintrc3.3.3indirect
npm@eslint/js9.39.2indirect
npm@eslint/object-schema2.1.7indirect
npm@eslint/plugin-kit0.4.1indirect
npm@exodus/bytes1.8.0indirect
npm@fortawesome/fontawesome-common-types7.1.0indirect
npm@humanfs/core0.19.1indirect
npm@humanfs/node0.16.7indirect
npm@humanwhocodes/module-importer1.0.1indirect
npm@humanwhocodes/retry0.4.3indirect
npm@jest/diff-sequences30.0.1indirect
npm@jest/expect-utils30.2.0indirect
npm@jest/get-type30.1.0indirect
npm@jest/pattern30.0.1indirect
npm@jest/schemas30.0.5indirect
npm@jest/types30.2.0indirect
npm@jridgewell/gen-mapping0.3.13indirect
npm@jridgewell/remapping2.3.5indirect
npm@jridgewell/resolve-uri3.1.2indirect
npm@jridgewell/sourcemap-codec1.5.5indirect
npm@jridgewell/trace-mapping0.3.31indirect
npm@napi-rs/wasm-runtime1.1.1indirect
npm@oxc-project/runtime0.101.0indirect
npm@oxc-project/types0.101.0indirect
npm@rolldown/binding-android-arm641.0.0-beta.53indirect
npm@rolldown/binding-darwin-arm641.0.0-beta.53indirect
npm@rolldown/binding-darwin-x641.0.0-beta.53indirect
npm@rolldown/binding-freebsd-x641.0.0-beta.53indirect
npm@rolldown/binding-linux-arm-gnueabihf1.0.0-beta.53indirect
npm@rolldown/binding-linux-arm64-gnu1.0.0-beta.53indirect
npm@rolldown/binding-linux-arm64-musl1.0.0-beta.53indirect
npm@rolldown/binding-linux-x64-gnu1.0.0-beta.53indirect
npm@rolldown/binding-linux-x64-musl1.0.0-beta.53indirect
npm@rolldown/binding-openharmony-arm641.0.0-beta.53indirect
npm@rolldown/binding-wasm32-wasi1.0.0-beta.53indirect
npm@rolldown/binding-win32-arm64-msvc1.0.0-beta.53indirect
npm@rolldown/binding-win32-x64-msvc1.0.0-beta.53indirect
npm@rolldown/pluginutils1.0.0-beta.47indirect
npm@rolldown/pluginutils1.0.0-beta.53indirect
npm@sinclair/typebox0.34.47indirect
npm@standard-schema/spec1.1.0indirect
npm@swc/core1.15.8indirect
npm@swc/core-darwin-arm641.15.8indirect
npm@swc/core-darwin-x641.15.8indirect
npm@swc/core-linux-arm-gnueabihf1.15.8indirect
npm@swc/core-linux-arm64-gnu1.15.8indirect
npm@swc/core-linux-arm64-musl1.15.8indirect
npm@swc/core-linux-x64-gnu1.15.8indirect
npm@swc/core-linux-x64-musl1.15.8indirect
npm@swc/core-win32-arm64-msvc1.15.8indirect
npm@swc/core-win32-ia32-msvc1.15.8indirect
npm@swc/core-win32-x64-msvc1.15.8indirect
npm@swc/counter0.1.3indirect
npm@swc/types0.1.25indirect
npm@tailwindcss/node4.1.18indirect
npm@tailwindcss/oxide4.1.18indirect
npm@tailwindcss/oxide-android-arm644.1.18indirect
npm@tailwindcss/oxide-darwin-arm644.1.18indirect
npm@tailwindcss/oxide-darwin-x644.1.18indirect
npm@tailwindcss/oxide-freebsd-x644.1.18indirect
npm@tailwindcss/oxide-linux-arm-gnueabihf4.1.18indirect
npm@tailwindcss/oxide-linux-arm64-gnu4.1.18indirect
npm@tailwindcss/oxide-linux-arm64-musl4.1.18indirect
npm@tailwindcss/oxide-linux-x64-gnu4.1.18indirect
npm@tailwindcss/oxide-linux-x64-musl4.1.18indirect
npm@tailwindcss/oxide-wasm32-wasi4.1.18indirect
npm@tailwindcss/oxide-win32-arm64-msvc4.1.18indirect
npm@tailwindcss/oxide-win32-x64-msvc4.1.18indirect
npm@tailwindcss/vite4.1.18indirect
npm@testing-library/dom10.4.1indirect
npm@testing-library/jest-dom6.9.1indirect
npm@testing-library/react16.3.1indirect
npm@testing-library/user-event14.6.1indirect
npm@tybys/wasm-util0.10.1indirect
npm@types/aria-query5.0.4indirect
npm@types/chai5.2.3indirect
npm@types/deep-eql4.0.2indirect
npm@types/estree1.0.8indirect
npm@types/istanbul-lib-coverage2.0.6indirect
npm@types/istanbul-lib-report3.0.3indirect
npm@types/istanbul-reports3.0.4indirect
npm@types/jest30.0.0indirect
npm@types/jsdom27.0.0indirect
npm@types/json-schema7.0.15indirect
npm@types/node25.0.6indirect
npm@types/react19.2.8indirect
npm@types/react-dom19.2.3indirect
npm@types/stack-utils2.0.3indirect
npm@types/tough-cookie4.0.5indirect
npm@types/trusted-types2.0.7indirect
npm@types/yargs17.0.35indirect
npm@types/yargs-parser21.0.3indirect
npm@typescript-eslint/eslint-plugin8.52.0indirect
npm@typescript-eslint/parser8.52.0indirect
npm@typescript-eslint/project-service8.52.0indirect
npm@typescript-eslint/scope-manager8.52.0indirect
npm@typescript-eslint/tsconfig-utils8.52.0indirect
npm@typescript-eslint/type-utils8.52.0indirect
npm@typescript-eslint/types8.52.0indirect
npm@typescript-eslint/typescript-estree8.52.0indirect
npm@typescript-eslint/utils8.52.0indirect
npm@typescript-eslint/visitor-keys8.52.0indirect
npm@vitejs/plugin-react-swc4.2.2indirect
npm@vitest/coverage-v84.0.16indirect
npm@vitest/expect4.0.16indirect
npm@vitest/mocker4.0.16indirect
npm@vitest/pretty-format4.0.16indirect
npm@vitest/runner4.0.16indirect
npm@vitest/snapshot4.0.16indirect
npm@vitest/spy4.0.16indirect
npm@vitest/utils4.0.16indirect
npmacorn8.15.0indirect
npmacorn-jsx5.3.2indirect
npmagent-base7.1.4indirect
npmajv6.12.6indirect
npmansi-regex5.0.1indirect
npmansi-styles4.3.0indirect
npmansi-styles5.2.0indirect
npmargparse2.0.1indirect
npmaria-query5.3.0indirect
npmaria-query5.3.2indirect
npmassertion-error2.0.1indirect
npmast-v8-to-istanbul0.3.10indirect
npmbalanced-match1.0.2indirect
npmbaseline-browser-mapping2.9.14indirect
npmbidi-js1.0.3indirect
npmbirecord0.1.1indirect
npmbrace-expansion1.1.12indirect
npmbrace-expansion2.0.2indirect
npmbraces3.0.3indirect
npmbrowserslist4.28.1indirect
npmcallsites3.1.0indirect
npmcaniuse-lite1.0.30001764indirect
npmchai6.2.2indirect
npmchalk4.1.2indirect
npmci-info4.3.1indirect
npmcolor-convert2.0.1indirect
npmcolor-name1.1.4indirect
npmcompare-versions6.1.1indirect
npmconcat-map0.0.1indirect
npmconvert-source-map2.0.0indirect
npmcookie1.1.1indirect
npmcross-spawn7.0.6indirect
npmcss-tree3.1.0indirect
npmcss.escape1.5.1indirect
npmcssstyle5.3.7indirect
npmcsstype3.2.3indirect
npmdata-urls6.0.0indirect
npmdebug4.4.3indirect
npmdecimal.js10.6.0indirect
npmdeep-is0.1.4indirect
npmdequal2.0.3indirect
npmdetect-libc2.1.2indirect
npmdom-accessibility-api0.5.16indirect
npmdom-accessibility-api0.6.3indirect
npmelectron-to-chromium1.5.267indirect
npmenhanced-resolve5.18.4indirect
npmentities6.0.1indirect
npmes-module-lexer1.7.0indirect
npmescalade3.2.0indirect
npmescape-string-regexp2.0.0indirect
npmescape-string-regexp4.0.0indirect
npmeslint9.39.2indirect
npmeslint-config-prettier10.1.8indirect
npmeslint-plugin-react-dom2.5.5indirect
npmeslint-plugin-react-hooks7.0.1indirect
npmeslint-plugin-react-refresh0.4.26indirect
npmeslint-plugin-react-x2.5.5indirect
npmeslint-scope8.4.0indirect
npmeslint-visitor-keys3.4.3indirect
npmeslint-visitor-keys4.2.1indirect
npmespree10.4.0indirect
npmesquery1.7.0indirect
npmesrecurse4.3.0indirect
npmestraverse5.3.0indirect
npmestree-walker3.0.3indirect
npmesutils2.0.3indirect
npmexpect30.2.0indirect
npmexpect-type1.3.0indirect
npmfast-deep-equal3.1.3indirect
npmfast-json-stable-stringify2.1.0indirect
npmfast-levenshtein2.0.6indirect
npmfdir6.5.0indirect
npmfile-entry-cache8.0.0indirect
npmfill-range7.1.1indirect
npmfind-up5.0.0indirect
npmflat-cache4.0.1indirect
npmflatted3.3.3indirect
npmfsevents2.3.3indirect
npmgensync1.0.0-beta.2indirect
npmglob-parent6.0.2indirect
npmglobals14.0.0indirect
npmglobals17.0.0indirect
npmgraceful-fs4.2.11indirect
npmhas-flag4.0.0indirect
npmhermes-estree0.25.1indirect
npmhermes-parser0.25.1indirect
npmhtml-encoding-sniffer6.0.0indirect
npmhtml-escaper2.0.2indirect
npmhttp-proxy-agent7.0.2indirect
npmhttps-proxy-agent7.0.6indirect
npmignore5.3.2indirect
npmignore7.0.5indirect
npmimport-fresh3.3.1indirect
npmimurmurhash0.1.4indirect
npmindent-string4.0.0indirect
npmis-extglob2.1.1indirect
npmis-glob4.0.3indirect
npmis-immutable-type5.0.1indirect
npmis-number7.0.0indirect
npmis-potential-custom-element-name1.0.1indirect
npmisexe2.0.0indirect
npmistanbul-lib-coverage3.2.2indirect
npmistanbul-lib-report3.0.1indirect
npmistanbul-lib-source-maps5.0.6indirect
npmistanbul-reports3.2.0indirect
npmjest-diff30.2.0indirect
npmjest-matcher-utils30.2.0indirect
npmjest-message-util30.2.0indirect
npmjest-mock30.2.0indirect
npmjest-regex-util30.0.1indirect
npmjest-util30.2.0indirect
npmjiti2.6.1indirect
npmjs-tokens4.0.0indirect
npmjs-tokens9.0.1indirect
npmjs-yaml4.1.1indirect
npmjsdom27.4.0indirect
npmjsesc3.1.0indirect
npmjson-buffer3.0.1indirect
npmjson-schema-traverse0.4.1indirect
npmjson-stable-stringify-without-jsonify1.0.1indirect
npmjson52.2.3indirect
npmkeyv4.5.4indirect
npmlevn0.4.1indirect
npmlightningcss1.30.2indirect
npmlightningcss-android-arm641.30.2indirect
npmlightningcss-darwin-arm641.30.2indirect
npmlightningcss-darwin-x641.30.2indirect
npmlightningcss-freebsd-x641.30.2indirect
npmlightningcss-linux-arm-gnueabihf1.30.2indirect
npmlightningcss-linux-arm64-gnu1.30.2indirect
npmlightningcss-linux-arm64-musl1.30.2indirect
npmlightningcss-linux-x64-gnu1.30.2indirect
npmlightningcss-linux-x64-musl1.30.2indirect
npmlightningcss-win32-arm64-msvc1.30.2indirect
npmlightningcss-win32-x64-msvc1.30.2indirect
npmlocate-path6.0.0indirect
npmlodash.merge4.6.2indirect
npmlru-cache11.2.4indirect
npmlru-cache5.1.1indirect
npmlz-string1.5.0indirect
npmmagic-string0.30.21indirect
npmmagicast0.5.1indirect
npmmake-dir4.0.0indirect
npmmdn-data2.12.2indirect
npmmicromatch4.0.8indirect
npmmin-indent1.0.1indirect
npmminimatch3.1.2indirect
npmminimatch9.0.5indirect
npmms2.1.3indirect
npmnanoid3.3.11indirect
npmnatural-compare1.4.0indirect
npmnode-releases2.0.27indirect
npmobug2.1.1indirect
npmoptionator0.9.4indirect
npmp-limit3.1.0indirect
npmp-locate5.0.0indirect
npmparent-module1.0.1indirect
npmparse57.3.0indirect
npmparse58.0.0indirect
npmpath-exists4.0.0indirect
npmpath-key3.1.1indirect
npmpathe2.0.3indirect
npmpicocolors1.1.1indirect
npmpicomatch2.3.1indirect
npmpicomatch4.0.3indirect
npmpostcss8.5.6indirect
npmprelude-ls1.2.1indirect
npmprettier3.8.1indirect
npmpretty-format27.5.1indirect
npmpretty-format30.2.0indirect
npmpunycode2.3.1indirect
npmreact-is17.0.2indirect
npmreact-is18.3.1indirect
npmredent3.0.0indirect
npmrequire-from-string2.0.2indirect
npmresolve-from4.0.0indirect
npmrolldown1.0.0-beta.53indirect
npmrolldown-vite7.3.1indirect
npmsaxes6.0.0indirect
npmscheduler0.27.0indirect
npmsemver6.3.1indirect
npmsemver7.7.3indirect
npmset-cookie-parser2.7.2indirect
npmshebang-command2.0.0indirect
npmshebang-regex3.0.0indirect
npmsiginfo2.0.0indirect
npmslash3.0.0indirect
npmsource-map-js1.2.1indirect
npmstack-utils2.0.6indirect
npmstackback0.0.2indirect
npmstd-env3.10.0indirect
npmstring-ts2.3.1indirect
npmstrip-indent3.0.0indirect
npmstrip-json-comments3.1.1indirect
npmsupports-color7.2.0indirect
npmsymbol-tree3.2.4indirect
npmtailwindcss4.1.18indirect
npmtapable2.3.0indirect
npmtinybench2.9.0indirect
npmtinyexec1.0.2indirect
npmtinyglobby0.2.15indirect
npmtinyrainbow3.0.3indirect
npmtldts7.0.19indirect
npmtldts-core7.0.19indirect
npmto-regex-range5.0.1indirect
npmtough-cookie6.0.0indirect
npmtr466.0.0indirect
npmts-api-utils2.4.0indirect
npmts-declaration-location1.0.7indirect
npmts-pattern5.9.0indirect
npmtslib2.8.1indirect
npmtype-check0.4.0indirect
npmtypescript5.9.3indirect
npmtypescript-eslint8.52.0indirect
npmundici-types7.16.0indirect
npmupdate-browserslist-db1.2.3indirect
npmuri-js4.4.1indirect
npmvitest4.0.16indirect
npmw3c-xmlserializer5.0.0indirect
npmwebidl-conversions8.0.1indirect
npmwhatwg-mimetype4.0.0indirect
npmwhatwg-url15.1.0indirect
npmwhich2.0.2indirect
npmwhy-is-node-running2.3.0indirect
npmword-wrap1.2.5indirect
npmws8.19.0indirect
npmxml-name-validator5.0.0indirect
npmxmlchars2.2.0indirect
npmyallist3.1.1indirect
npmyocto-queue0.1.0indirect
npmzod4.3.5indirect
npmzod-validation-error4.0.2indirect
PyPIautoflakeindirect
PyPIazure-identityindirect
PyPIazure-keyvault-secretsindirect
PyPIblackindirect
PyPIboto3indirect
PyPIhvacindirect
PyPIpre-commitindirect
PyPIpytestindirect
PyPIpytest-asyncioindirect
PyPIpytest-covindirect
PyPIredisindirect
Dependency advisories 15

This repository publishes no package the index resolves, so its own dependency graph was assessed — 392 packages, which also include development and test pins that never ship: 15 carry known advisories, of which 2 are direct. 24 could not be assessed — no resolved version, an unsupported ecosystem, or beyond the reported package list.

PackageVersionRelationSeverityAdvisoriesFixed in
flatted3.3.3indirectcritical23.4.2
vitest4.0.16indirectcritical14.1.0
react-router7.12.0directhigh117.18.0
brace-expansion1.1.12indirecthigh25.0.7
brace-expansion2.0.2indirecthigh25.0.7
js-yaml4.1.1indirecthigh24.3.0
minimatch3.1.2indirecthigh310.2.3
minimatch9.0.5indirecthigh310.2.3
picomatch2.3.1indirecthigh24.0.4
picomatch4.0.3indirecthigh24.0.4
postcss8.5.6indirecthigh28.5.12
ws8.19.0indirecthigh28.21.0
dompurify3.3.1directmoderate173.4.12
ajv6.12.6indirectmoderate18.18.0
@babel/core7.28.5indirectlow18.0.0-rc.6

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "mlflow",
        "mlflow-tracking-server",
        "oauth2",
        "oidc",
        "permission-management",
        "sso",
        "machine-learning"
      ],
      "is_fork": false,
      "size_kb": 2481,
      "has_wiki": false,
      "homepage": "https://mlflow-oidc.github.io/mlflow-oidc-auth/",
      "languages": {
        "CSS": 6213,
        "HTML": 12745,
        "Mako": 510,
        "Shell": 2077,
        "Python": 3125959,
        "JavaScript": 1223,
        "TypeScript": 796427,
        "Jupyter Notebook": 11052
      },
      "pushed_at": "2026-07-24T02:21:28Z",
      "created_at": "2024-04-01T02:29:33Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-24T02:20:35Z",
      "description": "MLflow Tracking Server OIDC Auth plugin",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Python",
      "significant_languages": [
        "Python",
        "TypeScript"
      ]
    },
    "owner": {
      "blog": null,
      "name": "MLflow + OpenID Connect",
      "type": "Organization",
      "login": "mlflow-oidc",
      "company": null,
      "location": "Canada",
      "followers": 7,
      "avatar_url": "https://avatars.githubusercontent.com/u/197287101?v=4",
      "created_at": "2025-01-31T15:38:17Z",
      "is_verified": null,
      "public_repos": 8,
      "account_age_days": 538
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v7.3.5",
          "kind": "patch",
          "published_at": "2026-07-24T02:21:30Z"
        },
        {
          "tag": "v7.3.4",
          "kind": "patch",
          "published_at": "2026-07-24T02:14:17Z"
        },
        {
          "tag": "v7.3.3",
          "kind": "patch",
          "published_at": "2026-07-24T02:12:14Z"
        },
        {
          "tag": "v7.3.2",
          "kind": "patch",
          "published_at": "2026-07-24T01:58:23Z"
        },
        {
          "tag": "v7.3.1",
          "kind": "patch",
          "published_at": "2026-05-22T19:33:56Z"
        },
        {
          "tag": "v7.3.0",
          "kind": "minor",
          "published_at": "2026-05-13T02:09:22Z"
        },
        {
          "tag": "v7.2.0",
          "kind": "minor",
          "published_at": "2026-05-12T16:11:27Z"
        },
        {
          "tag": "v7.1.1",
          "kind": "patch",
          "published_at": "2026-05-06T16:13:35Z"
        },
        {
          "tag": "v7.1.0",
          "kind": "minor",
          "published_at": "2026-05-01T13:29:30Z"
        },
        {
          "tag": "v7.0.3",
          "kind": "patch",
          "published_at": "2026-04-20T23:03:52Z"
        },
        {
          "tag": "v7.0.2",
          "kind": "patch",
          "published_at": "2026-04-14T00:13:44Z"
        },
        {
          "tag": "v7.0.1",
          "kind": "patch",
          "published_at": "2026-04-13T18:46:39Z"
        },
        {
          "tag": "v7.0.0",
          "kind": "major",
          "published_at": "2026-03-30T17:36:41Z"
        },
        {
          "tag": "v6.7.1",
          "kind": "patch",
          "published_at": "2026-02-24T20:19:13Z"
        },
        {
          "tag": "v6.7.0",
          "kind": "minor",
          "published_at": "2026-02-23T19:09:16Z"
        },
        {
          "tag": "v6.6.5",
          "kind": "patch",
          "published_at": "2026-02-10T03:41:56Z"
        },
        {
          "tag": "v6.6.4",
          "kind": "patch",
          "published_at": "2026-01-28T15:20:30Z"
        },
        {
          "tag": "v6.6.3",
          "kind": "patch",
          "published_at": "2026-01-27T21:18:17Z"
        },
        {
          "tag": "v6.6.2",
          "kind": "patch",
          "published_at": "2026-01-27T15:17:00Z"
        },
        {
          "tag": "v6.6.1",
          "kind": "patch",
          "published_at": "2026-01-27T03:57:31Z"
        },
        {
          "tag": "v6.6.0",
          "kind": "minor",
          "published_at": "2026-01-22T21:46:13Z"
        },
        {
          "tag": "v6.5.0",
          "kind": "minor",
          "published_at": "2026-01-22T05:54:05Z"
        },
        {
          "tag": "v6.4.0",
          "kind": "minor",
          "published_at": "2026-01-22T04:25:54Z"
        },
        {
          "tag": "v6.3.0",
          "kind": "minor",
          "published_at": "2026-01-17T01:30:44Z"
        },
        {
          "tag": "v6.2.0",
          "kind": "minor",
          "published_at": "2026-01-16T21:07:37Z"
        },
        {
          "tag": "v6.1.2",
          "kind": "patch",
          "published_at": "2026-01-16T15:44:18Z"
        },
        {
          "tag": "v6.1.1",
          "kind": "patch",
          "published_at": "2026-01-14T15:15:31Z"
        },
        {
          "tag": "v6.1.0",
          "kind": "minor",
          "published_at": "2026-01-13T04:08:18Z"
        },
        {
          "tag": "v6.0.0",
          "kind": "major",
          "published_at": "2026-01-13T04:06:14Z"
        },
        {
          "tag": "v5.7.0",
          "kind": "minor",
          "published_at": "2025-11-17T15:25:22Z"
        },
        {
          "tag": "v6.0.0-rc.8",
          "kind": "prerelease",
          "published_at": "2025-09-19T16:48:35Z"
        },
        {
          "tag": "v6.0.0-rc.7",
          "kind": "prerelease",
          "published_at": "2025-09-15T17:26:05Z"
        },
        {
          "tag": "v6.0.0-rc.6",
          "kind": "prerelease",
          "published_at": "2025-09-15T16:04:33Z"
        },
        {
          "tag": "v6.0.0-rc.5",
          "kind": "prerelease",
          "published_at": "2025-09-12T21:16:33Z"
        },
        {
          "tag": "v6.0.0-rc.4",
          "kind": "prerelease",
          "published_at": "2025-09-12T19:09:30Z"
        },
        {
          "tag": "v6.0.0-rc.3",
          "kind": "prerelease",
          "published_at": "2025-09-11T01:07:34Z"
        },
        {
          "tag": "v6.0.0-rc.2",
          "kind": "prerelease",
          "published_at": "2025-09-10T22:34:31Z"
        },
        {
          "tag": "v6.0.0-rc.1",
          "kind": "prerelease",
          "published_at": "2025-09-06T06:12:43Z"
        },
        {
          "tag": "v5.6.1",
          "kind": "patch",
          "published_at": "2025-08-21T00:35:19Z"
        },
        {
          "tag": "v5.6.0",
          "kind": "minor",
          "published_at": "2025-08-21T00:26:02Z"
        },
        {
          "tag": "v5.5.2",
          "kind": "patch",
          "published_at": "2025-08-07T21:39:23Z"
        },
        {
          "tag": "v5.5.1",
          "kind": "patch",
          "published_at": "2025-08-06T21:24:53Z"
        },
        {
          "tag": "v5.5.0",
          "kind": "minor",
          "published_at": "2025-08-02T19:28:59Z"
        },
        {
          "tag": "v5.4.0",
          "kind": "minor",
          "published_at": "2025-07-27T23:53:06Z"
        },
        {
          "tag": "v5.3.1",
          "kind": "patch",
          "published_at": "2025-07-11T17:52:09Z"
        },
        {
          "tag": "v5.3.0",
          "kind": "minor",
          "published_at": "2025-07-01T00:08:55Z"
        },
        {
          "tag": "v5.2.0",
          "kind": "minor",
          "published_at": "2025-06-25T02:21:03Z"
        },
        {
          "tag": "v5.1.2",
          "kind": "patch",
          "published_at": "2025-06-11T18:28:06Z"
        },
        {
          "tag": "v5.1.1",
          "kind": "patch",
          "published_at": "2025-06-11T04:36:36Z"
        },
        {
          "tag": "v5.1.0",
          "kind": "minor",
          "published_at": "2025-06-10T21:37:19Z"
        },
        {
          "tag": "v5.0.1",
          "kind": "patch",
          "published_at": "2025-06-05T12:00:03Z"
        },
        {
          "tag": "v5.0.0",
          "kind": "major",
          "published_at": "2025-06-04T04:16:21Z"
        },
        {
          "tag": "v4.2.1",
          "kind": "patch",
          "published_at": "2025-05-27T04:23:36Z"
        },
        {
          "tag": "v4.2.0",
          "kind": "minor",
          "published_at": "2025-05-26T21:50:00Z"
        },
        {
          "tag": "v4.1.0",
          "kind": "minor",
          "published_at": "2025-05-23T05:24:16Z"
        },
        {
          "tag": "v4.0.0",
          "kind": "major",
          "published_at": "2025-05-17T05:13:43Z"
        },
        {
          "tag": "v3.7.0",
          "kind": "minor",
          "published_at": "2025-04-21T04:56:29Z"
        },
        {
          "tag": "v3.6.1",
          "kind": "patch",
          "published_at": "2025-04-14T23:20:11Z"
        },
        {
          "tag": "v3.6.0",
          "kind": "minor",
          "published_at": "2025-04-10T01:56:33Z"
        },
        {
          "tag": "v3.6.0-rc.3",
          "kind": "prerelease",
          "published_at": "2025-04-10T01:52:02Z"
        },
        {
          "tag": "v3.6.0-rc.2",
          "kind": "prerelease",
          "published_at": "2025-04-09T23:49:20Z"
        },
        {
          "tag": "v3.6.0-rc.1",
          "kind": "prerelease",
          "published_at": "2025-04-09T22:35:47Z"
        },
        {
          "tag": "v3.5.0",
          "kind": "minor",
          "published_at": "2025-03-17T04:11:58Z"
        },
        {
          "tag": "v3.5.0-rc.2",
          "kind": "prerelease",
          "published_at": "2025-03-12T03:59:21Z"
        },
        {
          "tag": "v3.5.0-rc.1",
          "kind": "prerelease",
          "published_at": "2025-03-11T00:21:43Z"
        },
        {
          "tag": "v3.4.1-rc.1",
          "kind": "prerelease",
          "published_at": "2025-03-09T01:10:37Z"
        },
        {
          "tag": "v3.4.0",
          "kind": "minor",
          "published_at": "2025-02-21T15:01:44Z"
        },
        {
          "tag": "v3.3.0",
          "kind": "minor",
          "published_at": "2025-02-17T21:21:23Z"
        },
        {
          "tag": "v3.3.0-rc.3",
          "kind": "prerelease",
          "published_at": "2025-02-17T20:55:34Z"
        },
        {
          "tag": "v3.3.0-rc.2",
          "kind": "prerelease",
          "published_at": "2025-01-12T19:34:54Z"
        },
        {
          "tag": "v3.3.0-rc.1",
          "kind": "prerelease",
          "published_at": "2025-01-12T19:28:54Z"
        },
        {
          "tag": "v3.2.0",
          "kind": "minor",
          "published_at": "2024-12-17T05:47:32Z"
        },
        {
          "tag": "v3.1.1",
          "kind": "patch",
          "published_at": "2024-12-17T05:39:19Z"
        },
        {
          "tag": "v3.2.0-rc.1",
          "kind": "prerelease",
          "published_at": "2024-12-17T05:13:12Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2024-12-13T18:50:49Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2024-12-07T21:08:33Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2024-10-17T02:37:45Z"
        },
        {
          "tag": "v2.0.2",
          "kind": "patch",
          "published_at": "2024-10-10T19:18:57Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2024-10-10T19:07:09Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2024-08-07T02:21:43Z"
        },
        {
          "tag": "v2.0.0-rc.1",
          "kind": "prerelease",
          "published_at": "2024-08-06T02:46:56Z"
        },
        {
          "tag": "v1.5.0",
          "kind": "minor",
          "published_at": "2024-04-29T02:43:13Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2024-04-23T03:50:12Z"
        },
        {
          "tag": "v1.3.3",
          "kind": "patch",
          "published_at": "2024-04-17T20:43:39Z"
        },
        {
          "tag": "v1.3.2",
          "kind": "patch",
          "published_at": "2024-04-17T16:45:33Z"
        },
        {
          "tag": "v1.3.1",
          "kind": "patch",
          "published_at": "2024-04-17T02:59:38Z"
        },
        {
          "tag": "v1.3.0",
          "kind": "minor",
          "published_at": "2024-04-17T02:31:26Z"
        },
        {
          "tag": "v1.3.0-rc.1",
          "kind": "prerelease",
          "published_at": "2024-04-17T02:27:25Z"
        },
        {
          "tag": "v1.2.0-rc.2",
          "kind": "prerelease",
          "published_at": "2024-04-17T00:17:32Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2024-04-16T04:30:58Z"
        },
        {
          "tag": "v1.2.0-rc.1",
          "kind": "prerelease",
          "published_at": "2024-04-16T04:28:18Z"
        },
        {
          "tag": "v1.1.2",
          "kind": "patch",
          "published_at": "2024-04-10T23:25:41Z"
        },
        {
          "tag": "v1.1.1-rc.3",
          "kind": "prerelease",
          "published_at": "2024-04-10T23:21:27Z"
        },
        {
          "tag": "v1.1.1-rc.2",
          "kind": "prerelease",
          "published_at": "2024-04-10T21:30:22Z"
        },
        {
          "tag": "v1.1.1",
          "kind": "patch",
          "published_at": "2024-04-10T20:05:58Z"
        },
        {
          "tag": "v1.1.1-rc.1",
          "kind": "prerelease",
          "published_at": "2024-04-10T19:54:20Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2024-04-10T02:47:21Z"
        },
        {
          "tag": "v1.0.0-rc.8",
          "kind": "prerelease",
          "published_at": "2024-04-10T02:42:23Z"
        },
        {
          "tag": "v1.0.0",
          "kind": "major",
          "published_at": "2024-04-08T17:31:19Z"
        },
        {
          "tag": "v1.0.0-rc.7",
          "kind": "prerelease",
          "published_at": "2024-04-08T14:36:58Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "152f134a42d2367bc23144826defe6fda7733583",
          "body": "Phase 3 of the open-PR cleanup: four contributor fixes that were correct\nbut tied to the pre-FastAPI `legacy` code or an older `main`,\nreimplemented on current `main` with tests. Each commit credits the\noriginal author.\n\n- **#258** (@schemaitat) — deduplicate `group_names` in\n`set_groups_for_user` (\n[…]\nrs.noreply.github.com>\nCo-authored-by: Claude Opus 4.8 <noreply@anthropic.com>\nCo-authored-by: stergem <stergem@users.noreply.github.com>\nCo-authored-by: ivanmanan <ivanmanan@users.noreply.github.com>",
          "is_bot": false,
          "headline": "fix: land rebased contributor fixes (#258, #148, #225, #157) (#266)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-07-24T02:20:30Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "09da726b54526e77f7c0b46825f98b0d5f80926a",
          "body": "…etches (#265)\n\nLands #246 (by @remidebette... — original author's commit preserved)\nrebased onto current `main`, plus a one-line test fix: the\n`_get_oidc_jwks` request stubs in `test_auth_module.py` needed to accept\nthe new `timeout=` kwarg. Adds `OIDC_HTTP_TIMEOUT_SECONDS` (default 10)\nso a hung I\n[…]\n\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\n---------\n\nCo-authored-by: Remi DEBETTE <r.debette@instadeep.com>\nCo-authored-by: Claude Opus 4.7 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(auth): add configurable HTTP timeout on OIDC discovery and JWKS f…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-07-24T02:13:17Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "c2ea34355fa7b44e3fc2d313f9cf46a68cab4a1e",
          "body": "…jumpcloud auth) (#234)\n\nFixes #214 \n\nIf the groups value is a string (single group), wrap it in a list.\n\nI can confirm that this does solve the issue. Currently we are running\nthis code via patching this function on startup.",
          "is_bot": false,
          "headline": "fix: process groups into a list when groups value is a string (fixes …",
          "author_name": "Flynn",
          "author_login": "crflynn",
          "committed_at": "2026-07-24T02:11:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9789871d8e989df5dac79d684cd35e8c012bcdf1",
          "body": "# Summary\nThis pull request fixes the RP-initiated logout flow, which currently\nfails against Keycloak (and other strict OpenID providers) with the\nerror page \"Missing parameters: id_token_hint\".\n\nWhen redirecting to the provider's end_session_endpoint, the logout\nhandler only appended post_logout_r\n[…]\nh.py, tests/routers/test_auth.py), including the\ntwo updated logout tests. black reports no formatting changes.\n\nFixes the \"Missing parameters: id_token_hint\" logout failure reported\nagainst Keycloak.",
          "is_bot": false,
          "headline": "fix(logout): add clientId parameter for Keycloak (#256)",
          "author_name": "Guillaume Leroy",
          "author_login": "leroyguillaume",
          "committed_at": "2026-07-24T02:11:05Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0060025754a38d8275941e4685bcf7e804d3c545",
          "body": "Adds opt-in guards for workspace-enabled deployments.\n\nWhen workspaces are enabled, create requests with an explicit workspace\nare checked against workspace permissions. Clients that do not send\nworkspace context could still fall through the legacy path and create\nexperiments or registered models ou\n[…]\n settled.\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\n---------\n\nCo-authored-by: Alexander Kharkevich <alex@kharkevich.org>\nCo-authored-by: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(workspaces): guard resource creation (#260)",
          "author_name": "AK",
          "author_login": "Iyalvan",
          "committed_at": "2026-07-24T01:57:31Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "0363f7823a7e85bceaa1426eb36900d66c33bf0d",
          "body": "…skip ci] (#264)\n\nSplit out of #260. These holes exist on `main` today and have nothing to\ndo with workspace creation guards, so they should not wait on that\nreview.\n\n> **Stacked on #263** (mlflow 3.14 compat), because `main` currently\nfails CI and the fix for that lives there. Base retargets to `ma\n[…]\nts own PR; each route needs the right\nvalidator, not a blanket deny.\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\n---------\n\nCo-authored-by: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(security): guard endpoints reachable without a permission check […",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-07-24T01:30:51Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e3af9f32cf91ce49d0b1cbb0839c5644f73fd2fa",
          "body": "Splits the MLflow compatibility work out of #260 so it can be reviewed\non its own.\n\n`main` currently fails CI. Six tests break against the dependency\nversions CI resolves, and two of those failures are a real runtime bug,\nnot test drift.\n\n### Read-only sessions are a production break\n\nMLflow's `Mana\n[…]\now implementation.\n\nFull suite passes locally against mlflow 3.14.0.\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\n---------\n\nCo-authored-by: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "build: support mlflow 3.14 and raise the floor (#263)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-07-24T01:30:10Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3d653999848f54bc062bc89737fe8e47cf54c2bc",
          "body": "## Summary\n\nFollow-up to #249. The session re-auth feature injects a small fetch/XHR\ninterceptor into MLflow's `index.html` from\n`mlflow_oidc_auth/hack/reauth.html`, but that file was never listed in\n`[tool.setuptools.package-data]`. Editable installs (and the test suite)\nwork because the file exist\n[…]\npire session → SPA auto-redirects to\n`/login?next=<original-path>`\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\nCo-authored-by: Claude Opus 4.7 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(packaging): ship hack/reauth.html in the wheel (#255)",
          "author_name": "Rémi Debette",
          "author_login": "remidebette",
          "committed_at": "2026-05-22T19:32:53Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "c9d54aedd3abfd73c785c2de9768fe3e163e7da7",
          "body": null,
          "is_bot": false,
          "headline": "feat: menu and permission fixes (#254)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-13T02:08:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4077bc32aacfecc06369baecaed2c4ef8f54dbd8",
          "body": "…on name",
          "is_bot": false,
          "headline": "fix(auth-page): update copyright notice to reflect correct organizati…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-13T01:40:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "24a52f095500060c9ec56f928d0be3b3a5a9b831",
          "body": null,
          "is_bot": false,
          "headline": "feat: add contributing guidelines and notice file; update README footer",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-13T01:08:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9064ca3176e757c648c00199d0fc6ea806ddaa78",
          "body": null,
          "is_bot": false,
          "headline": "fix: update project descriptions and add disclaimer to documentation",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-13T00:38:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e35d891265c2eca6df26411807f149cfd7281499",
          "body": "…ng tests",
          "is_bot": false,
          "headline": "feat(gateway): add support for gateway creation paths and correspondi…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-13T00:25:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b1f7852d688c566e5b0144b7884fcf68e6af89a2",
          "body": null,
          "is_bot": false,
          "headline": "fix(menu): improve menu anchor selection and item reordering logic",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-13T00:24:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89520dbf6e45eae28ffb8404752ece4ceca5e16c",
          "body": null,
          "is_bot": false,
          "headline": "fix: update health check endpoint in run-dev-server script",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-13T00:24:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5440c0774c78d25e5e1b621b32df5f44105e5154",
          "body": "Closes #242.\n\n## Summary\n\nOnce a user completed the OIDC login flow, their session lasted up to\n~14 days regardless of any IdP-side change (deactivation, group/MFA\nchanges, password resets, etc.) because only `username` was persisted\nand Starlette's `SessionMiddleware` fell back to its default cooki\n[…]\nClaude Code](https://claude.com/claude-code)\n\n---------\n\nCo-authored-by: Claude Opus 4.7 (1M context) <noreply@anthropic.com>\nCo-authored-by: Alexander Kharkevich <kharkevich@users.noreply.github.com>",
          "is_bot": false,
          "headline": "feat(auth): re-authenticate sessions against IdP token expiry (#249)",
          "author_name": "Rémi Debette",
          "author_login": "remidebette",
          "committed_at": "2026-05-12T16:10:32Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a1181877ee5c557c83283c94d5617606a28fd596",
          "body": "When token validation fails, the bearer/basic auth handlers log only the\nexception class name with no message, traceback, URL, or token claim.\nOperators investigating intermittent 401s cannot tell apart token\nexpiry, JWKS network errors, signature mismatch, or claim issues — all\ncollapse to the same\n[…]\ng tests and callers are unaffected.\n- <del>`auth.py`: add a 10s timeout on the OIDC discovery and JWKS HTTP\ncalls.<del>\n\n---------\n\nCo-authored-by: Claude Opus 4.7 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix: improve auth-failure diagnostics (#243)",
          "author_name": "Rémi Debette",
          "author_login": "remidebette",
          "committed_at": "2026-05-06T16:12:13Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3db2ea9b210691a19965a4299f0da0564e20121a",
          "body": "…vs update behaviour (#245)\n\nclarify #240\n\nCo-authored-by: Copilot <copilot@github.com>",
          "is_bot": false,
          "headline": "docs: update workspace permissions documentation to clarify creation …",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-05-01T14:48:26Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "f7e7a45faed743839f8d5c1734a64c4e50299e80",
          "body": "Allow users to [configure Starlette\nSessionMiddleware](https://www.starlette.dev/middleware/#sessionmiddleware)\ncookies. The default values mirror Starlette's default to maintain the\nexisting behavior.",
          "is_bot": false,
          "headline": "feat: extend Starlette SessionMiddleware config (#232)",
          "author_name": "Jacky Lam",
          "author_login": "jackylamhk",
          "committed_at": "2026-05-01T13:28:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e101c4e817ce74f576aca2409ad60f78053b7ce3",
          "body": "I ran into this same issue -\nhttps://github.com/mlflow-oidc/mlflow-oidc-auth/issues/236.\n\nThe original regex expects the experiment-id to be the first value in\nthe artifact path e.g.\n\n```\n{experiment-id}/{other information}...\n```\nWhen workspaces are enabled the path changes to \n```\nworkspaces/{workspace-name}/{experiment-id}/..\n```",
          "is_bot": false,
          "headline": "fix: get experiment-id for workspace enabled paths (#237)",
          "author_name": "Joanne Shin",
          "author_login": "jlshin",
          "committed_at": "2026-04-20T23:02:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8bee7e0eb33559cfc77e0fb2642b2e5b0024af41",
          "body": "Co-authored-by: Alexander Kharkevich <kharkevich@users.noreply.github.com>",
          "is_bot": false,
          "headline": "fix: add back missing api doc setting (#233)",
          "author_name": "Jacky Lam",
          "author_login": "jackylamhk",
          "committed_at": "2026-04-14T00:12:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "adef829dd8e14146444e872b8a22845be87c3e26",
          "body": "For non-admin users, workspace enabled I am seeing the following\n\"Permission Denied\" message in the UI that does not seem relevant to\nanything. I believe it comes from incorrectly extracting the gateway\nname.\n\n<img width=\"1233\" height=\"975\" alt=\"image\"\nsrc=\"https://github.com/user-attachments/assets/47c5f2f2-338d-4a9e-a997-c648535b0946\"\n/>",
          "is_bot": false,
          "headline": "fix: permission denied for non-admins (#235)",
          "author_name": "Joanne Shin",
          "author_login": "jlshin",
          "committed_at": "2026-04-13T18:45:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f540e82f78800573a1fceb861f55d87b63a4f94",
          "body": null,
          "is_bot": false,
          "headline": "fix(ci): fix plugin installation",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-03-30T17:35:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f31c259b33ace607559878181f94a33a7ecee041",
          "body": "BREAKING CHANGE: workspaces support\n\n- **docs: add codebase mapping for project planning**\n- **docs: initialize project**\n- **chore: add project config**\n- **docs: complete project research**\n- **docs: define v1 requirements**\n- **docs: create roadmap (4 phases)**\n- **docs(01): generate context from\n[…]\n management UI infrastructure and\nnavigation**\n- **feat(ui): add workspace list and detail pages with member\nmanagement**\n- **docs(phase-04): mark phase 4 and milestone complete in roadmap and\nstate**",
          "is_bot": false,
          "headline": "feat: workspace support (#230)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-03-30T17:28:42Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f523c006952e5eb4b004070983a4e86f38e2e7f5",
          "body": null,
          "is_bot": false,
          "headline": "fix: fix logger configuration",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-02-24T20:18:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "14c2443e1d2b291df5e1510d88c1686dd5980967",
          "body": "Co-authored-by: Olga Kharkevich <olga.kharkevich@gmail.com>",
          "is_bot": false,
          "headline": "feat: add AI gateway permission management (#196)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-02-23T19:08:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "26ea42b0bf7505b640227bad9b7982bb8c4f7cce",
          "body": "## Description (Updated after Copilot review):\nThis PR fixes issue #198 by ensuring all API calls and navigation\nproperly handle the basePath from runtime config.\n\n## Changes\n\n**1. BasePath-aware API calls**\nUpdated services and components to use `resolveUrl` for proper basePath\nprefixing:\n- Access \n[…]\nh the following dockerfile:\n```dockerfile\nFROM ghcr.io/mlflow-oidc/mlflow-tracking-server:3.9.0-6.6.4-20260130\nCOPY mlflow_oidc_auth/ui/ /mlflow/.venv/lib/python3.12/site-packages/mlflow_oidc_auth/ui/",
          "is_bot": false,
          "headline": "fix: prefix relative URLs with runtime config base path (#199)",
          "author_name": "Korel",
          "author_login": "Korel",
          "committed_at": "2026-02-10T03:41:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "788f9c8c05feb651200ee72054edcc82093797d6",
          "body": null,
          "is_bot": false,
          "headline": "fix: web react code improvements (#193)",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-28T15:19:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37752076c19047aa188fcda66e26996079635c6a",
          "body": null,
          "is_bot": false,
          "headline": "fix: align exception response (#192)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-27T21:17:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8dde22a82cd208d479ea9ca118124b70c65e5cf0",
          "body": null,
          "is_bot": false,
          "headline": "fix: improve internal security and stability (#191)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-27T15:16:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2f7f7283843db6e3b5e849a5d3a2505eb7fee786",
          "body": null,
          "is_bot": false,
          "headline": "fix: ui & ux styles alignment (#190)",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-27T03:56:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5a907c5686f7b3de2c7f6238b009a03055f48b0a",
          "body": null,
          "is_bot": false,
          "headline": "feat: webhook management UI (#182)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-22T21:45:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d429585e7f8187195caf7e8afc746c516f5bcca",
          "body": null,
          "is_bot": false,
          "headline": "refactor: improve accessibility, state management, and UI consistency",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-22T21:31:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8cf66d3b42d8bb8400a12ff6b079f4b879b186c5",
          "body": null,
          "is_bot": false,
          "headline": "chore: formatting",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-22T20:58:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2cd6590dd7f8b52f5084588c755d4474c5a434d4",
          "body": null,
          "is_bot": false,
          "headline": "refactor: implement silent updates and optimize status toggling",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-22T20:56:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3261eb5262ce2cf7d5fa188ee9d1c943f69d5164",
          "body": null,
          "is_bot": false,
          "headline": "feat: enhance OIDC authentication flow, fix #180 (#184)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-22T05:53:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ee547245e001846d6bd0c5f7078dddd9760528c2",
          "body": "…ndling",
          "is_bot": false,
          "headline": "feat: add webhook secret encryption key handling and related error ha…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-22T04:56:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5053bcf83f3cc111e44df7256e3c197f9f4f6fdc",
          "body": null,
          "is_bot": false,
          "headline": "feat: update the authentication page and the sidebar (#183)",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-22T04:24:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "53285b45484490ff1b7907fb0226e4e4f1aa4263",
          "body": null,
          "is_bot": false,
          "headline": "refactor: extract WebhookForm component and add tests",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-21T20:13:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "edfc95228a9ce1423eede705056c350d441f5789",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement webhook editing and refine URL validation",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-21T18:24:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "88edce54941d9a4bf2d7a7f5353fcc51d9581479",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement webhook creation and deletion with UI modals",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-20T22:08:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "80db4ad25396936e8d25228ef8e761b9dda70afd",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement Webhooks page and data integration",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-20T19:23:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0c01c9283d3c123b61c612b7b518e67ff17dde5f",
          "body": null,
          "is_bot": false,
          "headline": "fix: update webhook endpoint paths to remove trailing slashes",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-20T19:06:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8b3e80c12c9cd20155843ce96762372332b2f946",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement webhook management service and tests",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-20T16:41:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff644023d15ce7bb75f7a20e460e4e2e29957586",
          "body": null,
          "is_bot": false,
          "headline": "ci: refine SonarQube configuration (#179)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-17T15:10:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f45bc2a1f212f7778684bd75d598300fe848cc28",
          "body": null,
          "is_bot": false,
          "headline": "ci: update SonarCloud Scan condition",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-17T05:31:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "23f2d5b4a508d5e27b689d22ceabe81846bb6738",
          "body": null,
          "is_bot": false,
          "headline": "test: fix test run (#178)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-17T05:11:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d00e823927e6133fc10daf8f0cdc282158f42f4",
          "body": null,
          "is_bot": false,
          "headline": "test: add UI unit and integration tests (#177)",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-17T04:07:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "106a1f2680f72257567a069fe73567170095db01",
          "body": null,
          "is_bot": false,
          "headline": "test: add new unit and integration tests, refactor existing tests",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-17T04:03:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "13ae499179c73af0cd06dc74ef59d73c66a5e643",
          "body": null,
          "is_bot": false,
          "headline": "test: add unit tests for  components, pages, hooks, and services",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-17T03:28:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8cc475f11993d10ef83c29254125366f7851847a",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement trash page functionality with route-based tabs (#176)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-17T01:29:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e38f2a674efa99bac7e500d39c1900bfa557931d",
          "body": null,
          "is_bot": false,
          "headline": "feat: add Experiment ID column to the trash page table",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-17T01:28:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "679e8b3b77a9e4055f9f8a649f071d269cafb420",
          "body": null,
          "is_bot": false,
          "headline": "feat: add permanent delete confirmation modal",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-17T01:04:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8e019d1c292d4cf842b268caf8b6794d6437e4a8",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement trash page functionality with route-based tabs",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-16T21:49:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7d020c8d437992f40b00eb877e3077424952fcad",
          "body": null,
          "is_bot": false,
          "headline": "feat: update table component to support ReactNode headers",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-16T21:48:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "683effdb49e0ee8898c556a709b7b0a6f5205b23",
          "body": null,
          "is_bot": false,
          "headline": "feat: add hooks for trash page",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-16T21:37:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "149dd87002c922b11ca587308250c67465f79b38",
          "body": null,
          "is_bot": false,
          "headline": "feat: add danger-outline button variant",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-16T21:35:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "92eb8b0a58fc4d792b79cbd1fc619929ec9ebb03",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement batch permission resolution (#175)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-16T21:06:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f89104575e91d41d42de26b7f003a946bfdf6466",
          "body": null,
          "is_bot": false,
          "headline": "feat: implement trash management services and endpoints",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-16T17:30:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "acf4c955fe8ada937180c02bf0e1490adadd09c7",
          "body": "…ivity verification, fix #174",
          "is_bot": false,
          "headline": "fix: enhance OIDC integration with health checks and database connect…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-16T15:23:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f047a8c3e68ebd36dca2582746ff7a092ad634c",
          "body": null,
          "is_bot": false,
          "headline": "chore: update copilot instructions [skip ci]",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-16T14:49:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "341372e869025d198182a061289a4efa696b2633",
          "body": null,
          "is_bot": false,
          "headline": "fix: include UI assets in package",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-14T15:14:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f2b2163a2a8d06d5d35470f1771c5ba4f19902c",
          "body": "…ion [skip ci]",
          "is_bot": false,
          "headline": "chore: update funding information to reflect correct GitHub organizat…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-13T15:55:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ec1b20126c2c60304ee609029a5902cf372cd75",
          "body": null,
          "is_bot": false,
          "headline": "feat: release now!",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-13T04:07:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "93dd0e562e9168c7eefed1923619efc70682c5a3",
          "body": null,
          "is_bot": false,
          "headline": "feat: pluggable configuration provider",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-13T04:04:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc644a39f3151cd99bc594ff3d386e10313fb4a8",
          "body": null,
          "is_bot": false,
          "headline": "feat: add todo",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-12T22:16:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "81587afef7a3908d465ba09bb34e02ee2b289ee7",
          "body": "…lity",
          "is_bot": false,
          "headline": "refactor: integration tests for user permissions and scorer functiona…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-12T22:08:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6972aa83f7375ff2eb3c2557dd7e5298f0abef29",
          "body": null,
          "is_bot": false,
          "headline": "feat: enhance OIDC token handling with retry logic and JWKS refresh",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-12T18:40:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4bfa88645de1ec5be02050b462f3b762a1cf9fd2",
          "body": null,
          "is_bot": false,
          "headline": "test: add integration test draft",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-12T02:11:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "25880afd86f76a2cf2ee2143aeba7c8b793a9ae6",
          "body": null,
          "is_bot": false,
          "headline": "chore: update copilot guidlines",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-11T23:25:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8e2dd3fdd6e332141d638ce92a583dafff6f093b",
          "body": null,
          "is_bot": false,
          "headline": "ci: update GitHub workflows to consider new UI location",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-11T23:10:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0d77919070520ae43dce80f9613497930a9ab21",
          "body": null,
          "is_bot": false,
          "headline": "test: add UI testing foundation",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-11T20:39:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0586c2318b37aa30441062173edc4d8a94fac8a",
          "body": null,
          "is_bot": false,
          "headline": "chore: remove old web-ui",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-11T20:06:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c9f28cd09fe80461b5ccd95a7a7b843aa4f2daae",
          "body": null,
          "is_bot": false,
          "headline": "feat: replace UI with new React SPA (#172)",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-11T20:01:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bcc6ddb446d92dadf3005446577ec39e490e30dd",
          "body": "…organization",
          "is_bot": false,
          "headline": "feat: update tags for group and user permission endpoints for better …",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-10T04:36:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "af0360e50e56fbe363b28294b08df35a2d0d802c",
          "body": "…ns for clarity",
          "is_bot": false,
          "headline": "feat: update webhook event types in documentation and model definitio…",
          "author_name": "Alexander Kharkevich",
          "author_login": "kharkevich",
          "committed_at": "2026-01-10T04:20:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ebff292fab2f4cd339f33c38ea7a0efaecabaa22",
          "body": null,
          "is_bot": false,
          "headline": "feat: update app title and header logo",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c10bfc528c13ed6eb81d281a5566f52f52427c4a",
          "body": null,
          "is_bot": false,
          "headline": "feat: add app favicons and manifest",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d6364bbfabe89a3d8423f653bfa73e8c2100741a",
          "body": null,
          "is_bot": false,
          "headline": "feat: improve modal and input contrast in light/dark modes",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b656d8b33da5c204fe4754e4413f71449f618992",
          "body": null,
          "is_bot": false,
          "headline": "refactor: add shared Input/Select components, update modals",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b89ad0f661301c81527e070c68853256b4c111b4",
          "body": null,
          "is_bot": false,
          "headline": "refactor: extract shared Modal component and update existing modals",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98efd5a38de1449201e6ba87d829adbffc03489a",
          "body": null,
          "is_bot": false,
          "headline": "style: remove unnecessary styles from TokenInfoBlock",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "604079b5ebfa7a946abe9e10b54899f62126da4b",
          "body": null,
          "is_bot": false,
          "headline": "feat: add validation and improve error handling in AddRegexRuleModal",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4e2e5bb2a9a72fd71ca86f1753e1c891c937b637",
          "body": null,
          "is_bot": false,
          "headline": "feat: replace regex mode button with switch component",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0107b7cdb381e88ba22ee47b990dcdc577cecd95",
          "body": null,
          "is_bot": false,
          "headline": "feat: add buttons to grant entity permissions for groups",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a45dcc42bf9c01139af9a68421710575d69b9a3c",
          "body": null,
          "is_bot": false,
          "headline": "feat: improve group permission handling and modal title logic",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "49acfb6e5878f1cddc5c2ca58ca5f085485fd2c2",
          "body": null,
          "is_bot": false,
          "headline": "feat: add modal for adding regex pattern",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4963f7b8eb55329f56382b266769583e10d5701a",
          "body": "…rs and groups",
          "is_bot": false,
          "headline": "feat: add regex mode and pattern-based permissions management for use…",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e80af830fb47508785f04479199f41801648dd7f",
          "body": null,
          "is_bot": false,
          "headline": "feat: add hooks and fetchers for user and group pattern permissions",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00ca1ffe819423c57ff0ab7a508d7f5a57a70738",
          "body": "…usage for brevity",
          "is_bot": false,
          "headline": "refactor: rename registered model permission API endpoints and their …",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d70ae6b1d57732c5e4259a1ab7880042ffba96b5",
          "body": null,
          "is_bot": false,
          "headline": "fix: restrict user details fetching to admin users only",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e6ea58c114298a91c7fd3fb9df53175ddfb068e0",
          "body": null,
          "is_bot": false,
          "headline": "refactor: rename permission `type` property to `kind`",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d000db9c75f73cd6346d12470f997503f944fc1f",
          "body": null,
          "is_bot": false,
          "headline": "refactor: remove unused group members API endpoint",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "576f220abf8db310386d28d98b954a415195d90c",
          "body": null,
          "is_bot": false,
          "headline": "fix: remove URL encoding from permission tab navigation",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d5525dae44404c395d1607c240e5e4b2a18c5ea",
          "body": "…issions",
          "is_bot": false,
          "headline": "feat: implement full group permissions management mirroring user perm…",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc8ede576582e8635175cbbcde8fd7a838fa9c72",
          "body": null,
          "is_bot": false,
          "headline": "feat: add riutes for group permissions",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "03b46e059ade79e2e542496cb3f77ae4adaa6727",
          "body": null,
          "is_bot": false,
          "headline": "feat: add hooks and fetchers for groups permissions",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be24f87fdbeb8aba9755a7104a563bf899186cf0",
          "body": null,
          "is_bot": false,
          "headline": "refactor: remove DynamicPathParams type",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ce992f894096846c2038f88bf819b91d827bddba",
          "body": null,
          "is_bot": false,
          "headline": "feat: update API endpoints for groups",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "177d62fb74271df3d943d4e2ab9613db50efd99b",
          "body": "…missions pages",
          "is_bot": false,
          "headline": "feat: add `TokenInfoBlock` component, update user page and manage par…",
          "author_name": "Olga Kharkevich",
          "author_login": "olgakharkevich",
          "committed_at": "2026-01-10T03:57:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 100,
      "commits_last_year": 308,
      "latest_release_at": "2026-07-24T02:21:30Z",
      "latest_release_tag": "v7.3.5",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 32,
      "days_since_latest_release": 0,
      "mean_days_between_releases": 10.5
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 87,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "mlflow-oidc-auth",
          "exists": true,
          "license": "Apache-2.0",
          "keywords": [
            "mlflow",
            "oauth2",
            "oidc",
            "Development Status :: 5 - Production/Stable",
            "Intended Audience :: Developers",
            "Intended Audience :: End Users/Desktop",
            "Intended Audience :: Information Technology",
            "Intended Audience :: Science/Research",
            "Operating System :: OS Independent",
            "Programming Language :: Python :: 3.10",
            "Topic :: Scientific/Engineering :: Artificial Intelligence",
            "Topic :: Software Development :: Libraries :: Python Modules"
          ],
          "ecosystem": "pypi",
          "matches_repo": true,
          "registry_url": "https://pypi.org/project/mlflow-oidc-auth/",
          "is_deprecated": false,
          "latest_version": "7.3.5",
          "repository_url": "https://github.com/mlflow-oidc/mlflow-oidc-auth",
          "versions_count": 73,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": "2024-04-08T17:31:57.872602Z",
          "latest_published_at": "2026-07-24T02:22:02.376825Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 0
        }
      ]
    },
    "popularity": {
      "forks": 57,
      "stars": 123,
      "watchers": 7,
      "fork_history": {
        "days": [
          {
            "date": "2024-04-08",
            "count": 1
          },
          {
            "date": "2024-04-09",
            "count": 1
          },
          {
            "date": "2024-04-22",
            "count": 1
          },
          {
            "date": "2024-05-29",
            "count": 1
          },
          {
            "date": "2024-06-07",
            "count": 1
          },
          {
            "date": "2024-08-10",
            "count": 1
          },
          {
            "date": "2024-08-22",
            "count": 1
          },
          {
            "date": "2024-10-02",
            "count": 1
          },
          {
            "date": "2024-11-12",
            "count": 1
          },
          {
            "date": "2024-11-25",
            "count": 2
          },
          {
            "date": "2024-12-10",
            "count": 1
          },
          {
            "date": "2024-12-11",
            "count": 1
          },
          {
            "date": "2024-12-16",
            "count": 1
          },
          {
            "date": "2025-01-23",
            "count": 1
          },
          {
            "date": "2025-02-27",
            "count": 1
          },
          {
            "date": "2025-03-10",
            "count": 1
          },
          {
            "date": "2025-04-09",
            "count": 1
          },
          {
            "date": "2025-06-19",
            "count": 1
          },
          {
            "date": "2025-06-24",
            "count": 1
          },
          {
            "date": "2025-07-04",
            "count": 1
          },
          {
            "date": "2025-07-08",
            "count": 1
          },
          {
            "date": "2025-07-11",
            "count": 1
          },
          {
            "date": "2025-08-01",
            "count": 1
          },
          {
            "date": "2025-08-29",
            "count": 1
          },
          {
            "date": "2025-09-04",
            "count": 1
          },
          {
            "date": "2025-09-05",
            "count": 1
          },
          {
            "date": "2025-09-19",
            "count": 1
          },
          {
            "date": "2025-09-26",
            "count": 1
          },
          {
            "date": "2025-11-14",
            "count": 1
          },
          {
            "date": "2025-11-19",
            "count": 1
          },
          {
            "date": "2025-11-22",
            "count": 1
          },
          {
            "date": "2025-11-27",
            "count": 1
          },
          {
            "date": "2025-12-02",
            "count": 1
          },
          {
            "date": "2025-12-16",
            "count": 1
          },
          {
            "date": "2026-01-17",
            "count": 1
          },
          {
            "date": "2026-01-23",
            "count": 1
          },
          {
            "date": "2026-01-24",
            "count": 1
          },
          {
            "date": "2026-01-29",
            "count": 1
          },
          {
            "date": "2026-02-02",
            "count": 2
          },
          {
            "date": "2026-02-09",
            "count": 1
          },
          {
            "date": "2026-02-11",
            "count": 1
          },
          {
            "date": "2026-03-05",
            "count": 1
          },
          {
            "date": "2026-03-18",
            "count": 1
          },
          {
            "date": "2026-04-10",
            "count": 1
          },
          {
            "date": "2026-04-13",
            "count": 1
          },
          {
            "date": "2026-04-16",
            "count": 1
          },
          {
            "date": "2026-04-28",
            "count": 1
          },
          {
            "date": "2026-05-08",
            "count": 1
          },
          {
            "date": "2026-06-12",
            "count": 1
          },
          {
            "date": "2026-06-23",
            "count": 1
          },
          {
            "date": "2026-06-24",
            "count": 1
          },
          {
            "date": "2026-06-26",
            "count": 1
          },
          {
            "date": "2026-07-09",
            "count": 1
          },
          {
            "date": "2026-07-10",
            "count": 1
          },
          {
            "date": "2026-07-22",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 57,
        "total_forks": 57
      },
      "star_history": null,
      "open_issues_and_prs": 50
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "notebooks"
      ],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "web-react/tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 126517,
      "source_files_sampled": 609,
      "oversized_source_files": 4,
      "agent_instruction_files": [
        ".github/copilot-instructions.md",
        ".github/instructions/python.instructions.md",
        ".github/instructions/react.instructions.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 26538
    },
    "dependencies": {
      "manifests": [
        "pyproject.toml",
        "web-react/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "flatted",
            "direct": false,
            "version": "3.3.3",
            "severity": "critical",
            "ecosystem": "npm",
            "cvss_score": 9.8,
            "advisory_ids": [
              "GHSA-25h7-pfq9-p65f",
              "GHSA-rf6f-7fwh-wjgh"
            ],
            "fixed_version": "3.4.2",
            "advisory_count": 2,
            "oldest_advisory_days": 132
          },
          {
            "name": "vitest",
            "direct": false,
            "version": "4.0.16",
            "severity": "critical",
            "ecosystem": "npm",
            "cvss_score": 9.8,
            "advisory_ids": [
              "GHSA-5xrq-8626-4rwp"
            ],
            "fixed_version": "4.1.0",
            "advisory_count": 1,
            "oldest_advisory_days": 52
          },
          {
            "name": "react-router",
            "direct": true,
            "version": "7.12.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 8.1,
            "advisory_ids": [
              "GHSA-2j2x-hqr9-3h42",
              "GHSA-337j-9hxr-rhxg",
              "GHSA-49rj-9fvp-4h2h",
              "GHSA-84g9-w2xq-vcv6",
              "GHSA-8646-j5j9-6r62",
              "GHSA-8x6r-g9mw-2r78",
              "GHSA-f22v-gfqf-p8f3",
              "GHSA-h8fp-f39c-q6mh",
              "GHSA-jjmj-jmhj-qwj2",
              "GHSA-rxv8-25v2-qmq8"
            ],
            "fixed_version": "7.18.0",
            "advisory_count": 11,
            "oldest_advisory_days": 50
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.12",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp",
              "GHSA-f886-m6hf-6m8v"
            ],
            "fixed_version": "5.0.7",
            "advisory_count": 2,
            "oldest_advisory_days": 119
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "2.0.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp",
              "GHSA-f886-m6hf-6m8v"
            ],
            "fixed_version": "5.0.7",
            "advisory_count": 2,
            "oldest_advisory_days": 119
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "4.1.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-52cp-r559-cp3m",
              "GHSA-h67p-54hq-rp68"
            ],
            "fixed_version": "4.3.0",
            "advisory_count": 2,
            "oldest_advisory_days": 38
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "3.1.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23c5-xmqv-rm74",
              "GHSA-3ppc-4f35-3m26",
              "GHSA-7r86-cg39-jmmj"
            ],
            "fixed_version": "10.2.3",
            "advisory_count": 3,
            "oldest_advisory_days": 155
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "9.0.5",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23c5-xmqv-rm74",
              "GHSA-3ppc-4f35-3m26",
              "GHSA-7r86-cg39-jmmj"
            ],
            "fixed_version": "10.2.3",
            "advisory_count": 3,
            "oldest_advisory_days": 155
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "2.3.1",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3v7f-55p6-f55p",
              "GHSA-c2c7-rcm5-vvqj"
            ],
            "fixed_version": "4.0.4",
            "advisory_count": 2,
            "oldest_advisory_days": 120
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "4.0.3",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3v7f-55p6-f55p",
              "GHSA-c2c7-rcm5-vvqj"
            ],
            "fixed_version": "4.0.4",
            "advisory_count": 2,
            "oldest_advisory_days": 120
          },
          {
            "name": "postcss",
            "direct": false,
            "version": "8.5.6",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-6g55-p6wh-862q",
              "GHSA-qx2v-qp2m-jg93"
            ],
            "fixed_version": "8.5.12",
            "advisory_count": 2,
            "oldest_advisory_days": 90
          },
          {
            "name": "ws",
            "direct": false,
            "version": "8.19.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-58qx-3vcg-4xpx",
              "GHSA-96hv-2xvq-fx4p"
            ],
            "fixed_version": "8.21.0",
            "advisory_count": 2,
            "oldest_advisory_days": 66
          },
          {
            "name": "dompurify",
            "direct": true,
            "version": "3.3.1",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 6.9,
            "advisory_ids": [
              "GHSA-39q2-94rc-95cp",
              "GHSA-76mc-f452-cxcm",
              "GHSA-c2j3-45gr-mqc4",
              "GHSA-cj63-jhhr-wcxv",
              "GHSA-cjmm-f4jc-qw8r",
              "GHSA-cmwh-pvxp-8882",
              "GHSA-crv5-9vww-q3g8",
              "GHSA-gvmj-g25r-r7wr",
              "GHSA-h7mw-gpvr-xq4m",
              "GHSA-h8r8-wccr-v5f2"
            ],
            "fixed_version": "3.4.12",
            "advisory_count": 17,
            "oldest_advisory_days": 142
          },
          {
            "name": "ajv",
            "direct": false,
            "version": "6.12.6",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-2g4f-4pwh-qvx6"
            ],
            "fixed_version": "8.18.0",
            "advisory_count": 1,
            "oldest_advisory_days": 162
          },
          {
            "name": "@babel/core",
            "direct": false,
            "version": "7.28.5",
            "severity": "low",
            "ecosystem": "npm",
            "cvss_score": 3.2,
            "advisory_ids": [
              "GHSA-4x5r-pxfx-6jf8"
            ],
            "fixed_version": "8.0.0-rc.6",
            "advisory_count": 1,
            "oldest_advisory_days": 38
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "low": 1,
          "high": 10,
          "critical": 2,
          "moderate": 2
        },
        "advisory_count": 53,
        "affected_count": 15,
        "assessed_count": 392,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 24,
        "direct_affected_count": 2
      },
      "ecosystems": [
        "npm",
        "pypi"
      ],
      "dependencies": [
        {
          "name": "mlflow",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<4,>=3.14.0"
        },
        {
          "name": "python-dotenv",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<2"
        },
        {
          "name": "requests",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<3,>=2.32.5"
        },
        {
          "name": "sqlalchemy",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<3,>=2.0.46"
        },
        {
          "name": "flask",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<4"
        },
        {
          "name": "gunicorn",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<24"
        },
        {
          "name": "alembic",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<2,!=1.18.4"
        },
        {
          "name": "authlib",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": "<2"
        },
        {
          "name": "uvicorn",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">=0.41.0"
        },
        {
          "name": "fastapi",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">=0.132.0"
        },
        {
          "name": "asgiref",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">=3.11.1"
        },
        {
          "name": "httpx",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">=0.28.1"
        },
        {
          "name": "cachetools",
          "manifest": "pyproject.toml",
          "ecosystem": "pypi",
          "version_constraint": ">=5.5.0"
        },
        {
          "name": "@fortawesome/fontawesome-svg-core",
          "manifest": "web-react/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.1.0"
        },
        {
          "name": "@fortawesome/free-solid-svg-icons",
          "manifest": "web-react/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.1.0"
        },
        {
          "name": "@fortawesome/react-fontawesome",
          "manifest": "web-react/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.0"
        },
        {
          "name": "dompurify",
          "manifest": "web-react/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.3.0"
        },
        {
          "name": "react",
          "manifest": "web-react/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.1"
        },
        {
          "name": "react-dom",
          "manifest": "web-react/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.1"
        },
        {
          "name": "react-router",
          "manifest": "web-react/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.9.3"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "@fortawesome/fontawesome-svg-core",
            "direct": true,
            "version": "7.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@fortawesome/free-solid-svg-icons",
            "direct": true,
            "version": "7.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@fortawesome/react-fontawesome",
            "direct": true,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "dompurify",
            "direct": true,
            "version": "3.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "react",
            "direct": true,
            "version": "19.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "react-dom",
            "direct": true,
            "version": "19.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "react-router",
            "direct": true,
            "version": "7.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "alembic",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "asgiref",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "authlib",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "cachetools",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "fastapi",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "flask",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "gunicorn",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "httpx",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "mlflow",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "python-dotenv",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "requests",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "sqlalchemy",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "uvicorn",
            "direct": true,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "@acemir/cssom",
            "direct": false,
            "version": "0.9.30",
            "ecosystem": "npm"
          },
          {
            "name": "@adobe/css-tools",
            "direct": false,
            "version": "4.4.4",
            "ecosystem": "npm"
          },
          {
            "name": "@asamuzakjp/css-color",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@asamuzakjp/dom-selector",
            "direct": false,
            "version": "6.7.6",
            "ecosystem": "npm"
          },
          {
            "name": "@asamuzakjp/nwsapi",
            "direct": false,
            "version": "2.3.9",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/code-frame",
            "direct": false,
            "version": "7.27.1",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/compat-data",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/core",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/generator",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-compilation-targets",
            "direct": false,
            "version": "7.27.2",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-globals",
            "direct": false,
            "version": "7.28.0",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-module-imports",
            "direct": false,
            "version": "7.27.1",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-module-transforms",
            "direct": false,
            "version": "7.28.3",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-string-parser",
            "direct": false,
            "version": "7.27.1",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-identifier",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-option",
            "direct": false,
            "version": "7.27.1",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helpers",
            "direct": false,
            "version": "7.28.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/runtime",
            "direct": false,
            "version": "7.28.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/template",
            "direct": false,
            "version": "7.27.2",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/traverse",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@bcoe/v8-coverage",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/color-helpers",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-calc",
            "direct": false,
            "version": "2.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-color-parser",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-parser-algorithms",
            "direct": false,
            "version": "3.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-syntax-patches-for-csstree",
            "direct": false,
            "version": "1.0.25",
            "ecosystem": "npm"
          },
          {
            "name": "@csstools/css-tokenizer",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/core",
            "direct": false,
            "version": "1.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/runtime",
            "direct": false,
            "version": "1.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/wasi-threads",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint-community/eslint-utils",
            "direct": false,
            "version": "4.9.1",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint-community/regexpp",
            "direct": false,
            "version": "4.12.2",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint-react/ast",
            "direct": false,
            "version": "2.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint-react/core",
            "direct": false,
            "version": "2.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint-react/eff",
            "direct": false,
            "version": "2.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint-react/shared",
            "direct": false,
            "version": "2.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint-react/var",
            "direct": false,
            "version": "2.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint/config-array",
            "direct": false,
            "version": "0.21.1",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint/config-helpers",
            "direct": false,
            "version": "0.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint/core",
            "direct": false,
            "version": "0.17.0",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint/eslintrc",
            "direct": false,
            "version": "3.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint/js",
            "direct": false,
            "version": "9.39.2",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint/object-schema",
            "direct": false,
            "version": "2.1.7",
            "ecosystem": "npm"
          },
          {
            "name": "@eslint/plugin-kit",
            "direct": false,
            "version": "0.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "@exodus/bytes",
            "direct": false,
            "version": "1.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "@fortawesome/fontawesome-common-types",
            "direct": false,
            "version": "7.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@humanfs/core",
            "direct": false,
            "version": "0.19.1",
            "ecosystem": "npm"
          },
          {
            "name": "@humanfs/node",
            "direct": false,
            "version": "0.16.7",
            "ecosystem": "npm"
          },
          {
            "name": "@humanwhocodes/module-importer",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@humanwhocodes/retry",
            "direct": false,
            "version": "0.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "@jest/diff-sequences",
            "direct": false,
            "version": "30.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@jest/expect-utils",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@jest/get-type",
            "direct": false,
            "version": "30.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@jest/pattern",
            "direct": false,
            "version": "30.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@jest/schemas",
            "direct": false,
            "version": "30.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jest/types",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/gen-mapping",
            "direct": false,
            "version": "0.3.13",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/remapping",
            "direct": false,
            "version": "2.3.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/resolve-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/sourcemap-codec",
            "direct": false,
            "version": "1.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/trace-mapping",
            "direct": false,
            "version": "0.3.31",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/wasm-runtime",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-project/runtime",
            "direct": false,
            "version": "0.101.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-project/types",
            "direct": false,
            "version": "0.101.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-android-arm64",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-arm64",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-x64",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-freebsd-x64",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-gnu",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-musl",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-gnu",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-musl",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-openharmony-arm64",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-wasm32-wasi",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-arm64-msvc",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-x64-msvc",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/pluginutils",
            "direct": false,
            "version": "1.0.0-beta.47",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/pluginutils",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "@sinclair/typebox",
            "direct": false,
            "version": "0.34.47",
            "ecosystem": "npm"
          },
          {
            "name": "@standard-schema/spec",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-darwin-arm64",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-darwin-x64",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-linux-arm64-gnu",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-linux-arm64-musl",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-linux-x64-gnu",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-linux-x64-musl",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-win32-arm64-msvc",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-win32-ia32-msvc",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/core-win32-x64-msvc",
            "direct": false,
            "version": "1.15.8",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/counter",
            "direct": false,
            "version": "0.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "@swc/types",
            "direct": false,
            "version": "0.1.25",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/node",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-android-arm64",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-darwin-arm64",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-darwin-x64",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-freebsd-x64",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-linux-arm-gnueabihf",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-linux-arm64-gnu",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-linux-arm64-musl",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-linux-x64-gnu",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-linux-x64-musl",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-wasm32-wasi",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-win32-arm64-msvc",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/oxide-win32-x64-msvc",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@tailwindcss/vite",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "@testing-library/dom",
            "direct": false,
            "version": "10.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "@testing-library/jest-dom",
            "direct": false,
            "version": "6.9.1",
            "ecosystem": "npm"
          },
          {
            "name": "@testing-library/react",
            "direct": false,
            "version": "16.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "@testing-library/user-event",
            "direct": false,
            "version": "14.6.1",
            "ecosystem": "npm"
          },
          {
            "name": "@tybys/wasm-util",
            "direct": false,
            "version": "0.10.1",
            "ecosystem": "npm"
          },
          {
            "name": "@types/aria-query",
            "direct": false,
            "version": "5.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/chai",
            "direct": false,
            "version": "5.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/deep-eql",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/estree",
            "direct": false,
            "version": "1.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "@types/istanbul-lib-coverage",
            "direct": false,
            "version": "2.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "@types/istanbul-lib-report",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/istanbul-reports",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/jest",
            "direct": false,
            "version": "30.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/jsdom",
            "direct": false,
            "version": "27.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/json-schema",
            "direct": false,
            "version": "7.0.15",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "25.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "@types/react",
            "direct": false,
            "version": "19.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "@types/react-dom",
            "direct": false,
            "version": "19.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/stack-utils",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/tough-cookie",
            "direct": false,
            "version": "4.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@types/trusted-types",
            "direct": false,
            "version": "2.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "@types/yargs",
            "direct": false,
            "version": "17.0.35",
            "ecosystem": "npm"
          },
          {
            "name": "@types/yargs-parser",
            "direct": false,
            "version": "21.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/eslint-plugin",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/parser",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/project-service",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/scope-manager",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/tsconfig-utils",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/type-utils",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/types",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/typescript-estree",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/utils",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@typescript-eslint/visitor-keys",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "@vitejs/plugin-react-swc",
            "direct": false,
            "version": "4.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/coverage-v8",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/expect",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/mocker",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/pretty-format",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/runner",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/snapshot",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/spy",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/utils",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "acorn",
            "direct": false,
            "version": "8.15.0",
            "ecosystem": "npm"
          },
          {
            "name": "acorn-jsx",
            "direct": false,
            "version": "5.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "agent-base",
            "direct": false,
            "version": "7.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "ajv",
            "direct": false,
            "version": "6.12.6",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "5.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "argparse",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "aria-query",
            "direct": false,
            "version": "5.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "aria-query",
            "direct": false,
            "version": "5.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "assertion-error",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ast-v8-to-istanbul",
            "direct": false,
            "version": "0.3.10",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "baseline-browser-mapping",
            "direct": false,
            "version": "2.9.14",
            "ecosystem": "npm"
          },
          {
            "name": "bidi-js",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "birecord",
            "direct": false,
            "version": "0.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.12",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "braces",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "browserslist",
            "direct": false,
            "version": "4.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "callsites",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "caniuse-lite",
            "direct": false,
            "version": "1.0.30001764",
            "ecosystem": "npm"
          },
          {
            "name": "chai",
            "direct": false,
            "version": "6.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "chalk",
            "direct": false,
            "version": "4.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "ci-info",
            "direct": false,
            "version": "4.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "color-convert",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "color-name",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "compare-versions",
            "direct": false,
            "version": "6.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "concat-map",
            "direct": false,
            "version": "0.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "convert-source-map",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cookie",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "css-tree",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "css.escape",
            "direct": false,
            "version": "1.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "cssstyle",
            "direct": false,
            "version": "5.3.7",
            "ecosystem": "npm"
          },
          {
            "name": "csstype",
            "direct": false,
            "version": "3.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "data-urls",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "decimal.js",
            "direct": false,
            "version": "10.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "deep-is",
            "direct": false,
            "version": "0.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "dequal",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "detect-libc",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "dom-accessibility-api",
            "direct": false,
            "version": "0.5.16",
            "ecosystem": "npm"
          },
          {
            "name": "dom-accessibility-api",
            "direct": false,
            "version": "0.6.3",
            "ecosystem": "npm"
          },
          {
            "name": "electron-to-chromium",
            "direct": false,
            "version": "1.5.267",
            "ecosystem": "npm"
          },
          {
            "name": "enhanced-resolve",
            "direct": false,
            "version": "5.18.4",
            "ecosystem": "npm"
          },
          {
            "name": "entities",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "es-module-lexer",
            "direct": false,
            "version": "1.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "escalade",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "escape-string-regexp",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "escape-string-regexp",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "eslint",
            "direct": false,
            "version": "9.39.2",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-config-prettier",
            "direct": false,
            "version": "10.1.8",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-plugin-react-dom",
            "direct": false,
            "version": "2.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-plugin-react-hooks",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-plugin-react-refresh",
            "direct": false,
            "version": "0.4.26",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-plugin-react-x",
            "direct": false,
            "version": "2.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-scope",
            "direct": false,
            "version": "8.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-visitor-keys",
            "direct": false,
            "version": "3.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "eslint-visitor-keys",
            "direct": false,
            "version": "4.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "espree",
            "direct": false,
            "version": "10.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "esquery",
            "direct": false,
            "version": "1.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "esrecurse",
            "direct": false,
            "version": "4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "estraverse",
            "direct": false,
            "version": "5.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "estree-walker",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "esutils",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "expect",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "expect-type",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "fast-deep-equal",
            "direct": false,
            "version": "3.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "fast-json-stable-stringify",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "fast-levenshtein",
            "direct": false,
            "version": "2.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "fdir",
            "direct": false,
            "version": "6.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "file-entry-cache",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fill-range",
            "direct": false,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "find-up",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "flat-cache",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "flatted",
            "direct": false,
            "version": "3.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "fsevents",
            "direct": false,
            "version": "2.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "gensync",
            "direct": false,
            "version": "1.0.0-beta.2",
            "ecosystem": "npm"
          },
          {
            "name": "glob-parent",
            "direct": false,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "globals",
            "direct": false,
            "version": "14.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "globals",
            "direct": false,
            "version": "17.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "graceful-fs",
            "direct": false,
            "version": "4.2.11",
            "ecosystem": "npm"
          },
          {
            "name": "has-flag",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "hermes-estree",
            "direct": false,
            "version": "0.25.1",
            "ecosystem": "npm"
          },
          {
            "name": "hermes-parser",
            "direct": false,
            "version": "0.25.1",
            "ecosystem": "npm"
          },
          {
            "name": "html-encoding-sniffer",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "html-escaper",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "http-proxy-agent",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "https-proxy-agent",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "ignore",
            "direct": false,
            "version": "5.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "ignore",
            "direct": false,
            "version": "7.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "import-fresh",
            "direct": false,
            "version": "3.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "imurmurhash",
            "direct": false,
            "version": "0.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "indent-string",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-extglob",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-glob",
            "direct": false,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "is-immutable-type",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-number",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-potential-custom-element-name",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-coverage",
            "direct": false,
            "version": "3.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-report",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-source-maps",
            "direct": false,
            "version": "5.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-reports",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jest-diff",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jest-matcher-utils",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jest-message-util",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jest-mock",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jest-regex-util",
            "direct": false,
            "version": "30.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "jest-util",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jiti",
            "direct": false,
            "version": "2.6.1",
            "ecosystem": "npm"
          },
          {
            "name": "js-tokens",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "js-tokens",
            "direct": false,
            "version": "9.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "jsdom",
            "direct": false,
            "version": "27.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "jsesc",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-buffer",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-traverse",
            "direct": false,
            "version": "0.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "json-stable-stringify-without-jsonify",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "json5",
            "direct": false,
            "version": "2.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "keyv",
            "direct": false,
            "version": "4.5.4",
            "ecosystem": "npm"
          },
          {
            "name": "levn",
            "direct": false,
            "version": "0.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-android-arm64",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-arm64",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-x64",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-freebsd-x64",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-gnu",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-musl",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-gnu",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-musl",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-arm64-msvc",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-x64-msvc",
            "direct": false,
            "version": "1.30.2",
            "ecosystem": "npm"
          },
          {
            "name": "locate-path",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "lodash.merge",
            "direct": false,
            "version": "4.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "11.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "5.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "lz-string",
            "direct": false,
            "version": "1.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "magic-string",
            "direct": false,
            "version": "0.30.21",
            "ecosystem": "npm"
          },
          {
            "name": "magicast",
            "direct": false,
            "version": "0.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "make-dir",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "mdn-data",
            "direct": false,
            "version": "2.12.2",
            "ecosystem": "npm"
          },
          {
            "name": "micromatch",
            "direct": false,
            "version": "4.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "min-indent",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "9.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "nanoid",
            "direct": false,
            "version": "3.3.11",
            "ecosystem": "npm"
          },
          {
            "name": "natural-compare",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-releases",
            "direct": false,
            "version": "2.0.27",
            "ecosystem": "npm"
          },
          {
            "name": "obug",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "optionator",
            "direct": false,
            "version": "0.9.4",
            "ecosystem": "npm"
          },
          {
            "name": "p-limit",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "p-locate",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "parent-module",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "parse5",
            "direct": false,
            "version": "7.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "parse5",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "path-exists",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "path-key",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "pathe",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "picocolors",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "2.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "postcss",
            "direct": false,
            "version": "8.5.6",
            "ecosystem": "npm"
          },
          {
            "name": "prelude-ls",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "prettier",
            "direct": false,
            "version": "3.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "pretty-format",
            "direct": false,
            "version": "27.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "pretty-format",
            "direct": false,
            "version": "30.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "punycode",
            "direct": false,
            "version": "2.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "react-is",
            "direct": false,
            "version": "17.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "react-is",
            "direct": false,
            "version": "18.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "redent",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "require-from-string",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "resolve-from",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "rolldown",
            "direct": false,
            "version": "1.0.0-beta.53",
            "ecosystem": "npm"
          },
          {
            "name": "rolldown-vite",
            "direct": false,
            "version": "7.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "saxes",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "scheduler",
            "direct": false,
            "version": "0.27.0",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "6.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.7.3",
            "ecosystem": "npm"
          },
          {
            "name": "set-cookie-parser",
            "direct": false,
            "version": "2.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-command",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "siginfo",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "slash",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "source-map-js",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "stack-utils",
            "direct": false,
            "version": "2.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "stackback",
            "direct": false,
            "version": "0.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "std-env",
            "direct": false,
            "version": "3.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "string-ts",
            "direct": false,
            "version": "2.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-indent",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "supports-color",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "symbol-tree",
            "direct": false,
            "version": "3.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "tailwindcss",
            "direct": false,
            "version": "4.1.18",
            "ecosystem": "npm"
          },
          {
            "name": "tapable",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinybench",
            "direct": false,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinyexec",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "tinyglobby",
            "direct": false,
            "version": "0.2.15",
            "ecosystem": "npm"
          },
          {
            "name": "tinyrainbow",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "tldts",
            "direct": false,
            "version": "7.0.19",
            "ecosystem": "npm"
          },
          {
            "name": "tldts-core",
            "direct": false,
            "version": "7.0.19",
            "ecosystem": "npm"
          },
          {
            "name": "to-regex-range",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "tough-cookie",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tr46",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ts-api-utils",
            "direct": false,
            "version": "2.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "ts-declaration-location",
            "direct": false,
            "version": "1.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "ts-pattern",
            "direct": false,
            "version": "5.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "tslib",
            "direct": false,
            "version": "2.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "type-check",
            "direct": false,
            "version": "0.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.9.3",
            "ecosystem": "npm"
          },
          {
            "name": "typescript-eslint",
            "direct": false,
            "version": "8.52.0",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "7.16.0",
            "ecosystem": "npm"
          },
          {
            "name": "update-browserslist-db",
            "direct": false,
            "version": "1.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "uri-js",
            "direct": false,
            "version": "4.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "vitest",
            "direct": false,
            "version": "4.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "w3c-xmlserializer",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "webidl-conversions",
            "direct": false,
            "version": "8.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "whatwg-mimetype",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "whatwg-url",
            "direct": false,
            "version": "15.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "why-is-node-running",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "word-wrap",
            "direct": false,
            "version": "1.2.5",
            "ecosystem": "npm"
          },
          {
            "name": "ws",
            "direct": false,
            "version": "8.19.0",
            "ecosystem": "npm"
          },
          {
            "name": "xml-name-validator",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "xmlchars",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "yocto-queue",
            "direct": false,
            "version": "0.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "zod",
            "direct": false,
            "version": "4.3.5",
            "ecosystem": "npm"
          },
          {
            "name": "zod-validation-error",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "autoflake",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "azure-identity",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "azure-keyvault-secrets",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "black",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "boto3",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "hvac",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pre-commit",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pytest",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pytest-asyncio",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "pytest-cov",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          },
          {
            "name": "redis",
            "direct": false,
            "version": null,
            "ecosystem": "pypi"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 416,
        "direct_count": 20,
        "indirect_count": 396
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 9,
        "merged_prs": 92,
        "open_issues": 41,
        "closed_ratio": 0.586,
        "closed_issues": 58,
        "closed_unmerged_prs": 51
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "olgakharkevich",
          "commits": 205,
          "avatar_url": "https://avatars.githubusercontent.com/u/60240612?v=4"
        },
        {
          "type": "User",
          "login": "kharkevich",
          "commits": 154,
          "avatar_url": "https://avatars.githubusercontent.com/u/9342585?v=4"
        },
        {
          "type": "User",
          "login": "jackylamhk",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/103398226?v=4"
        },
        {
          "type": "User",
          "login": "remidebette",
          "commits": 3,
          "avatar_url": "https://avatars.githubusercontent.com/u/16523229?v=4"
        },
        {
          "type": "User",
          "login": "justrp",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/1530812?v=4"
        },
        {
          "type": "User",
          "login": "jlshin",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/13280706?v=4"
        },
        {
          "type": "User",
          "login": "samhallam-reverb",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/122463481?v=4"
        },
        {
          "type": "User",
          "login": "mis-association",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/207034947?v=4"
        },
        {
          "type": "User",
          "login": "Korel",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/20456856?v=4"
        },
        {
          "type": "User",
          "login": "ion-elgreco",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/15728914?v=4"
        }
      ],
      "contributors_sampled": 16,
      "top_contributor_share": 0.539
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "bandit.yml",
        "commit-message-check.yml",
        "documentation.yaml",
        "pr-validate-title.yml",
        "pre-commit.yml",
        "pypi-test.yml",
        "pypi.yml",
        "unit-tests.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        "eslint.config.js",
        "tox.ini"
      ],
      "has_editorconfig": true,
      "has_linter_config": true,
      "has_precommit_config": true
    },
    "security_signals": {
      "lockfiles": [
        "yarn.lock"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 5,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 5,
            "reason": "Found 14/24 approved changesets -- score normalized to 5",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 5 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "19 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 5,
            "reason": "SAST tool is not run on all commits -- score normalized to 5",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 6,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "51 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "152f134a42d2367bc23144826defe6fda7733583",
        "ran_at": "2026-07-24T02:23:41Z",
        "aggregate_score": 6.1,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-24T02:20:54Z",
      "oldest_open_prs": [
        {
          "number": 81,
          "created_at": "2025-03-04T16:21:46Z",
          "last_comment_at": "2025-04-29T16:41:59Z",
          "last_comment_author": "gdiepen"
        },
        {
          "number": 86,
          "created_at": "2025-03-10T10:13:53Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 88,
          "created_at": "2025-03-13T16:24:08Z",
          "last_comment_at": "2025-06-05T14:01:48Z",
          "last_comment_author": "grudloffev"
        },
        {
          "number": 158,
          "created_at": "2025-11-22T20:44:06Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 187,
          "created_at": "2026-01-23T15:49:11Z",
          "last_comment_at": "2026-03-10T21:46:21Z",
          "last_comment_author": "vykozlov"
        },
        {
          "number": 189,
          "created_at": "2026-01-26T14:33:25Z",
          "last_comment_at": "2026-04-09T21:36:05Z",
          "last_comment_author": "geier"
        },
        {
          "number": 215,
          "created_at": "2026-02-24T19:49:51Z",
          "last_comment_at": "2026-03-02T16:05:04Z",
          "last_comment_author": "TheChristophe"
        },
        {
          "number": 247,
          "created_at": "2026-05-04T14:09:38Z",
          "last_comment_at": "2026-05-04T14:51:27Z",
          "last_comment_author": "remidebette"
        },
        {
          "number": 259,
          "created_at": "2026-06-24T15:14:15Z",
          "last_comment_at": "2026-06-24T15:58:43Z",
          "last_comment_author": "guillaume-thomas"
        }
      ],
      "last_merged_pr_at": "2026-07-24T02:20:31Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 43,
          "created_at": "2024-10-18T07:45:01Z",
          "last_comment_at": "2025-01-08T12:48:35Z",
          "last_comment_author": "hahahannes"
        },
        {
          "number": 50,
          "created_at": "2024-11-12T12:49:40Z",
          "last_comment_at": "2025-07-01T00:10:27Z",
          "last_comment_author": "kharkevich"
        },
        {
          "number": 51,
          "created_at": "2024-11-27T14:35:36Z",
          "last_comment_at": "2024-12-02T08:43:43Z",
          "last_comment_author": "celeriev"
        },
        {
          "number": 63,
          "created_at": "2024-12-17T09:39:13Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 64,
          "created_at": "2024-12-17T09:40:17Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 69,
          "created_at": "2025-01-08T14:24:44Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 71,
          "created_at": "2025-01-14T13:42:02Z",
          "last_comment_at": "2025-07-16T14:48:51Z",
          "last_comment_author": "mis-association"
        },
        {
          "number": 78,
          "created_at": "2025-02-27T12:44:42Z",
          "last_comment_at": "2025-02-27T17:10:18Z",
          "last_comment_author": "gdiepen"
        },
        {
          "number": 80,
          "created_at": "2025-02-28T15:39:46Z",
          "last_comment_at": "2025-03-11T16:06:24Z",
          "last_comment_author": "gdiepen"
        },
        {
          "number": 83,
          "created_at": "2025-03-07T14:40:36Z",
          "last_comment_at": "2025-08-05T06:20:59Z",
          "last_comment_author": "grudloffev"
        },
        {
          "number": 97,
          "created_at": "2025-03-31T03:23:51Z",
          "last_comment_at": "2025-05-15T14:08:13Z",
          "last_comment_author": "kimminw00"
        },
        {
          "number": 112,
          "created_at": "2025-05-28T08:14:32Z",
          "last_comment_at": "2026-03-18T10:33:01Z",
          "last_comment_author": "stergem"
        },
        {
          "number": 128,
          "created_at": "2025-07-11T12:49:08Z",
          "last_comment_at": "2025-08-05T16:27:29Z",
          "last_comment_author": "kharkevich"
        },
        {
          "number": 145,
          "created_at": "2025-09-05T13:04:55Z",
          "last_comment_at": "2025-10-14T15:13:31Z",
          "last_comment_author": "kharkevich"
        },
        {
          "number": 151,
          "created_at": "2025-10-13T16:33:14Z",
          "last_comment_at": "2026-02-12T13:24:15Z",
          "last_comment_author": "o-rodop"
        },
        {
          "number": 152,
          "created_at": "2025-10-16T08:47:16Z",
          "last_comment_at": "2025-10-16T13:52:00Z",
          "last_comment_author": "kharkevich"
        },
        {
          "number": 154,
          "created_at": "2025-10-24T08:06:50Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 155,
          "created_at": "2025-10-28T23:06:31Z",
          "last_comment_at": "2026-05-13T18:41:20Z",
          "last_comment_author": "kharkevich"
        },
        {
          "number": 159,
          "created_at": "2025-11-25T13:52:46Z",
          "last_comment_at": "2026-01-12T14:36:45Z",
          "last_comment_author": "kharkevich"
        },
        {
          "number": 160,
          "created_at": "2025-11-26T08:04:07Z",
          "last_comment_at": "2026-01-12T19:07:55Z",
          "last_comment_author": "kharkevich"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/mlflow-oidc/mlflow-oidc-auth",
    "host": "github.com",
    "name": "mlflow-oidc-auth",
    "owner": "mlflow-oidc"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "good",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 75,
      "inputs": {
        "security": 61,
        "vitality": 88,
        "community": 68,
        "governance": 59,
        "engineering": 96
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 88,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "excellent",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 86,
            "inputs": {
              "commits_last_year": 308,
              "human_commit_share": 1,
              "days_since_last_push": 0,
              "active_weeks_last_year": 32
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "32/52 weeks with commits",
                "points": 22.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 32
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "308 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 308
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "19 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 100,
              "latest_release_tag": "v7.3.5",
              "releases_from_tags": false,
              "days_since_latest_release": 0,
              "mean_days_between_releases": 10.5
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "100 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~10.5 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 10.5
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 0,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 0 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 68,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "moderate",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 53,
            "inputs": {
              "forks": 57,
              "stars": 123,
              "watchers": 7,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "123 stars",
                "points": 33.8,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 123
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "57 forks",
                "points": 14.6,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 57
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "7 watchers",
                "points": 4.3,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 7
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 59,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "at_risk",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 43,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 16,
              "top_contributor_share": 0.539
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 54% of commits",
                "points": 10.4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 54
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "16 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 16
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 5 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 60,
            "inputs": {
              "merged_prs": 92,
              "open_issues": 41,
              "closed_issues": 58,
              "issue_closed_ratio": 0.586,
              "closed_unmerged_prs": 51
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "59% of issues closed",
                "points": 27.4,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 59
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "92/143 decided PRs merged",
                "points": 24.6,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 92,
                      "decided": 143
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 14/24 approved changesets -- score normalized to 5",
                "points": 7.5,
                "status": "partial",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 46,
            "inputs": {
              "followers": 7,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "mlflow-oidc",
              "public_repos": 8,
              "account_age_days": 538
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "7 followers of mlflow-oidc",
                "points": 6.5,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 7,
                      "login": "mlflow-oidc"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "8 public repos, account ~1 yr old",
                "points": 9.9,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 8
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 1
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "mlflow-oidc-auth"
              ],
              "ecosystems": "pypi",
              "any_deprecated": false,
              "min_days_since_publish": 0
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on pypi",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "pypi"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 0 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "73 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 73
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 96,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "excellent",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": true,
              "has_precommit_config": true
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "8 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 8
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": "eslint.config.js, tox.ini",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "eslint.config.js, tox.ini"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 9.6,
                "status": "met",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "mlflow",
                "mlflow-tracking-server",
                "oauth2",
                "oidc",
                "permission-management",
                "sso",
                "machine-learning"
              ],
              "has_wiki": false,
              "homepage": "https://mlflow-oidc.github.io/mlflow-oidc-auth/",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://mlflow-oidc.github.io/mlflow-oidc-auth/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "7 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 7
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 61,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": null,
            "notes": [],
            "value": 62,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 18,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 0,
              "scorecard_aggregate": 6.1
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 3.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 14/24 approved changesets -- score normalized to 5",
                "points": 3.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 5 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "19 commit(s) and 4 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 5",
                "points": 2.5,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 4.5,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "51 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "moderate",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories. Remaining weights renormalized. Matched 392 resolved dependencies against OSV; 24 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 392
                }
              },
              {
                "code": "advisories_unassessed",
                "params": {
                  "count": 24
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 59,
            "inputs": {
              "source": "osv",
              "advisories": 53,
              "affected_packages": 15,
              "assessed_packages": 392,
              "unassessed_packages": 24,
              "affected_by_severity": "critical 2, high 10, moderate 2, low 1",
              "direct_affected_packages": 2
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "2 affected: react-router 7.12.0 (high 8.1), dompurify 3.3.1 (moderate 6.9)",
                "points": 10.5,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_affected",
                    "params": {
                      "count": 2,
                      "packages": "react-router 7.12.0 (high 8.1), dompurify 3.3.1 (moderate 6.9)"
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "1 advisory-carrying package(s) unaddressed past 90 days; oldest published 142 days ago",
                "points": 34.1,
                "status": "partial",
                "details": [
                  {
                    "code": "advisories_stale",
                    "params": {
                      "days": 90,
                      "count": 1,
                      "oldest": 142
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 392,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 13
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "moderate",
        "name": "AI Readiness",
        "value": 69,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [
                ".github/copilot-instructions.md",
                ".github/instructions/python.instructions.md",
                ".github/instructions/react.instructions.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 26538
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".github/copilot-instructions.md, .github/instructions/python.instructions.md, .github/instructions/react.instructions.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".github/copilot-instructions.md, .github/instructions/python.instructions.md, .github/instructions/react.instructions.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "100 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 100,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 64,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "yarn.lock"
              ],
              "has_dockerfile": true,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "web-react/tsconfig.json"
              ],
              "agent_commit_share": 0.09,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": "eslint.config.js, tox.ini",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "eslint.config.js, tox.ini"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "web-react/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "web-react/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "9 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 9,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "good",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 82,
            "inputs": {
              "primary_language": "Python",
              "largest_source_bytes": 126517,
              "source_files_sampled": 609,
              "oversized_source_files": 4
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Python with type-check config (web-react/tsconfig.json)",
                "points": 27,
                "status": "partial",
                "details": [
                  {
                    "code": "typecheck_config_language",
                    "params": {
                      "files": "web-react/tsconfig.json",
                      "language": "Python"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "4/609 source files over 60KB",
                "points": 54.6,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 609,
                      "oversized": 4
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "notebooks"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "notebooks",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "notebooks"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "deps.dev does not index pypi:mlflow-oidc-auth@7.3.5; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-24T02:24:04.243383Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/m/mlflow-oidc/mlflow-oidc-auth.svg",
  "full_name": "mlflow-oidc/mlflow-oidc-auth",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsPyPI.