Public record
Software health reportschema 0.27.0 · metrics 1.14.0 · 2026-08-01 18:12 UTC

multiformats / js-multiformats

Multiformats interface (multihash, multicodec, multibase and CID)

TypeScriptCustom license★ 266 stars⑂ 56 forkssince Apr 2020View on GitHub ↗

multiformats/js-multiformats holds a health index of 63 out of 100, placing it in the Moderate band. It scores highest on Sustainability & Governance (73/100) and lowest on AI Readiness (49/100). It was last updated 9 days ago. 2 contributors account for most of its recent work.

63
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean, calibrated against the distribution of the public record so bands carry percentile meaning; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At Risk ceiling of 34.

63
Exceptional93-100The record's top tier (≈ top 5%); essentially all checked criteria met
Excellent80-92Strong across the board; minor gaps
Good65-79Healthy; gaps are limited and manageable
Moderate50-64Acceptable with notable gaps; review recommended
Weak35-49Material weaknesses across several areas
At Risk20-34Significant weaknesses; adoption warrants caution
Critical1-19Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

MultiformatsOrganization
201 followers80 public repossince Jul 2016

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publishTags
npmmultiformats14.0.511,703,8241699 days agoipfsipldmultiformats

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

70Good · 22% of overall
How it's scored
28.8/36Push recency — last push 9 days ago
4.8/36Commit cadence — 7/52 weeks with commits
11.7/18Commit volume — 19 commits in the last year
10/10OpenSSF Scorecard: Maintained — 13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year19
human_commit_share0.75
days_since_last_push9
active_weeks_last_year7
How it's scored
27/27Ships releases — 60 releases published
36/36Release recency — latest release 9 days ago
19.8/27Release cadence — a release every ~45.3 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count60
latest_release_tagv14.0.5
releases_from_tagsno
days_since_latest_release9
mean_days_between_releases45.3
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

64Moderate · 18% of overall
How it's scored
39.3/60Stars — 266 stars
14.5/25Forks — 56 forks
6.5/15Watchers — 16 watchers
Inputs used
forks56
stars266
watchers16
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
16.9/22.5License — license file present, not a recognized license
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno
How it's scored
80/80Monthly downloads — 11,703,824 downloads/month across npm
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesmultiformats
dependents
ecosystemsnpm
total_downloads
monthly_downloads11,703,824
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

73Good · 24% of overall
How it's scored
25.2/54Bus factor — 2 contributor(s) cover half of all commits
16.5/22.5Commit distribution — top contributor authored 26% of commits
13.5/13.5Contributor breadth — 26 contributors
10/10OpenSSF Scorecard: Contributors — project has 44 contributing companies or organizations
Inputs used
bus_factor2
contributors_sampled26
top_contributor_share0.265
How it's scored
30.1/46.8Issue resolution — 64% of issues closed
29.5/38.3PR acceptance — 182/236 decided PRs merged
3/15OpenSSF Scorecard: Code-Review — Found 7/24 approved changesets -- score normalized to 2
Inputs used
merged_prs182
open_issues32
closed_issues58
issue_closed_ratio0.644
closed_unmerged_prs54
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
16.6/25Owner reach — 201 followers of multiformats
25/25Track record — 80 public repos, account ~10 yr old
Inputs used
followers201
owner_typeOrganization
is_verified
owner_loginmultiformats
public_repos80
account_age_days3,679
How it's scored
25/25Published & resolvable — 1 package(s) on npm
35/35Publish recency — latest publish 9 days ago
20/20Version history — 169 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesmultiformats
ecosystemsnpm
any_deprecatedno
min_days_since_publish9

Engineering Quality

Are baseline engineering and documentation practices in place?

52Moderate · 20% of overall
How it's scored
24/24CI workflows — 4 workflow(s)
24/24Tests present
0/16Linter config
0/9.6Pre-commit hooks
0/6.4.editorconfig
12/20OpenSSF Scorecard: CI-Tests — 10 out of 16 merged PRs checked by a CI test -- score normalized to 6
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configno
has_precommit_configno

Documentation

40At Risk
How it's scored
30/30README
0/25Documentation directory
0/15Documentation / homepage site
10/10Repository description
0/10Topics
0/10Wiki
Inputs used
topics
has_wikino
homepage
has_readmeyes
has_docs_dirno
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

52Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
1.5/2.5CI-Tests — 10 out of 16 merged PRs checked by a CI test -- score normalized to 6
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
1.5/7.5Code-Review — Found 7/24 approved changesets -- score normalized to 2
2.5/2.5Contributors — project has 44 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5License — license file detected
7.5/7.5Maintained — 13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate5.2
Excluded from scoring (no data or not applicable): packaging, signed_releases. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? Carries a deliberately small weight (4%): agent tooling is a real maintenance signal, but a repository with none can still reach 100/100.

49At Risk · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 74 of 75 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.987
agent_instruction_files
agent_instruction_max_bytes
How it's scored
0/18One-command bootstrap
22/22Automated tests
0/11Lint / format config
11/11Static type checking — tsconfig.json
0/10Reproducible environment
0/10Demonstrated agent practice — no agent-authored commits among the last 100
8/8Automated maintenance — 24 of the last 100 commits are automated dependency updates
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileno
typed_languageyes
bootstrap_files
has_devcontainerno
has_linter_configno
typecheck_configstsconfig.json
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0.24
How it's scored
45/45Type-checkable code — TypeScript (statically typed)
55/55Manageable file sizes — 0/50 source files over 60KB
Inputs used
primary_languageTypeScript
largest_source_bytes24,718
source_files_sampled50
oversized_source_files0
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — examples
Inputs used
example_dirsexamples
has_mcp_signalno
api_schema_files

Key facts

266GitHub stars
26contributors
19commits, last 12 months
9days since last push
60releases
2bus factor
32open issues
npmpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • No resolved dependencies carried a version and a supported ecosystem

More detail

Star and fork history 0 ★ / 56 ⇿
0Stars
56Forks
55Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

01020304050605432020-052023-052026-06
Major 5Minor 9Patch 41

Each point covers 6 days.

OpenSSF Scorecard 5.2 / 10
5.2aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-08-01 18:12 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
6CI-Tests10 out of 16 merged PRs checked by a CI test -- score normalized to 6
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
2Code-ReviewFound 7/24 approved changesets -- score normalized to 2
10Contributorsproject has 44 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
10Maintained13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
n/aSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
10Vulnerabilities0 existing vulnerabilities detected
All dependencies 6

Full resolved dependency set from the GitHub dependency graph: 0 direct and 6 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
npm@stablelib/sha256^2.0.0indirect
npm@stablelib/sha512^2.0.0indirect
npmaegir^48.0.1indirect
npmbuffer^6.0.3indirect
npmcids^1.1.9indirect
npmcrypto-hash^4.0.0indirect
Dependency advisories not assessed

Advisory matching could not run for this report: No resolved dependencies carried a version and a supported ecosystem

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 2921,
      "has_wiki": false,
      "homepage": null,
      "languages": {
        "TypeScript": 147689
      },
      "pushed_at": "2026-07-23T05:17:22Z",
      "created_at": "2020-04-22T00:58:33Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-23T05:17:03Z",
      "description": "Multiformats interface (multihash, multicodec, multibase and CID)",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "master",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "https://multiformats.io",
      "name": "Multiformats",
      "type": "Organization",
      "login": "multiformats",
      "company": null,
      "location": "Earth",
      "followers": 201,
      "avatar_url": "https://avatars.githubusercontent.com/u/20296538?v=4",
      "created_at": "2016-07-05T08:36:17Z",
      "is_verified": null,
      "public_repos": 80,
      "account_age_days": 3679
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v14.0.5",
          "kind": "patch",
          "published_at": "2026-07-23T05:17:11Z"
        },
        {
          "tag": "v14.0.4",
          "kind": "patch",
          "published_at": "2026-07-03T07:57:50Z"
        },
        {
          "tag": "v14.0.3",
          "kind": "patch",
          "published_at": "2026-06-30T10:44:52Z"
        },
        {
          "tag": "v14.0.2",
          "kind": "patch",
          "published_at": "2026-06-24T06:04:14Z"
        },
        {
          "tag": "v14.0.1",
          "kind": "patch",
          "published_at": "2026-06-24T05:47:27Z"
        },
        {
          "tag": "v14.0.0",
          "kind": "major",
          "published_at": "2026-05-07T06:28:20Z"
        },
        {
          "tag": "v13.4.2",
          "kind": "patch",
          "published_at": "2025-12-12T03:06:32Z"
        },
        {
          "tag": "v13.4.1",
          "kind": "patch",
          "published_at": "2025-09-15T06:00:37Z"
        },
        {
          "tag": "v13.4.0",
          "kind": "minor",
          "published_at": "2025-08-05T15:25:08Z"
        },
        {
          "tag": "v13.3.7",
          "kind": "patch",
          "published_at": "2025-06-10T10:54:39Z"
        },
        {
          "tag": "v13.3.6",
          "kind": "patch",
          "published_at": "2025-05-21T04:20:04Z"
        },
        {
          "tag": "v13.3.5",
          "kind": "patch",
          "published_at": "2025-05-20T03:02:47Z"
        },
        {
          "tag": "v13.3.4",
          "kind": "patch",
          "published_at": "2025-05-15T19:46:30Z"
        },
        {
          "tag": "v13.3.3",
          "kind": "patch",
          "published_at": "2025-05-08T17:26:58Z"
        },
        {
          "tag": "v13.3.2",
          "kind": "patch",
          "published_at": "2025-02-11T10:43:26Z"
        },
        {
          "tag": "v13.3.1",
          "kind": "patch",
          "published_at": "2024-10-29T23:28:35Z"
        },
        {
          "tag": "v13.3.0",
          "kind": "minor",
          "published_at": "2024-09-16T06:47:57Z"
        },
        {
          "tag": "v13.2.4",
          "kind": "patch",
          "published_at": "2024-09-16T01:57:10Z"
        },
        {
          "tag": "v13.2.3",
          "kind": "patch",
          "published_at": "2024-09-12T18:53:22Z"
        },
        {
          "tag": "v13.2.2",
          "kind": "patch",
          "published_at": "2024-07-30T00:36:01Z"
        },
        {
          "tag": "v13.2.1",
          "kind": "patch",
          "published_at": "2024-07-24T12:03:44Z"
        },
        {
          "tag": "v13.2.0",
          "kind": "minor",
          "published_at": "2024-07-22T06:17:10Z"
        },
        {
          "tag": "v13.1.3",
          "kind": "patch",
          "published_at": "2024-07-02T01:50:14Z"
        },
        {
          "tag": "v13.1.2",
          "kind": "patch",
          "published_at": "2024-07-02T01:41:16Z"
        },
        {
          "tag": "v13.1.1",
          "kind": "patch",
          "published_at": "2024-06-01T06:30:31Z"
        },
        {
          "tag": "v13.1.0",
          "kind": "minor",
          "published_at": "2024-02-15T14:12:21Z"
        },
        {
          "tag": "v13.0.1",
          "kind": "patch",
          "published_at": "2024-01-10T03:58:03Z"
        },
        {
          "tag": "v13.0.0",
          "kind": "major",
          "published_at": "2023-12-20T08:35:59Z"
        },
        {
          "tag": "v12.1.3",
          "kind": "patch",
          "published_at": "2023-10-25T00:07:22Z"
        },
        {
          "tag": "v12.1.2",
          "kind": "patch",
          "published_at": "2023-10-03T00:47:55Z"
        },
        {
          "tag": "v12.1.1",
          "kind": "patch",
          "published_at": "2023-09-05T08:34:12Z"
        },
        {
          "tag": "v12.1.0",
          "kind": "minor",
          "published_at": "2023-08-28T08:14:36Z"
        },
        {
          "tag": "v12.0.2",
          "kind": "patch",
          "published_at": "2023-08-28T07:52:27Z"
        },
        {
          "tag": "v12.0.1",
          "kind": "patch",
          "published_at": "2023-06-15T05:18:21Z"
        },
        {
          "tag": "v12.0.0",
          "kind": "major",
          "published_at": "2023-06-14T12:49:14Z"
        },
        {
          "tag": "v11.0.2",
          "kind": "patch",
          "published_at": "2023-03-09T07:46:11Z"
        },
        {
          "tag": "v11.0.1",
          "kind": "patch",
          "published_at": "2023-01-18T06:22:33Z"
        },
        {
          "tag": "v11.0.0",
          "kind": "major",
          "published_at": "2023-01-02T06:14:52Z"
        },
        {
          "tag": "v10.0.3",
          "kind": "patch",
          "published_at": "2022-12-16T09:32:25Z"
        },
        {
          "tag": "v10.0.2",
          "kind": "patch",
          "published_at": "2022-10-19T08:41:13Z"
        },
        {
          "tag": "v10.0.1",
          "kind": "patch",
          "published_at": "2022-10-17T21:49:48Z"
        },
        {
          "tag": "v10.0.0",
          "kind": "major",
          "published_at": "2022-10-12T01:57:56Z"
        },
        {
          "tag": "v9.9.0",
          "kind": "minor",
          "published_at": "2022-09-20T04:18:35Z"
        },
        {
          "tag": "v9.8.1",
          "kind": "patch",
          "published_at": "2022-09-06T03:42:59Z"
        },
        {
          "tag": "v9.8.0",
          "kind": "minor",
          "published_at": "2022-09-06T03:23:12Z"
        },
        {
          "tag": "v9.7.1",
          "kind": "patch",
          "published_at": "2022-07-26T00:18:58Z"
        },
        {
          "tag": "v9.7.0",
          "kind": "minor",
          "published_at": "2022-06-23T03:14:26Z"
        },
        {
          "tag": "v9.6.5",
          "kind": "patch",
          "published_at": "2022-05-06T01:15:21Z"
        },
        {
          "tag": "v9.6.4",
          "kind": "patch",
          "published_at": "2022-02-14T03:21:57Z"
        },
        {
          "tag": "v9.6.3",
          "kind": "patch",
          "published_at": "2022-02-04T15:39:52Z"
        },
        {
          "tag": "v9.6.2",
          "kind": "patch",
          "published_at": "2022-01-20T18:45:49Z"
        },
        {
          "tag": "v9.6.1",
          "kind": "patch",
          "published_at": "2022-01-20T00:49:10Z"
        },
        {
          "tag": "v9.6.0",
          "kind": "minor",
          "published_at": "2022-01-19T18:20:03Z"
        },
        {
          "tag": "v9.5.9",
          "kind": "patch",
          "published_at": "2022-01-18T21:35:26Z"
        },
        {
          "tag": "v9.5.8",
          "kind": "patch",
          "published_at": "2022-01-07T05:06:03Z"
        },
        {
          "tag": "v9.5.7",
          "kind": "patch",
          "published_at": "2022-01-07T04:39:36Z"
        },
        {
          "tag": "v9.5.6",
          "kind": "patch",
          "published_at": "2022-01-04T08:55:08Z"
        },
        {
          "tag": "v9.5.5",
          "kind": "patch",
          "published_at": "2022-01-04T06:43:53Z"
        },
        {
          "tag": "v9.5.4",
          "kind": "patch",
          "published_at": "2021-12-09T04:48:50Z"
        },
        {
          "tag": "v9.5.3",
          "kind": "patch",
          "published_at": "2021-12-09T04:40:05Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "0dcd129adb06743d5005245c0e39631f13b86251",
          "body": "## [14.0.5](https://github.com/multiformats/js-multiformats/compare/v14.0.4...v14.0.5) (2026-07-23)\n\n### Bug Fixes\n\n* reject non-minimally encoded varints ([#343](https://github.com/multiformats/js-multiformats/issues/343)) ([8ada774](https://github.com/multiformats/js-multiformats/commit/8ada77475dd32fec4f3e66d2cf48653544aa70c5))",
          "is_bot": false,
          "headline": "chore(release): 14.0.5 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2026-07-23T05:16:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8ada77475dd32fec4f3e66d2cf48653544aa70c5",
          "body": "Per the unsigned-varint spec, varints MUST be minimally encoded and\nMUST NOT exceed 9 bytes. `varint.decode` accepted non-minimal\nencodings such as `[0x81, 0x00]` for `1`, making CID and multihash\nprefixes malleable. Reject redundant final zero payload groups and\nvarints longer than 9 bytes.",
          "is_bot": false,
          "headline": "fix: reject non-minimally encoded varints (#343)",
          "author_name": "spokodev",
          "author_login": "spokodev",
          "committed_at": "2026-07-23T05:12:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a65b8ba50408d58d573d6af774aa5b21f0373db",
          "body": "## [14.0.4](https://github.com/multiformats/js-multiformats/compare/v14.0.3...v14.0.4) (2026-07-03)\n\n### Bug Fixes\n\n* allow specifying ByteView backing type ([#342](https://github.com/multiformats/js-multiformats/issues/342)) ([646249f](https://github.com/multiformats/js-multiformats/commit/646249f7424f934d61f9434a3b7f8800925fdd23))",
          "is_bot": false,
          "headline": "chore(release): 14.0.4 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2026-07-03T07:57:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "646249f7424f934d61f9434a3b7f8800925fdd23",
          "body": "Be explicit about the backing type as onward APIs often require\nArrayBuffers since the types for ArrayBuffer and SharedArrayBuffer\ndiverged.",
          "is_bot": false,
          "headline": "fix: allow specifying ByteView backing type (#342)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2026-07-03T07:53:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "079e760bb8f4dd1c41e15be130ee8630809fc817",
          "body": "## [14.0.3](https://github.com/multiformats/js-multiformats/compare/v14.0.2...v14.0.3) (2026-06-30)\n\n### Bug Fixes\n\n* constrain identity bytes to single characters ([#338](https://github.com/multiformats/js-multiformats/issues/338)) ([cb4eb32](https://github.com/multiformats/js-multiformats/commit/cb4eb32aa6d86ba4558146550f340f0191b21c76)), closes [#122](https://github.com/multiformats/js-multiformats/issues/122)",
          "is_bot": false,
          "headline": "chore(release): 14.0.3 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2026-06-30T10:44:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cb4eb32aa6d86ba4558146550f340f0191b21c76",
          "body": "Use the char code API to interpret bytes as single characters to instead of using lossy utf-8 conversion.\n\nFixes: #122",
          "is_bot": false,
          "headline": "fix: constrain identity bytes to single characters (#338)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2026-06-30T10:39:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1fa7547c880830b6ab2344b8a5caaccc1b17d6ad",
          "body": "## [14.0.2](https://github.com/multiformats/js-multiformats/compare/v14.0.1...v14.0.2) (2026-06-24)\n\n### Bug Fixes\n\n* verify CID hash before decoding in Block.create ([#340](https://github.com/multiformats/js-multiformats/issues/340)) ([6784d3e](https://github.com/multiformats/js-multiformats/commit/6784d3e498c15510c602aaccf2ee89e39df49ae0)), closes [#339](https://github.com/multiformats/js-multiformats/issues/339)",
          "is_bot": false,
          "headline": "chore(release): 14.0.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2026-06-24T06:04:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6784d3e498c15510c602aaccf2ee89e39df49ae0",
          "body": "Block.create is the verifying block constructor, but it decoded bytes\nbefore checking they matched the CID, so the codec parser ran on\nunverified, potentially untrusted input.\n\nHash and compare first, then delegate decoding to createUnsafe. Valid\nblocks are unchanged; bytes that do not match the CID\n[…]\nash\nmismatch error rather than possibly a codec error first.\n\nAdds a test asserting mismatched, codec-invalid bytes reject with the\nhash error.\n\nCloses #339\n\nSigned-off-by: tabcat <tabcat00@proton.me>",
          "is_bot": false,
          "headline": "fix: verify CID hash before decoding in Block.create (#340)",
          "author_name": "tabcat",
          "author_login": "tabcat",
          "committed_at": "2026-06-24T05:59:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "96407e332f6e184677dcabdec584e50a1c978cd4",
          "body": "## [14.0.1](https://github.com/multiformats/js-multiformats/compare/v14.0.0...v14.0.1) (2026-06-24)\n\n### Bug Fixes\n\n* case-insensitive decode for base16/base32/base36 (multibase spec) ([#341](https://github.com/multiformats/js-multiformats/issues/341)) ([ad87caa](https://github.com/multiformats/js-multiformats/commit/ad87caa13c0e72991d13c1fa6031e5e7409d9764))",
          "is_bot": false,
          "headline": "chore(release): 14.0.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2026-06-24T05:47:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad87caa13c0e72991d13c1fa6031e5e7409d9764",
          "body": "…) (#341)\n\nThe multibase registry marks base16, base32 (and all 8 variants) and\nbase36 as case-insensitive, and the spec's case_insensitivity.csv\nfixture requires their decoders to accept differently cased input\n\"without errors\". RFC 4648 section 3.4 backs this for base16/base32, and\ngo-multibase de\n[…]\nensitive flag from the rfc4648 and baseX factories so the decode\nlookup resolves both cases for only the spec-designated codecs. Encode\noutput stays canonical and case-sensitive codecs are unaffected.",
          "is_bot": false,
          "headline": "fix: case-insensitive decode for base16/base32/base36 (multibase spec…",
          "author_name": "spokodev",
          "author_login": "spokodev",
          "committed_at": "2026-06-24T05:43:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4610294553b0adfaa8669e561126b51c7e04553b",
          "body": "## [14.0.0](https://github.com/multiformats/js-multiformats/compare/v13.4.2...v14.0.0) (2026-05-07)\n\n### ⚠ BREAKING CHANGES\n\n* all `Hasher`s are now `MultihashHasher<Code>`s\n* Returned `Uint8Array`s are now `Uint8Array<ArrayBuffer>`\n\n### Bug Fixes\n\n* identity hash is SyncMultihashHasher<0> ([#337](h\n[…]\nnt8Arrays are returned ([#335](https://github.com/multiformats/js-multiformats/issues/335)) ([bac2da5](https://github.com/multiformats/js-multiformats/commit/bac2da54b6b1d1d1e507cc1fa641a7aef6b89758))",
          "is_bot": false,
          "headline": "chore(release): 14.0.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2026-05-07T06:28:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9b5b12ba9a3f80fe1fadfee94e77709129b31b18",
          "body": "Updates the type of the identity hash to `SyncMultihashHasher<0x00>` to enable passing it where `MultihashHasher<Code>` instances are expected.\n\nIt was also necessary to update the returned type of `from` to be `MultihashHasher<Code>` instead of the concrete `Hasher` type which has extra properties that are not part of hashing.\n\nFixes #313\nSupersedes #314\n\nBREAKING CHANGE: all `Hasher`s are now `MultihashHasher<Code>`s",
          "is_bot": false,
          "headline": "fix!: identity hash is SyncMultihashHasher<0> (#337)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2026-05-07T06:11:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bac2da54b6b1d1d1e507cc1fa641a7aef6b89758",
          "body": "…335)\n\nSince https://github.com/microsoft/TypeScript/pull/59417 `Uint8Array`s are generic so update the types here to be explicit about what backing buffer is used by the `Uint8Array` that is returned from operations, but be flexible enough to accept any type of backing buffer.\n\nUpgrades aegir to up\n[…]\nffer>`\n- Import from '.ts' files instead of '.js' where they exist\n\nBREAKING CHANGE: Returned `Uint8Array`s are now `Uint8Array<ArrayBuffer>`\n\n---------\n\nCo-authored-by: Marcin Rataj <lidel@lidel.org>",
          "is_bot": false,
          "headline": "fix!: specify type of backing buffer when Uint8Arrays are returned (#…",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2026-05-07T05:48:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f020212074aeb188e383e009a50e2ca416581a5b",
          "body": "## [13.4.2](https://github.com/multiformats/js-multiformats/compare/v13.4.1...v13.4.2) (2025-12-12)\n\n### Dependencies\n\n* **dev:** bump @types/node from 24.10.3 to 25.0.0 ([#333](https://github.com/multiformats/js-multiformats/issues/333)) ([0bad504](https://github.com/multiformats/js-multiformats/commit/0bad50482060cde11cf0517326261112e1ca9f19))",
          "is_bot": false,
          "headline": "chore(release): 13.4.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-12-12T03:06:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0bad50482060cde11cf0517326261112e1ca9f19",
          "body": "Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) from 24.10.3 to 25.0.0.\n- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)\n- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)\n\n---\nupdated-dep\n[…]\nrect:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump @types/node from 24.10.3 to 25.0.0 (#333)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-12-12T03:03:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1b4d452a276bf5b6724f3d975912679494c7c80c",
          "body": "## [13.4.1](https://github.com/multiformats/js-multiformats/compare/v13.4.0...v13.4.1) (2025-09-15)\n\n### Dependencies\n\n* **dev:** bump crypto-hash from 3.1.0 to 4.0.0 ([#332](https://github.com/multiformats/js-multiformats/issues/332)) ([bbc711a](https://github.com/multiformats/js-multiformats/commit/bbc711abc09800f09e022f094deda007b8039873))",
          "is_bot": false,
          "headline": "chore(release): 13.4.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-09-15T06:00:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bbc711abc09800f09e022f094deda007b8039873",
          "body": "Bumps [crypto-hash](https://github.com/sindresorhus/crypto-hash) from 3.1.0 to 4.0.0.\n- [Release notes](https://github.com/sindresorhus/crypto-hash/releases)\n- [Commits](https://github.com/sindresorhus/crypto-hash/compare/v3.1.0...v4.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: crypto-hash\n  d\n[…]\nrect:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump crypto-hash from 3.1.0 to 4.0.0 (#332)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-09-15T05:55:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2e31a2f1b8f39a5f97252421619a5402432467f3",
          "body": "## [13.4.0](https://github.com/multiformats/js-multiformats/compare/v13.3.7...v13.4.0) (2025-08-05)\n\n### Features\n\n* support truncating digests ([#329](https://github.com/multiformats/js-multiformats/issues/329)) ([e4d3a22](https://github.com/multiformats/js-multiformats/commit/e4d3a22b5580d49ed7c1506a871867f451c609b6)), closes [#328](https://github.com/multiformats/js-multiformats/issues/328)",
          "is_bot": false,
          "headline": "chore(release): 13.4.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-08-05T15:25:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e4d3a22b5580d49ed7c1506a871867f451c609b6",
          "body": "Allow truncating message digests (see 5.1 of [Recommendation for Applications\nUsing Approved Hash Algorithms](https://nvlpubs.nist.gov/nistpubs/Legacy/SP/nistspecialpublication800-107r1.pdf)) within sensible limits.\n\nCloses #328",
          "is_bot": false,
          "headline": "feat: support truncating digests (#329)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2025-08-05T15:21:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b9738708a0ca9a626b80a7699195426c912afa45",
          "body": "## [13.3.7](https://github.com/multiformats/js-multiformats/compare/v13.3.6...v13.3.7) (2025-06-10)\n\n### Dependencies\n\n* **dev:** bump @types/node from 22.15.31 to 24.0.0 ([#326](https://github.com/multiformats/js-multiformats/issues/326)) ([bbb518e](https://github.com/multiformats/js-multiformats/commit/bbb518e3290f95786f0b4887aeb6d86c7ce3a5b7))",
          "is_bot": false,
          "headline": "chore(release): 13.3.7 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-06-10T10:54:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bbb518e3290f95786f0b4887aeb6d86c7ce3a5b7",
          "body": "Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) from 22.15.31 to 24.0.0.\n- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)\n- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)\n\n---\nupdated-de\n[…]\nrect:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump @types/node from 22.15.31 to 24.0.0 (#326)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-06-10T10:47:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "07a620a714dddcf6fa9887ad10fd5dec7c784281",
          "body": "## [13.3.6](https://github.com/multiformats/js-multiformats/compare/v13.3.5...v13.3.6) (2025-05-21)\n\n### Trivial Changes\n\n* remove package-lock.json ([#324](https://github.com/multiformats/js-multiformats/issues/324)) ([c65d07e](https://github.com/multiformats/js-multiformats/commit/c65d07e4c95d7f9b\n[…]\n from 46.0.0 to 47.0.6 ([#325](https://github.com/multiformats/js-multiformats/issues/325)) ([ea828e1](https://github.com/multiformats/js-multiformats/commit/ea828e18b269fc43f32ec451073e68b0a43ce98f))",
          "is_bot": false,
          "headline": "chore(release): 13.3.6 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-05-21T04:19:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ea828e18b269fc43f32ec451073e68b0a43ce98f",
          "body": "* deps(dev): bump aegir from 46.0.0 to 47.0.6\n\nBumps [aegir](https://github.com/ipfs/aegir) from 46.0.0 to 47.0.6.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v46.0.0..\n[…]\ne: fix lints\n\n---------\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Rod Vagg <rod@vagg.org>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 46.0.0 to 47.0.6 (#325)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-05-21T04:16:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c65d07e4c95d7f9b3510f0d68229619c30349792",
          "body": "Ref: https://github.com/ipld/js-dag-cbor/pull/126",
          "is_bot": false,
          "headline": "chore: remove package-lock.json (#324)",
          "author_name": "Rod Vagg",
          "author_login": "rvagg",
          "committed_at": "2025-05-21T03:40:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d1ced79ff65198b18e29e304452ab425011af70e",
          "body": "## [13.3.5](https://github.com/multiformats/js-multiformats/compare/v13.3.4...v13.3.5) (2025-05-20)\n\n### Bug Fixes\n\n* **perf:** improve rfc4648 base decoding ([#323](https://github.com/multiformats/js-multiformats/issues/323)) ([900b5f6](https://github.com/multiformats/js-multiformats/commit/900b5f64416e65d3ff1189d681676c20f1756df0))",
          "is_bot": false,
          "headline": "chore(release): 13.3.5 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-05-20T03:02:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "900b5f64416e65d3ff1189d681676c20f1756df0",
          "body": null,
          "is_bot": false,
          "headline": "fix(perf): improve rfc4648 base decoding (#323)",
          "author_name": "devin ivy",
          "author_login": "devinivy",
          "committed_at": "2025-05-20T02:59:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c9abde00b17d33b2a13534510bc60ec3341a6b09",
          "body": "## [13.3.4](https://github.com/multiformats/js-multiformats/compare/v13.3.3...v13.3.4) (2025-05-15)\n\n### Dependencies\n\n* **dev:** bump @types/node from 22.15.17 to 22.15.18 ([#319](https://github.com/multiformats/js-multiformats/issues/319)) ([dbf6eb5](https://github.com/multiformats/js-multiformats/commit/dbf6eb5a35a07956cff94fa3050f4056ab52bc97))",
          "is_bot": false,
          "headline": "chore(release): 13.3.4 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-05-15T19:46:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dbf6eb5a35a07956cff94fa3050f4056ab52bc97",
          "body": "Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) from 22.15.17 to 22.15.18.\n- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)\n- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)\n\n---\nupdated-\n[…]\nrect:development\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump @types/node from 22.15.17 to 22.15.18 (#319)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-05-15T19:43:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4a1be1ca7b54596b059795444c066dba27a7ee13",
          "body": "## [13.3.3](https://github.com/multiformats/js-multiformats/compare/v13.3.2...v13.3.3) (2025-05-08)\n\n### Dependencies\n\n* **dev:** bump aegir from 45.2.1 to 46.0.0 ([#317](https://github.com/multiformats/js-multiformats/issues/317)) ([5fcf67b](https://github.com/multiformats/js-multiformats/commit/5fcf67b628202b64a68b9d9de774a50cf4f6e07d))",
          "is_bot": false,
          "headline": "chore(release): 13.3.3 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-05-08T17:26:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5fcf67b628202b64a68b9d9de774a50cf4f6e07d",
          "body": "* deps(dev): bump aegir from 45.2.1 to 46.0.0\n\nBumps [aegir](https://github.com/ipfs/aegir) from 45.2.1 to 46.0.0.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v45.2.1..\n[…]\n type import\n\n---------\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Rod Vagg <rod@vagg.org>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 45.2.1 to 46.0.0 (#317)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2025-05-08T17:22:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7852fd920fecfdcff773399586d6e86fda347935",
          "body": "* chore: add or force update .github/workflows/stale.yml\n\n* chore: add or force update .github/workflows/generated-pr.yml",
          "is_bot": false,
          "headline": "ci: uci/copy-templates (#316)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2025-03-28T13:06:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "687a078bca20383f4555a7142d24032ca0ecdeba",
          "body": "## [13.3.2](https://github.com/multiformats/js-multiformats/compare/v13.3.1...v13.3.2) (2025-02-11)\n\n### Documentation\n\n* add missing base36 from default multibases ([#315](https://github.com/multiformats/js-multiformats/issues/315)) ([d03762a](https://github.com/multiformats/js-multiformats/commit/d03762a14741863e4555b89d2e55a7faac041201))",
          "is_bot": false,
          "headline": "chore(release): 13.3.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2025-02-11T10:43:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d03762a14741863e4555b89d2e55a7faac041201",
          "body": null,
          "is_bot": false,
          "headline": "docs: add missing base36 from default multibases (#315)",
          "author_name": "Daniel Norman",
          "author_login": "2color",
          "committed_at": "2025-02-11T10:38:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "75712e79cee565e2f24977c19b8d269617e1a24a",
          "body": "## [13.3.1](https://github.com/multiformats/js-multiformats/compare/v13.3.0...v13.3.1) (2024-10-29)\n\n### Trivial Changes\n\n* adjust examples for new linting rules ([adc534b](https://github.com/multiformats/js-multiformats/commit/adc534be75138e65df0c4f5f1efdf294a7b5f7ba))\n\n### Dependencies\n\n* **dev:** bump aegir from 44.1.4 to 45.0.0 ([1cd48bf](https://github.com/multiformats/js-multiformats/commit/1cd48bf7e336fea35af9dde6587c317562ab2074))",
          "is_bot": false,
          "headline": "chore(release): 13.3.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-10-29T23:28:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "adc534be75138e65df0c4f5f1efdf294a7b5f7ba",
          "body": null,
          "is_bot": false,
          "headline": "chore: adjust examples for new linting rules",
          "author_name": "Rod Vagg",
          "author_login": "rvagg",
          "committed_at": "2024-10-29T23:24:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1cd48bf7e336fea35af9dde6587c317562ab2074",
          "body": "Bumps [aegir](https://github.com/ipfs/aegir) from 44.1.4 to 45.0.0.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v44.1.4...v45.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: aegir\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 44.1.4 to 45.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-10-29T22:59:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1c233b8079ceec93ab261e2910189f1a130455c8",
          "body": "## [13.3.0](https://github.com/multiformats/js-multiformats/compare/v13.2.4...v13.3.0) (2024-09-16)\n\n### Features\n\n* add hasCode to Digest ([#308](https://github.com/multiformats/js-multiformats/issues/308)) ([a5fbf61](https://github.com/multiformats/js-multiformats/commit/a5fbf61f2474963994cb60d12a68666c91fe824c))",
          "is_bot": false,
          "headline": "chore(release): 13.3.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-09-16T06:47:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a5fbf61f2474963994cb60d12a68666c91fe824c",
          "body": "To give a hint to tsc that a `MultihashDigest` has a specific code,\r\nadd a disambiguator `hasCode` function.\r\n\r\nThis lets us define functions that require a certain multihash code\r\nwith type saftey.",
          "is_bot": false,
          "headline": "feat: add hasCode to Digest (#308)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2024-09-16T06:43:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c55bdfd16a4ac13b3ca63e0a509eefc659613859",
          "body": "## [13.2.4](https://github.com/multiformats/js-multiformats/compare/v13.2.3...v13.2.4) (2024-09-16)\n\n### Trivial Changes\n\n* fix linting ([9d24b62](https://github.com/multiformats/js-multiformats/commit/9d24b62051f140e5050010655f1a5ee832b0cd23))\n\n### Dependencies\n\n* **dev:** bump aegir from 43.0.3 to 44.1.1 ([a0fdb76](https://github.com/multiformats/js-multiformats/commit/a0fdb76928ae93a95bd2d6799b57c081833f7adf))",
          "is_bot": false,
          "headline": "chore(release): 13.2.4 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-09-16T01:57:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9d24b62051f140e5050010655f1a5ee832b0cd23",
          "body": null,
          "is_bot": false,
          "headline": "chore: fix linting",
          "author_name": "achingbrain",
          "author_login": "achingbrain",
          "committed_at": "2024-09-16T01:53:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a0fdb76928ae93a95bd2d6799b57c081833f7adf",
          "body": "Bumps [aegir](https://github.com/ipfs/aegir) from 43.0.3 to 44.1.1.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v43.0.3...v44.1.1)\n\n---\nupdated-dependencies:\n- dependency-name: aegir\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 43.0.3 to 44.1.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-09-16T01:53:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1061ae7115594008679e6a8f90c9f48e144724f1",
          "body": "## [13.2.3](https://github.com/multiformats/js-multiformats/compare/v13.2.2...v13.2.3) (2024-09-12)\n\n### Bug Fixes\n\n* CID.parse(base36) ([#307](https://github.com/multiformats/js-multiformats/issues/307)) ([892f198](https://github.com/multiformats/js-multiformats/commit/892f198ebc6fe4f8c53d625d7d13521b65bea73e))",
          "is_bot": false,
          "headline": "chore(release): 13.2.3 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-09-12T18:53:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "892f198ebc6fe4f8c53d625d7d13521b65bea73e",
          "body": "This aims to support base36 out of the box, without having to specify\r\nthe 'base' parameter explicitly.\r\n\r\nRationale is that base36 is used across ecosystem for PeerIDs that have\r\nto be represented in base36 to fit in a single DNS label (due to limit\r\nof 63 characters).",
          "is_bot": false,
          "headline": "fix: CID.parse(base36) (#307)",
          "author_name": "Marcin Rataj",
          "author_login": "lidel",
          "committed_at": "2024-09-12T18:49:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2189443532512419106f9ce225fa90979586e521",
          "body": "## [13.2.2](https://github.com/multiformats/js-multiformats/compare/v13.2.1...v13.2.2) (2024-07-30)\n\n### Dependencies\n\n* **dev:** bump @types/node from 20.14.13 to 22.0.0 ([2b65321](https://github.com/multiformats/js-multiformats/commit/2b6532186d73e6d0ff5e3e3af8cfe050d9974763))",
          "is_bot": false,
          "headline": "chore(release): 13.2.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-07-30T00:35:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b6532186d73e6d0ff5e3e3af8cfe050d9974763",
          "body": "Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) from 20.14.13 to 22.0.0.\n- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)\n- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)\n\n---\nupdated-dependencies:\n- dependency-name: \"@types/node\"\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump @types/node from 20.14.13 to 22.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-07-30T00:31:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b84baed123e27fbbde48f05315653e3b1df71a19",
          "body": "## [13.2.1](https://github.com/multiformats/js-multiformats/compare/v13.2.0...v13.2.1) (2024-07-24)",
          "is_bot": false,
          "headline": "chore(release): 13.2.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-07-24T12:03:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e46e7fee4d148b7a7ce904b4a82b02485fbbce9c",
          "body": "This reverts commit 2ee062ee83115b28b8f1c153918cd61db5919e5c.",
          "is_bot": false,
          "headline": "Revert \"feat: BlockCodec methods are generic\"",
          "author_name": "Rod Vagg",
          "author_login": "rvagg",
          "committed_at": "2024-07-24T11:59:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d95510ec38aa01778058757cc6cf4621a318b9b9",
          "body": "## [13.2.0](https://github.com/multiformats/js-multiformats/compare/v13.1.3...v13.2.0) (2024-07-22)\n\n### Features\n\n* BlockCodec methods are generic ([2ee062e](https://github.com/multiformats/js-multiformats/commit/2ee062ee83115b28b8f1c153918cd61db5919e5c))",
          "is_bot": false,
          "headline": "chore(release): 13.2.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-07-22T06:17:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2ee062ee83115b28b8f1c153918cd61db5919e5c",
          "body": "Adds support for generic types to the `encode` and `decode` methods on\nthe `BlockCodec` interface.",
          "is_bot": false,
          "headline": "feat: BlockCodec methods are generic",
          "author_name": "tabcat",
          "author_login": "tabcat",
          "committed_at": "2024-07-22T06:12:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "38f1046838ffb95c881903385ba5f3a877ba9255",
          "body": "## [13.1.3](https://github.com/multiformats/js-multiformats/compare/v13.1.2...v13.1.3) (2024-07-02)\n\n### Dependencies\n\n* **dev:** bump @stablelib/sha512 from 1.0.1 to 2.0.0 ([3091935](https://github.com/multiformats/js-multiformats/commit/30919356b2e06a643d78351d3e90ab11f598f5fc))",
          "is_bot": false,
          "headline": "chore(release): 13.1.3 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-07-02T01:50:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30919356b2e06a643d78351d3e90ab11f598f5fc",
          "body": "Bumps [@stablelib/sha512](https://github.com/StableLib/stablelib) from 1.0.1 to 2.0.0.\n- [Release notes](https://github.com/StableLib/stablelib/releases)\n- [Commits](https://github.com/StableLib/stablelib/compare/@stablelib/sha512@1.0.1...@stablelib/sha512@2.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: \"@stablelib/sha512\"\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump @stablelib/sha512 from 1.0.1 to 2.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-07-02T01:45:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a3b2f8c36a719cf29a2b7cc853053d62b62f170d",
          "body": "## [13.1.2](https://github.com/multiformats/js-multiformats/compare/v13.1.1...v13.1.2) (2024-07-02)\n\n### Dependencies\n\n* **dev:** bump @stablelib/sha256 from 1.0.1 to 2.0.0 ([bc7f8a5](https://github.com/multiformats/js-multiformats/commit/bc7f8a58fe8c03c6c909bf60f18dffbc9d8518b3))",
          "is_bot": false,
          "headline": "chore(release): 13.1.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-07-02T01:41:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bc7f8a58fe8c03c6c909bf60f18dffbc9d8518b3",
          "body": "Bumps [@stablelib/sha256](https://github.com/StableLib/stablelib) from 1.0.1 to 2.0.0.\n- [Release notes](https://github.com/StableLib/stablelib/releases)\n- [Commits](https://github.com/StableLib/stablelib/compare/@stablelib/sha256@1.0.1...@stablelib/sha256@2.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: \"@stablelib/sha256\"\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump @stablelib/sha256 from 1.0.1 to 2.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-07-02T01:35:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dba64626a17f13471db4f23cb8eb9806c28010e4",
          "body": "## [13.1.1](https://github.com/multiformats/js-multiformats/compare/v13.1.0...v13.1.1) (2024-06-01)\n\n### Dependencies\n\n* **dev:** bump aegir from 42.2.11 to 43.0.1 ([bc14c48](https://github.com/multiformats/js-multiformats/commit/bc14c4838d1ff04c1496d04ad34932949881accc))",
          "is_bot": false,
          "headline": "chore(release): 13.1.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-06-01T06:30:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bc14c4838d1ff04c1496d04ad34932949881accc",
          "body": "Bumps [aegir](https://github.com/ipfs/aegir) from 42.2.11 to 43.0.1.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v42.2.11...v43.0.1)\n\n---\nupdated-dependencies:\n- dependency-name: aegir\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 42.2.11 to 43.0.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-06-01T06:25:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5e2159a5126f15f2e16032b29a8bb5e31e619160",
          "body": "* chore: add or force update .github/workflows/js-test-and-release.yml\n\n* chore: add or force update .github/workflows/js-test-and-release.yml\n\n* chore: add or force update .github/workflows/js-test-and-release.yml",
          "is_bot": false,
          "headline": "ci: uci/copy-templates (#288)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2024-03-21T17:25:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dcbd5d73d80da321c8ee64a648ded51199d731bb",
          "body": "## [13.1.0](https://github.com/multiformats/js-multiformats/compare/v13.0.1...v13.1.0) (2024-02-15)\n\n### Features\n\n* support decoding ArrayBuffers ([#287](https://github.com/multiformats/js-multiformats/issues/287)) ([e7f3272](https://github.com/multiformats/js-multiformats/commit/e7f3272fded88801409358dcef4a5b04b08ad38e))\n\n### Trivial Changes\n\n* Update .github/dependabot.yml [skip ci] ([aa9c730](https://github.com/multiformats/js-multiformats/commit/aa9c7303a7bd844d659163261d301c5c95f26c3b))",
          "is_bot": false,
          "headline": "chore(release): 13.1.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-02-15T14:12:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e7f3272fded88801409358dcef4a5b04b08ad38e",
          "body": "When using `fetch` to download something over HTTP, it only makes\r\nan `ArrayBuffer` available, not a `Uint8Array`.\r\n\r\n`TextDecoder` supports decoding `ArrayBuffer`s, and the `raw` codec\r\nturns passed `ArrayBuffer`s into `Uint8Array`s so this is just a\r\ntype change.\r\n\r\nInstead of:\r\n\r\n```js\r\nconst res\n[…]\n await fetch('...')\r\nconst obj = json.decode(new Uint8Array(await res.arrayBuffer()))\r\n```\r\n\r\nwe can do:\r\n\r\n```js\r\nconst res = await fetch('...')\r\nconst obj = json.decode(await res.arrayBuffer())\r\n```",
          "is_bot": false,
          "headline": "feat: support decoding ArrayBuffers (#287)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2024-02-15T14:08:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "aa9c7303a7bd844d659163261d301c5c95f26c3b",
          "body": null,
          "is_bot": false,
          "headline": "chore: Update .github/dependabot.yml [skip ci]",
          "author_name": "GitHub",
          "author_login": null,
          "committed_at": "2024-01-31T15:26:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac514622469600ff9190a47847313a74bcb2e2f5",
          "body": "## [13.0.1](https://github.com/multiformats/js-multiformats/compare/v13.0.0...v13.0.1) (2024-01-10)\n\n### Dependencies\n\n* **dev:** bump aegir from 41.3.5 to 42.1.0 ([12c8686](https://github.com/multiformats/js-multiformats/commit/12c86868defc40b698c425b21be4e11152531658))",
          "is_bot": false,
          "headline": "chore(release): 13.0.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2024-01-10T03:57:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "12c86868defc40b698c425b21be4e11152531658",
          "body": "Bumps [aegir](https://github.com/ipfs/aegir) from 41.3.5 to 42.1.0.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v41.3.5...v42.1.0)\n\n---\nupdated-dependencies:\n- dependency-name: aegir\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 41.3.5 to 42.1.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2024-01-10T03:54:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6d0ca736a87b7633b476ecdfdc647702bceeb8d8",
          "body": "## [13.0.0](https://github.com/multiformats/js-multiformats/compare/v12.1.3...v13.0.0) (2023-12-20)\n\n### ⚠ BREAKING CHANGES\n\n* this module is now TypeScript - the API has not changed but releasing as a major for saftey\n\n### Features\n\n* convert codebase to typescript ([#251](https://github.com/multif\n[…]\ns/issues/249)\n\n### Trivial Changes\n\n* **deps:** bump actions/setup-node from 3.8.2 to 4.0.0 ([139b3c2](https://github.com/multiformats/js-multiformats/commit/139b3c2fa0d1afcba9f0aafde929fcf69f4d7804))",
          "is_bot": false,
          "headline": "chore(release): 13.0.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-12-20T08:35:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "56bbb9686ed0233f76d7aea6015d4d3294db443c",
          "body": "Fixes #249\n\n- update aegir to get latest linter rules\n- minimal changes to vendored code\n  - eslint-disable files, add inferred types as jsdocs, move vendor directory under src\n- convert all .js files to .ts\n- apply all jsdoc type annotations as typescript type annotations\n- fix all resulting linter\n[…]\no keep any helpful jsdocs\n\nBREAKING CHANGE: this module is now TypeScript - the API has not changed but releasing as a major for saftey\n\n---------\n\nCo-authored-by: Alex Potsides <alex@achingbrain.net>",
          "is_bot": false,
          "headline": "feat!: convert codebase to typescript (#251)",
          "author_name": "Cayman",
          "author_login": "wemeetagain",
          "committed_at": "2023-12-20T08:31:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "139b3c2fa0d1afcba9f0aafde929fcf69f4d7804",
          "body": "Bumps [actions/setup-node](https://github.com/actions/setup-node) from 3.8.2 to 4.0.0.\n- [Release notes](https://github.com/actions/setup-node/releases)\n- [Commits](https://github.com/actions/setup-node/compare/v3.8.2...v4.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: actions/setup-node\n  dependency-type: direct:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/setup-node from 3.8.2 to 4.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-10-31T01:36:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "360a486dd4d13769ec1ea8b7843fb9552841fb4d",
          "body": "## [12.1.3](https://github.com/multiformats/js-multiformats/compare/v12.1.2...v12.1.3) (2023-10-25)\n\n### Trivial Changes\n\n* **deps:** bump actions/setup-node from 3.8.1 to 3.8.2 ([f190ad7](https://github.com/multiformats/js-multiformats/commit/f190ad7da5a0a17b44a88645dfa58c532d51dd56))\n\n### Dependencies\n\n* **dev:** bump crypto-hash from 2.0.1 to 3.0.0 ([f5b9958](https://github.com/multiformats/js-multiformats/commit/f5b995889b0b30b2e655e618b561bdfdf7df5299))",
          "is_bot": false,
          "headline": "chore(release): 12.1.3 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-10-25T00:07:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f190ad7da5a0a17b44a88645dfa58c532d51dd56",
          "body": "Bumps [actions/setup-node](https://github.com/actions/setup-node) from 3.8.1 to 3.8.2.\n- [Release notes](https://github.com/actions/setup-node/releases)\n- [Commits](https://github.com/actions/setup-node/compare/v3.8.1...v3.8.2)\n\n---\nupdated-dependencies:\n- dependency-name: actions/setup-node\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/setup-node from 3.8.1 to 3.8.2",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-10-25T00:02:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f5b995889b0b30b2e655e618b561bdfdf7df5299",
          "body": "Bumps [crypto-hash](https://github.com/sindresorhus/crypto-hash) from 2.0.1 to 3.0.0.\n- [Release notes](https://github.com/sindresorhus/crypto-hash/releases)\n- [Commits](https://github.com/sindresorhus/crypto-hash/compare/v2.0.1...v3.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: crypto-hash\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump crypto-hash from 2.0.1 to 3.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-10-25T00:01:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "32778ff93d8cb6c9891b9f665e5f2967e12ac5b2",
          "body": "## [12.1.2](https://github.com/multiformats/js-multiformats/compare/v12.1.1...v12.1.2) (2023-10-03)\n\n### Bug Fixes\n\n* switch interface method decl style ([a33d24f](https://github.com/multiformats/js-multiformats/commit/a33d24f3ca56e4b40c80a3237e419cda261aa3e6))\n\n### Dependencies\n\n* **dev:** bump aegir from 40.0.13 to 41.0.0 ([41f008b](https://github.com/multiformats/js-multiformats/commit/41f008b09378085adef4aede1dd504a4eba5fa80))",
          "is_bot": false,
          "headline": "chore(release): 12.1.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-10-03T00:47:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a33d24f3ca56e4b40c80a3237e419cda261aa3e6",
          "body": null,
          "is_bot": false,
          "headline": "fix: switch interface method decl style",
          "author_name": "Rod Vagg",
          "author_login": "rvagg",
          "committed_at": "2023-10-03T00:43:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "41f008b09378085adef4aede1dd504a4eba5fa80",
          "body": "Bumps [aegir](https://github.com/ipfs/aegir) from 40.0.13 to 41.0.0.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v40.0.13...v41.0.0)\n\n---\nupdated-dependencies:\n- dependency-name: aegir\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 40.0.13 to 41.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-10-03T00:43:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff9505ca94f0f040fa2fe5e120852bd3bcb7dc5e",
          "body": "## [12.1.1](https://github.com/multiformats/js-multiformats/compare/v12.1.0...v12.1.1) (2023-09-05)\n\n### Bug Fixes\n\n* update link interface path in exports map ([#270](https://github.com/multiformats/js-multiformats/issues/270)) ([d38e4a8](https://github.com/multiformats/js-multiformats/commit/d38e4\n[…]\n81265356708df80ed925e))\n\n### Trivial Changes\n\n* **deps:** bump actions/checkout from 3 to 4 ([f94559e](https://github.com/multiformats/js-multiformats/commit/f94559e4a0fa7c4ad320261507040df5bc03f63a))",
          "is_bot": false,
          "headline": "chore(release): 12.1.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-09-05T08:34:03Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d38e4a8ba1d2d33c60481265356708df80ed925e",
          "body": "The types and import fields were pointing to the wrong files so\r\ncorrect them.",
          "is_bot": false,
          "headline": "fix: update link interface path in exports map (#270)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2023-09-05T08:28:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f94559e4a0fa7c4ad320261507040df5bc03f63a",
          "body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 3 to 4.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/v3...v4)\n\n---\nupdated-dependencies:\n- dependency-name: actions/checkout\n  dependency-type: direct:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/checkout from 3 to 4",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-09-05T06:28:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "320bd62a82e0b4c71deedd6354443b3f9273c031",
          "body": "## [12.1.0](https://github.com/multiformats/js-multiformats/compare/v12.0.2...v12.1.0) (2023-08-28)\n\n### Features\n\n* add sha1 support ([4da0085](https://github.com/multiformats/js-multiformats/commit/4da008580dd3dc3fa2c5f14c5a3bf64fd99221e6))",
          "is_bot": false,
          "headline": "chore(release): 12.1.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-08-28T08:14:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4da008580dd3dc3fa2c5f14c5a3bf64fd99221e6",
          "body": "It's old and insecure but it's used in the wild so we need to be\nable to handle it.",
          "is_bot": false,
          "headline": "feat: add sha1 support",
          "author_name": "achingbrain",
          "author_login": "achingbrain",
          "committed_at": "2023-08-28T08:08:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0dcd88361b1b3efdecb86e5afd13cb76f3eac32f",
          "body": "## [12.0.2](https://github.com/multiformats/js-multiformats/compare/v12.0.1...v12.0.2) (2023-08-28)\n\n### Bug Fixes\n\n* linting ([3d74818](https://github.com/multiformats/js-multiformats/commit/3d74818e975099c7c83112434f7ed23a68b9af0a))\n* remove old ts option ([638dbed](https://github.com/multiformats\n[…]\nf125ea6bc2e4f0a2208b27a6))\n\n### Dependencies\n\n* **dev:** bump aegir from 37.12.1 to 40.0.11 ([d17424d](https://github.com/multiformats/js-multiformats/commit/d17424d257fd9995ad775d2309a67ae2dc4f3c54))",
          "is_bot": false,
          "headline": "chore(release): 12.0.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-08-28T07:52:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3d74818e975099c7c83112434f7ed23a68b9af0a",
          "body": null,
          "is_bot": false,
          "headline": "fix: linting",
          "author_name": "Rod Vagg",
          "author_login": "rvagg",
          "committed_at": "2023-08-28T07:46:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "638dbed357cfe65e4d3402899dde5a7620ab5ce7",
          "body": null,
          "is_bot": false,
          "headline": "fix: remove old ts option",
          "author_name": "Rod Vagg",
          "author_login": "rvagg",
          "committed_at": "2023-08-28T07:46:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d17424d257fd9995ad775d2309a67ae2dc4f3c54",
          "body": "Bumps [aegir](https://github.com/ipfs/aegir) from 37.12.1 to 40.0.11.\n- [Release notes](https://github.com/ipfs/aegir/releases)\n- [Changelog](https://github.com/ipfs/aegir/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/ipfs/aegir/compare/v37.12.1...v40.0.11)\n\n---\nupdated-dependencies:\n- dependency-name: aegir\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump aegir from 37.12.1 to 40.0.11",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-08-28T07:46:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d7ec85c29500ff0a9bb02d2ea4c808047938ce97",
          "body": "Bumps [actions/setup-node](https://github.com/actions/setup-node) from 3.8.0 to 3.8.1.\n- [Release notes](https://github.com/actions/setup-node/releases)\n- [Commits](https://github.com/actions/setup-node/compare/v3.8.0...v3.8.1)\n\n---\nupdated-dependencies:\n- dependency-name: actions/setup-node\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/setup-node from 3.8.0 to 3.8.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-08-22T04:41:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7dcf225914fd6cebfa9f5cf0f5897cc0a0f356ab",
          "body": "Bumps [actions/setup-node](https://github.com/actions/setup-node) from 3.5.0 to 3.8.0.\n- [Release notes](https://github.com/actions/setup-node/releases)\n- [Commits](https://github.com/actions/setup-node/compare/v3.5.0...v3.8.0)\n\n---\nupdated-dependencies:\n- dependency-name: actions/setup-node\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump actions/setup-node from 3.5.0 to 3.8.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-08-15T01:04:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "21b75911e0aee1ba7a6be9687db83328cfd961b5",
          "body": null,
          "is_bot": false,
          "headline": "chore: add or force update .github/workflows/js-test-and-release.yml",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2023-08-14T02:10:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d2b614d34631537a97176657b478691ca0ab5522",
          "body": null,
          "is_bot": false,
          "headline": "chore: delete templates [skip ci] (#263)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2023-08-13T19:28:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "58bebda0a892429bf125ea6bc2e4f0a2208b27a6",
          "body": null,
          "is_bot": false,
          "headline": "chore: Update .github/dependabot.yml [skip ci]",
          "author_name": "GitHub",
          "author_login": null,
          "committed_at": "2023-08-03T16:36:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4a36fb7ee49edb4300267b90301ef0e4300cbc46",
          "body": "Bumps [gozala/typescript-error-reporter-action](https://github.com/gozala/typescript-error-reporter-action) from 1.0.8 to 1.0.9.\n- [Release notes](https://github.com/gozala/typescript-error-reporter-action/releases)\n- [Commits](https://github.com/gozala/typescript-error-reporter-action/compare/v1.0.\n[…]\nies:\n- dependency-name: gozala/typescript-error-reporter-action\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump gozala/typescript-error-reporter-action",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-06-20T04:07:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bf164b15fc35241b43f83ff8b3951f4a4ff0b520",
          "body": "## [12.0.1](https://github.com/multiformats/js-multiformats/compare/v12.0.0...v12.0.1) (2023-06-15)\n\n### Trivial Changes\n\n* **deps:** bump codecov/codecov-action from 3.1.1 to 3.1.4 ([#256](https://github.com/multiformats/js-multiformats/issues/256)) ([910eeeb](https://github.com/multiformats/js-mul\n[…]\n3e6cec03e03c2e1899))\n\n### Dependencies\n\n* **dev:** bump @types/node from 18.16.18 to 20.3.1 ([7a6d036](https://github.com/multiformats/js-multiformats/commit/7a6d036adc1c18d8311a978d339e323ebd724da8))",
          "is_bot": false,
          "headline": "chore(release): 12.0.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-06-15T05:18:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7a6d036adc1c18d8311a978d339e323ebd724da8",
          "body": "Bumps [@types/node](https://github.com/DefinitelyTyped/DefinitelyTyped/tree/HEAD/types/node) from 18.16.18 to 20.3.1.\n- [Release notes](https://github.com/DefinitelyTyped/DefinitelyTyped/releases)\n- [Commits](https://github.com/DefinitelyTyped/DefinitelyTyped/commits/HEAD/types/node)\n\n---\nupdated-dependencies:\n- dependency-name: \"@types/node\"\n  dependency-type: direct:development\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "deps(dev): bump @types/node from 18.16.18 to 20.3.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-06-15T05:14:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "910eeeb36c9fe4bd087ee83e6cec03e03c2e1899",
          "body": "Bumps [codecov/codecov-action](https://github.com/codecov/codecov-action) from 3.1.1 to 3.1.4.\r\n- [Release notes](https://github.com/codecov/codecov-action/releases)\r\n- [Changelog](https://github.com/codecov/codecov-action/blob/main/CHANGELOG.md)\r\n- [Commits](https://github.com/codecov/codecov-actio\n[…]\n:production\r\n  update-type: version-update:semver-patch\r\n...\r\n\r\nSigned-off-by: dependabot[bot] <support@github.com>\r\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(deps): bump codecov/codecov-action from 3.1.1 to 3.1.4 (#256)",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2023-06-14T17:41:03Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1701ceae681c522af5a132ee8f778584cae75a60",
          "body": "## [12.0.0](https://github.com/multiformats/js-multiformats/compare/v11.0.2...v12.0.0) (2023-06-14)\n\n### ⚠ BREAKING CHANGES\n\n* use aegir for ESM-only build/testing/release\n\n### Features\n\n* use aegir for ESM-only build/testing/release ([f82e61b](https://github.com/multiformats/js-multiformats/commit/f82e61bf1c6bfb67a709089e79ec57767fb1bcb7))",
          "is_bot": false,
          "headline": "chore(release): 12.0.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-06-14T12:49:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f82e61bf1c6bfb67a709089e79ec57767fb1bcb7",
          "body": "BREAKING CHANGE\n\nESM-only publish",
          "is_bot": true,
          "headline": "feat!: use aegir for ESM-only build/testing/release",
          "author_name": "multiformats-mgmt-read-write[bot]",
          "author_login": "multiformats-mgmt-read-write[bot]",
          "committed_at": "2023-06-14T12:45:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9af03687b545a2e558a23aa23dae50b3a9ac6cc5",
          "body": null,
          "is_bot": false,
          "headline": "update .github/workflows/js-test-and-release.yml (#248)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2023-03-15T12:55:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a8290f9e6dbf738184848172241354ffd8251b67",
          "body": null,
          "is_bot": false,
          "headline": "update .github/workflows/js-test-and-release.yml (#247)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2023-03-15T09:57:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aa4d5230a12aae537541604e96f9289cd0f7f88b",
          "body": "## [11.0.2](https://github.com/multiformats/js-multiformats/compare/v11.0.1...v11.0.2) (2023-03-09)\n\n### Bug Fixes\n\n* add interface files to the exports map ([#246](https://github.com/multiformats/js-multiformats/issues/246)) ([a58a398](https://github.com/multiformats/js-multiformats/commit/a58a39896d7264ba0bcbaf737cce7f3a65c644ba)), closes [/github.com/ipld/js-dag-cbor/blob/master/src/index.js#L9](https://github.com/multiformats//github.com/ipld/js-dag-cbor/blob/master/src/index.js/issues/L9)",
          "is_bot": false,
          "headline": "chore(release): 11.0.2 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-03-09T07:46:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a58a39896d7264ba0bcbaf737cce7f3a65c644ba",
          "body": "Interfaces from the interface files in this module are\r\n[imported](https://github.com/ipld/js-dag-cbor/blob/master/src/index.js#L9)\r\nin other modules, so they need to be in the exports map otherwise\r\ntsc can fail to build dependant modules.",
          "is_bot": false,
          "headline": "fix: add interface files to the exports map (#246)",
          "author_name": "Alex Potsides",
          "author_login": "achingbrain",
          "committed_at": "2023-03-09T07:38:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c8e64e5c3cf76801fc0de5aaf50d6e815fde9a96",
          "body": null,
          "is_bot": false,
          "headline": "update .github/workflows/js-test-and-release.yml (#245)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2023-02-23T14:30:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "debcdda652b82b27ffbf0678383145ba094685d2",
          "body": null,
          "is_bot": false,
          "headline": "update .github/workflows/js-test-and-release.yml (#244)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2023-02-08T16:25:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e6d7b73ef7d109e1973b33726aca699db1cea11a",
          "body": null,
          "is_bot": false,
          "headline": "update .github/workflows/js-test-and-release.yml (#242)",
          "author_name": "web3-bot",
          "author_login": "web3-bot",
          "committed_at": "2023-02-02T15:43:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9471ee280cef26438810582254676d2f195d2434",
          "body": "## [11.0.1](https://github.com/multiformats/js-multiformats/compare/v11.0.0...v11.0.1) (2023-01-18)\n\n### Bug Fixes\n\n* throw on CID.parse v0 string with multibase prefix ([258a0be](https://github.com/multiformats/js-multiformats/commit/258a0be344ddd5d08e08e55b3e088212df0c409a))",
          "is_bot": false,
          "headline": "chore(release): 11.0.1 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-01-18T06:22:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "258a0be344ddd5d08e08e55b3e088212df0c409a",
          "body": "Add a check to CID.parse to throw on a CID v0 string with explict multibase, e.g. `zQmPr755CxWUwt39C2Yiw4UGKrv16uZhSgeZJmoHUUS9TSJ`\n\nWe're seeing pinning service requests comming in from the wild with the undesriable multibase prefix, and the expectation was that CID.parse would have thrown and spar\n[…]\nhaving to deal with them.\n\nFixes: https://github.com/multiformats/js-multiformats/issues/240\nSee also: https://github.com/ipfs/kubo/issues/9556\n\nLicense: MIT\nSigned-off-by: Oli Evans <oli@protocol.ai>",
          "is_bot": false,
          "headline": "fix: throw on CID.parse v0 string with multibase prefix",
          "author_name": "Oli Evans",
          "author_login": "olizilla",
          "committed_at": "2023-01-18T06:17:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4b484bb0f58ce488a955c1f84e05fb4a3fbaa61a",
          "body": "## [11.0.0](https://github.com/multiformats/js-multiformats/compare/v10.0.3...v11.0.0) (2023-01-02)\n\n### ⚠ BREAKING CHANGES\n\n* Make link.toJSON return a DAG-JSON link\n\n### Features\n\n* Make link.toJSON return a DAG-JSON link ([9e087d6](https://github.com/multiformats/js-multiformats/commit/9e087d64ee\n[…]\n17673d9e15bd5a4df074c9f73267a257e0dcfad))\n\n### Documentation\n\n* fix typos in jsdoc comments ([a246054](https://github.com/multiformats/js-multiformats/commit/a246054653cf588e92d76f8161b0a6cd6035533b))",
          "is_bot": false,
          "headline": "chore(release): 11.0.0 [skip ci]",
          "author_name": "semantic-release-bot",
          "author_login": "semantic-release-bot",
          "committed_at": "2023-01-02T06:14:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        }
      ],
      "releases_count": 60,
      "commits_last_year": 19,
      "latest_release_at": "2026-07-23T05:17:11Z",
      "latest_release_tag": "v14.0.5",
      "releases_from_tags": false,
      "days_since_last_push": 9,
      "active_weeks_last_year": 7,
      "days_since_latest_release": 9,
      "mean_days_between_releases": 45.3
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 37,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "multiformats",
          "exists": true,
          "license": "Apache-2.0 OR MIT",
          "keywords": [
            "ipfs",
            "ipld",
            "multiformats"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/multiformats",
          "is_deprecated": false,
          "latest_version": "14.0.5",
          "repository_url": "https://github.com/multiformats/js-multiformats",
          "versions_count": 169,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 2,
          "monthly_downloads": 11703824,
          "first_published_at": "2020-05-08T22:15:10.830000Z",
          "latest_published_at": "2026-07-23T05:17:10.724000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 9
        }
      ]
    },
    "popularity": {
      "forks": 56,
      "stars": 266,
      "watchers": 16,
      "fork_history": {
        "days": [
          {
            "date": "2020-05-03",
            "count": 1
          },
          {
            "date": "2020-06-18",
            "count": 1
          },
          {
            "date": "2020-06-24",
            "count": 1
          },
          {
            "date": "2020-07-14",
            "count": 1
          },
          {
            "date": "2020-08-27",
            "count": 1
          },
          {
            "date": "2020-11-09",
            "count": 1
          },
          {
            "date": "2020-11-13",
            "count": 1
          },
          {
            "date": "2021-04-08",
            "count": 1
          },
          {
            "date": "2021-07-28",
            "count": 1
          },
          {
            "date": "2021-08-31",
            "count": 1
          },
          {
            "date": "2021-09-09",
            "count": 1
          },
          {
            "date": "2021-10-06",
            "count": 1
          },
          {
            "date": "2021-11-25",
            "count": 1
          },
          {
            "date": "2021-11-30",
            "count": 1
          },
          {
            "date": "2021-12-16",
            "count": 1
          },
          {
            "date": "2022-01-26",
            "count": 1
          },
          {
            "date": "2022-02-08",
            "count": 1
          },
          {
            "date": "2022-02-11",
            "count": 1
          },
          {
            "date": "2022-03-04",
            "count": 1
          },
          {
            "date": "2022-05-04",
            "count": 1
          },
          {
            "date": "2022-05-24",
            "count": 1
          },
          {
            "date": "2022-06-24",
            "count": 1
          },
          {
            "date": "2022-07-25",
            "count": 1
          },
          {
            "date": "2022-08-01",
            "count": 1
          },
          {
            "date": "2022-08-16",
            "count": 1
          },
          {
            "date": "2022-09-01",
            "count": 1
          },
          {
            "date": "2022-10-21",
            "count": 1
          },
          {
            "date": "2022-10-31",
            "count": 1
          },
          {
            "date": "2023-02-09",
            "count": 1
          },
          {
            "date": "2023-02-19",
            "count": 1
          },
          {
            "date": "2023-03-22",
            "count": 1
          },
          {
            "date": "2023-03-27",
            "count": 1
          },
          {
            "date": "2023-06-07",
            "count": 1
          },
          {
            "date": "2023-06-26",
            "count": 1
          },
          {
            "date": "2023-09-15",
            "count": 1
          },
          {
            "date": "2023-09-27",
            "count": 1
          },
          {
            "date": "2023-10-12",
            "count": 1
          },
          {
            "date": "2023-12-04",
            "count": 1
          },
          {
            "date": "2023-12-05",
            "count": 1
          },
          {
            "date": "2024-01-19",
            "count": 1
          },
          {
            "date": "2024-01-31",
            "count": 1
          },
          {
            "date": "2024-02-20",
            "count": 1
          },
          {
            "date": "2024-06-12",
            "count": 2
          },
          {
            "date": "2024-06-14",
            "count": 1
          },
          {
            "date": "2024-07-30",
            "count": 1
          },
          {
            "date": "2024-10-28",
            "count": 1
          },
          {
            "date": "2024-11-06",
            "count": 1
          },
          {
            "date": "2025-01-13",
            "count": 1
          },
          {
            "date": "2025-05-19",
            "count": 1
          },
          {
            "date": "2025-06-08",
            "count": 1
          },
          {
            "date": "2025-12-11",
            "count": 2
          },
          {
            "date": "2026-06-24",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 54,
        "total_forks": 56
      },
      "star_history": null,
      "open_issues_and_prs": 40
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 24718,
      "source_files_sampled": 50,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "package.json"
      ],
      "advisories": {
        "error": "No resolved dependencies carried a version and a supported ecosystem",
        "scope": "repository_graph",
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 6,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "@stablelib/sha256",
            "direct": false,
            "version": "^2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@stablelib/sha512",
            "direct": false,
            "version": "^2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "aegir",
            "direct": false,
            "version": "^48.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "buffer",
            "direct": false,
            "version": "^6.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "cids",
            "direct": false,
            "version": "^1.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "crypto-hash",
            "direct": false,
            "version": "^4.0.0",
            "ecosystem": "npm"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 6,
        "direct_count": 0,
        "indirect_count": 6
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 8,
        "merged_prs": 182,
        "open_issues": 32,
        "closed_ratio": 0.644,
        "closed_issues": 58,
        "closed_unmerged_prs": 54
      },
      "bus_factor": 2,
      "bot_contributors": 2,
      "top_contributors": [
        {
          "type": "User",
          "login": "mikeal",
          "commits": 91,
          "avatar_url": "https://avatars.githubusercontent.com/u/579?v=4"
        },
        {
          "type": "User",
          "login": "rvagg",
          "commits": 90,
          "avatar_url": "https://avatars.githubusercontent.com/u/495647?v=4"
        },
        {
          "type": "User",
          "login": "semantic-release-bot",
          "commits": 58,
          "avatar_url": "https://avatars.githubusercontent.com/u/32174276?v=4"
        },
        {
          "type": "User",
          "login": "achingbrain",
          "commits": 33,
          "avatar_url": "https://avatars.githubusercontent.com/u/665810?v=4"
        },
        {
          "type": "User",
          "login": "Gozala",
          "commits": 27,
          "avatar_url": "https://avatars.githubusercontent.com/u/21236?v=4"
        },
        {
          "type": "User",
          "login": "web3-bot",
          "commits": 14,
          "avatar_url": "https://avatars.githubusercontent.com/u/81333946?v=4"
        },
        {
          "type": "User",
          "login": "vmx",
          "commits": 5,
          "avatar_url": "https://avatars.githubusercontent.com/u/42839?v=4"
        },
        {
          "type": "User",
          "login": "olizilla",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/58871?v=4"
        },
        {
          "type": "User",
          "login": "tabcat",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/36933094?v=4"
        },
        {
          "type": "User",
          "login": "spokodev",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/239690017?v=4"
        }
      ],
      "contributors_sampled": 26,
      "top_contributor_share": 0.265
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "generated-pr.yml",
        "js-test-and-release.yml",
        "semantic-pull-request.yml",
        "stale.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 6,
            "reason": "10 out of 16 merged PRs checked by a CI test -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 2,
            "reason": "Found 7/24 approved changesets -- score normalized to 2",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 44 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "0dcd129adb06743d5005245c0e39631f13b86251",
        "ran_at": "2026-08-01T18:12:08Z",
        "aggregate_score": 5.2,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-08-01T03:24:02Z",
      "oldest_open_prs": [
        {
          "number": 38,
          "created_at": "2020-09-19T02:43:22Z",
          "last_comment_at": "2020-09-30T04:56:35Z",
          "last_comment_author": "rvagg"
        },
        {
          "number": 143,
          "created_at": "2021-12-15T09:11:43Z",
          "last_comment_at": "2022-02-17T11:32:04Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 261,
          "created_at": "2023-07-19T17:38:14Z",
          "last_comment_at": "2023-08-12T06:52:52Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 274,
          "created_at": "2023-09-27T15:53:57Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 282,
          "created_at": "2023-12-11T09:04:31Z",
          "last_comment_at": "2023-12-13T04:19:54Z",
          "last_comment_author": "rvagg"
        },
        {
          "number": 291,
          "created_at": "2024-06-06T10:47:10Z",
          "last_comment_at": "2026-05-11T04:13:00Z",
          "last_comment_author": "rvagg"
        },
        {
          "number": 292,
          "created_at": "2024-06-06T13:11:30Z",
          "last_comment_at": "2024-06-06T13:19:01Z",
          "last_comment_author": "rvagg"
        },
        {
          "number": 305,
          "created_at": "2024-07-30T06:52:36Z",
          "last_comment_at": "2024-07-30T09:06:36Z",
          "last_comment_author": "rvagg"
        }
      ],
      "last_merged_pr_at": "2026-07-23T05:12:21Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 3,
          "created_at": "2020-05-03T20:31:19Z",
          "last_comment_at": "2020-05-06T20:13:29Z",
          "last_comment_author": "mikeal"
        },
        {
          "number": 5,
          "created_at": "2020-05-06T20:08:55Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 30,
          "created_at": "2020-08-07T18:27:40Z",
          "last_comment_at": "2020-08-07T18:39:09Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 34,
          "created_at": "2020-09-08T13:08:46Z",
          "last_comment_at": "2020-09-08T13:13:23Z",
          "last_comment_author": "simonovic86"
        },
        {
          "number": 37,
          "created_at": "2020-09-18T22:30:46Z",
          "last_comment_at": "2020-09-24T02:27:22Z",
          "last_comment_author": "rvagg"
        },
        {
          "number": 47,
          "created_at": "2020-10-28T16:15:13Z",
          "last_comment_at": "2023-07-25T13:43:03Z",
          "last_comment_author": "vmx"
        },
        {
          "number": 48,
          "created_at": "2020-10-30T01:24:21Z",
          "last_comment_at": "2020-11-13T22:10:33Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 71,
          "created_at": "2021-03-29T18:22:13Z",
          "last_comment_at": "2021-04-03T00:28:29Z",
          "last_comment_author": "rvagg"
        },
        {
          "number": 92,
          "created_at": "2021-06-03T10:54:46Z",
          "last_comment_at": "2021-06-14T22:37:41Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 96,
          "created_at": "2021-06-24T21:31:43Z",
          "last_comment_at": "2021-06-30T00:20:34Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 115,
          "created_at": "2021-08-24T12:01:04Z",
          "last_comment_at": "2021-11-17T17:06:35Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 124,
          "created_at": "2021-10-21T03:22:39Z",
          "last_comment_at": "2021-10-22T07:39:27Z",
          "last_comment_author": "CMCDragonkai"
        },
        {
          "number": 141,
          "created_at": "2021-12-13T16:50:32Z",
          "last_comment_at": "2021-12-16T07:07:03Z",
          "last_comment_author": "achingbrain"
        },
        {
          "number": 175,
          "created_at": "2022-04-09T07:21:16Z",
          "last_comment_at": "2022-04-20T02:31:17Z",
          "last_comment_author": "Gozala"
        },
        {
          "number": 177,
          "created_at": "2022-04-20T01:38:34Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 191,
          "created_at": "2022-07-23T06:28:29Z",
          "last_comment_at": "2022-07-26T07:07:57Z",
          "last_comment_author": "tabcat"
        },
        {
          "number": 195,
          "created_at": "2022-08-23T00:32:41Z",
          "last_comment_at": "2022-09-27T06:32:03Z",
          "last_comment_author": "rvagg"
        },
        {
          "number": 222,
          "created_at": "2022-11-08T18:09:28Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 223,
          "created_at": "2022-11-08T18:21:09Z",
          "last_comment_at": "2023-01-03T23:45:36Z",
          "last_comment_author": "BigLep"
        },
        {
          "number": 227,
          "created_at": "2022-12-05T21:25:01Z",
          "last_comment_at": "2023-01-02T06:18:55Z",
          "last_comment_author": "rvagg"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/multiformats/js-multiformats",
    "host": "github.com",
    "name": "js-multiformats",
    "owner": "multiformats"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 63,
      "inputs": {
        "security": 52,
        "vitality": 70,
        "community": 64,
        "governance": 73,
        "engineering": 52
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 70,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "commits_last_year": 19,
              "human_commit_share": 0.75,
              "days_since_last_push": 9,
              "active_weeks_last_year": 7
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 9 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 9
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "7/52 weeks with commits",
                "points": 4.8,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 7
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "19 commits in the last year",
                "points": 11.7,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 19
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 92,
            "inputs": {
              "releases_count": 60,
              "latest_release_tag": "v14.0.5",
              "releases_from_tags": false,
              "days_since_latest_release": 9,
              "mean_days_between_releases": 45.3
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "60 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 60
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 9 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 9
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~45.3 days",
                "points": 19.8,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 45.3
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 10,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 10 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 64,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "moderate",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 60,
            "inputs": {
              "forks": 56,
              "stars": 266,
              "watchers": 16,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "266 stars",
                "points": 39.3,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 266
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "56 forks",
                "points": 14.5,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 56
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "16 watchers",
                "points": 6.5,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 16
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "at_risk",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 44,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "excellent",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "packages": [
                "multiformats"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 11703824
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "11,703,824 downloads/month across npm",
                "points": 80,
                "status": "met",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 11703824,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "good",
        "name": "Sustainability & Governance",
        "value": 73,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "moderate",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 65,
            "inputs": {
              "bus_factor": 2,
              "contributors_sampled": 26,
              "top_contributor_share": 0.265
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "2 contributor(s) cover half of all commits",
                "points": 25.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 26% of commits",
                "points": 16.5,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 26
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "26 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 26
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 44 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 63,
            "inputs": {
              "merged_prs": 182,
              "open_issues": 32,
              "closed_issues": 58,
              "issue_closed_ratio": 0.644,
              "closed_unmerged_prs": 54
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "64% of issues closed",
                "points": 30.1,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 64
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "182/236 decided PRs merged",
                "points": 29.5,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 182,
                      "decided": 236
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 7/24 approved changesets -- score normalized to 2",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 72,
            "inputs": {
              "followers": 201,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "multiformats",
              "public_repos": 80,
              "account_age_days": 3679
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "201 followers of multiformats",
                "points": 16.6,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 201,
                      "login": "multiformats"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "80 public repos, account ~10 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 80
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 10
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "multiformats"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 9
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 9 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 9
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "169 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 169
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 52,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 60,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "4 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "10 out of 16 merged PRs checked by a CI test -- score normalized to 6",
                "points": 12,
                "status": "partial",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "at_risk",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 52,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 52,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 5.2
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "10 out of 16 merged PRs checked by a CI test -- score normalized to 6",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 7/24 approved changesets -- score normalized to 2",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 44 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "13 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "commit_weight_rule": {
                "min_commits": 50,
                "min_commit_share": 0.1
              },
              "review_only_matches": 0,
              "below_threshold_exposures": [],
              "assessed_self_published_locations": 39
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "at_risk",
        "name": "AI Readiness",
        "value": 49,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "at_risk",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.987,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "74 of 75 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 74,
                      "sampled": 75
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "at_risk",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 41,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "tsconfig.json"
              ],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0.24
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "24 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 24,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 24718,
              "source_files_sampled": 50,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/50 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 50,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.14.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "No resolved dependencies carried a version and a supported ecosystem"
  ],
  "report_type": "repository",
  "generated_at": "2026-08-01T18:12:29.109904Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/m/multiformats/js-multiformats.svg",
  "full_name": "multiformats/js-multiformats",
  "license_state": "custom",
  "license_spdx": null
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.14.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsnpm.