Raw JSON report machine-readable
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 2115,
"has_wiki": false,
"homepage": "https://ogx-ai.github.io/",
"languages": {
"Go": 831311,
"Shell": 17951,
"Python": 4507,
"Makefile": 22719,
"Dockerfile": 2655
},
"pushed_at": "2026-07-21T13:33:46Z",
"created_at": "2025-05-01T16:23:27Z",
"owner_type": "Organization",
"updated_at": "2026-07-20T14:46:03Z",
"description": null,
"is_archived": false,
"is_disabled": false,
"license_spdx": "MIT",
"default_branch": "main",
"license_spdx_raw": "MIT",
"primary_language": "Go",
"significant_languages": [
"Go"
]
},
"owner": {
"blog": null,
"name": null,
"type": "Organization",
"login": "ogx-ai",
"company": null,
"location": null,
"followers": 15,
"avatar_url": "https://avatars.githubusercontent.com/u/272781975?v=4",
"created_at": "2026-04-01T10:08:36Z",
"is_verified": null,
"public_repos": 10,
"account_age_days": 113
},
"license": {
"state": "standard",
"spdx_id": "MIT",
"raw_spdx": "MIT",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "v0.13.0",
"kind": "minor",
"published_at": "2026-07-20T15:12:07Z"
},
{
"tag": "v0.12.0",
"kind": "minor",
"published_at": "2026-07-17T23:44:54Z"
},
{
"tag": "v0.11.0",
"kind": "minor",
"published_at": "2026-06-17T21:28:35Z"
},
{
"tag": "v0.10.0",
"kind": "minor",
"published_at": "2026-05-13T13:51:01Z"
},
{
"tag": "v0.9.0",
"kind": "minor",
"published_at": "2026-04-10T12:37:07Z"
},
{
"tag": "v0.8.0",
"kind": "minor",
"published_at": "2026-03-13T16:13:57Z"
},
{
"tag": "v0.7.0",
"kind": "minor",
"published_at": "2026-02-18T15:58:50Z"
},
{
"tag": "v0.6.0",
"kind": "minor",
"published_at": "2026-01-16T15:55:40Z"
},
{
"tag": "v0.5.0",
"kind": "minor",
"published_at": "2025-12-12T20:41:28Z"
},
{
"tag": "v0.4.0",
"kind": "minor",
"published_at": "2025-10-17T11:30:19Z"
},
{
"tag": "v0.3.0",
"kind": "minor",
"published_at": "2025-09-22T15:58:47Z"
},
{
"tag": "v0.2.0",
"kind": "minor",
"published_at": "2025-07-18T20:35:50Z"
},
{
"tag": "v0.1.0",
"kind": "minor",
"published_at": "2025-06-13T14:45:10Z"
}
],
"recent_commits": [
{
"oid": "0fa46859057f43d6dcb2ff5b3499087bbe334960",
"body": "Bumps [actions/setup-python](https://github.com/actions/setup-python) from 6.3.0 to 7.0.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/actions/setup-python/releases\">actions/setup-python's releases</a>.</em></p>\n<blockquote>\n<h2>v7.0.0</h2>\n<h2>What's C\n[…]\nabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: VaishnaviHire",
"is_bot": true,
"headline": "chore: bump actions/setup-python from 6.3.0 to 7.0.0 (#337)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-20T14:44:21Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c62d01a8923002535f5d405d37b922cab062f7f5",
"body": "Bumps [docker/login-action](https://github.com/docker/login-action) from 4.3.0 to 4.4.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/docker/login-action/releases\">docker/login-action's releases</a>.</em></p>\n<blockquote>\n<h2>v4.4.0</h2>\n<ul>\n<li>Skip em\n[…]\ndabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: derekhiggins",
"is_bot": true,
"headline": "chore: bump docker/login-action from 4.3.0 to 4.4.0 (#333)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-20T08:45:24Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c18141c561cd6965a45879010269c88816e324fe",
"body": "Bumps [actions/setup-go](https://github.com/actions/setup-go) from 6.5.0 to 7.0.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/actions/setup-go/releases\">actions/setup-go's releases</a>.</em></p>\n<blockquote>\n<h2>v7.0.0</h2>\n<h2>What's Changed</h2>\n<ul>\n[…]\ndabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: derekhiggins",
"is_bot": true,
"headline": "chore: bump actions/setup-go from 6.5.0 to 7.0.0 (#334)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-20T08:35:14Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "94e24a54c562e1bd57b671d67e1fe6b0eea4b90e",
"body": "…335)\n\nBumps [github.com/go-openapi/jsonpointer](https://github.com/go-openapi/jsonpointer) from 0.24.0 to 1.0.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/go-openapi/jsonpointer/releases\">github.com/go-openapi/jsonpointer's releases</a>.</em></p>\n<bl\n[…]\ndabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: derekhiggins",
"is_bot": true,
"headline": "chore: bump github.com/go-openapi/jsonpointer from 0.24.0 to 1.0.0 (#…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-20T08:23:19Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "76396304eea796c0f1386ec914b2400f725ce398",
"body": "New issue currently blocking e2e-tests from starting, even on `main`.\n\n\nApproved-by: nathan-weinberg\n\nApproved-by: VaishnaviHire",
"is_bot": false,
"headline": "fix: add missing image registry prefix to unblock tests (#336)",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-07-17T18:18:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "58b5db534ca8bbd5e7cc0b20cd98d10142a284e4",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "docs: telemetry and samples",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-07-16T17:21:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "70becbf8abf465350a26464d8b8a3a90bc47b0e8",
"body": "## Summary\n\n- Integrate `controller-runtime-common/pkg/tls` for TLS profile support\n- Fetch the cluster APIServer TLS profile at startup with 10s context timeout (OpenShift only, fail closed on unexpected errors)\n- Handle transient API errors (ServiceUnavailable, Timeout, TooManyRequests) gracefully\n[…]\ngenerated and committed\n- [ ] Existing unit tests pass\n- [ ] CI green\n\nRef: [RHOAIENG-67674](https://redhat.atlassian.net/browse/RHOAIENG-67674)\n\n\nApproved-by: VaishnaviHire\n\nApproved-by: derekhiggins",
"is_bot": false,
"headline": "feat: integrate with cluster TLS security profile (#325)",
"author_name": "Ugo Giordano",
"author_login": "ugiordan",
"committed_at": "2026-07-16T16:26:06Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "27075d9c5d6fdb6dc9edb299ca9336f17c3519a3",
"body": "Bumps [github.com/go-openapi/jsonpointer](https://github.com/go-openapi/jsonpointer) from 0.23.1 to 0.24.0.\n- [Release notes](https://github.com/go-openapi/jsonpointer/releases)\n- [Commits](https://github.com/go-openapi/jsonpointer/compare/v0.23.1...v0.24.0)\n\n---\nupdated-dependencies:\n- dependency-n\n[…]\n github.com/go-openapi/jsonpointer\n dependency-version: 0.24.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump github.com/go-openapi/jsonpointer from 0.23.1 to 0.24.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-16T11:53:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "35c42975b81ab91e78702f594802f2780f0a44dc",
"body": "Bumps [docker/login-action](https://github.com/docker/login-action) from 4.2.0 to 4.3.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/docker/login-action/releases\">docker/login-action's releases</a>.</em></p>\n<blockquote>\n<h2>v4.3.0</h2>\n<ul>\n<li>Preserv\n[…]\ndabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: derekhiggins",
"is_bot": true,
"headline": "chore: bump docker/login-action from 4.2.0 to 4.3.0 (#321)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-16T10:41:39Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "94edc10d109f7852ccd62ec94bc005e873d87935",
"body": "Bumps [golang.org/x/net](https://github.com/golang/net) from 0.41.0 to 0.55.0.\n- [Commits](https://github.com/golang/net/compare/v0.41.0...v0.55.0)\n\n---\nupdated-dependencies:\n- dependency-name: golang.org/x/net\n dependency-version: 0.55.0\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump golang.org/x/net from 0.41.0 to 0.55.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-16T10:30:23Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "87a777719590b77a30b9fb99247056b830ac70aa",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "refactor: telemetry and related tests",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-07-15T19:31:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "de4f12137fbed1976295b43c37c454f2265da66e",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "refactor: telemetry revisions",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-07-14T18:37:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "85481ea00b644f68defc44e33e5b09b42d717998",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "refactor: telemetry config tweaks for CMO support",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-07-14T18:37:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "386a4be52f0e8664d239019b57f4bc9917017753",
"body": "Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "test: add monitoring configuration and ServiceMonitor render tests",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-07-14T17:27:22Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "63f1066655ef907cb8ab89e613c1cbe4301de52b",
"body": "… references to avoid CI failures\n\nSigned-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "fix: the inline::transformers provider was removed upstream. updating…",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-07-13T21:19:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "97ca4837b1a28a498643b5f7ddbfa469c991347b",
"body": "Extract env override logic into applyEnvOverrides to bring cyclop\ncomplexity from 11 to within the limit of 10.\n\nCo-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix: reduce cyclomatic complexity in configureContainerEnvironment",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-07-10T13:21:45Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "c16fef870df4ac1bc3058bc9ae3877c5e9815a41",
"body": "Stop replacing the container entrypoint with an inline startup script\nwhen overrideConfig is used. Instead, set RUN_CONFIG_PATH and OGX_CONFIG\nenv vars so the image's own entrypoint handles config selection. This\npreserves OTEL auto-instrumentation and eliminates a divergent startup\ncode path.\n\nBrea\n[…]\nes\nthey didn't have the ogx module name - these are already non-functional.\n\nRef: RHAIENG-3328\n\nCo-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>\nSigned-off-by: Derek Higgins <derekh@redhat.com>",
"is_bot": false,
"headline": "fix: preserve image entrypoint when using overrideConfig",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-07-10T13:21:45Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "3d1297744b057f0f38059e4f50312d7b0cb39edc",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "refactor: edits to telemetric related options, cardinality",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-07-09T16:23:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b092887788dda70424ec20b68ea81a7d8af6d87c",
"body": "Add monitoring resource support to the operator:\n\n- ServiceMonitor targeting metrics port 9464 with 60s scrape interval\n- PrometheusRule with ogx:api_info recording rules for the Telemeter\n pipeline (inference, vector_io, responses, rag, agentic), aggregated\n via sum() to strip high-cardinality la\n[…]\nBLED,\n OGX_METRICS_HOST, OGX_METRICS_PORT) and container port configuration\n- Conditional gating on MonitoringCRDsAvailable for both resources\n\nCo-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat: add ServiceMonitor, PrometheusRule, and metrics NetworkPolicy",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-07-07T09:18:25Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "11973425a50900aed678d05373033087d8a588fb",
"body": "Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) from 4.1.0 to 4.2.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/docker/setup-buildx-action/releases\">docker/setup-buildx-action's releases</a>.</em></p>\n<blockquote>\n<h2>\n[…]\not ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: nathan-weinberg",
"is_bot": true,
"headline": "chore: bump docker/setup-buildx-action from 4.1.0 to 4.2.0 (#322)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-07-02T13:55:50Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "121c1b4235846fe5ea6de7605fb48605a2c73b2c",
"body": "Bumps [github.com/go-openapi/jsonpointer](https://github.com/go-openapi/jsonpointer) from 0.22.5 to 0.23.1.\n- [Release notes](https://github.com/go-openapi/jsonpointer/releases)\n- [Commits](https://github.com/go-openapi/jsonpointer/compare/v0.22.5...v0.23.1)\n\n---\nupdated-dependencies:\n- dependency-n\n[…]\n github.com/go-openapi/jsonpointer\n dependency-version: 0.23.1\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump github.com/go-openapi/jsonpointer from 0.22.5 to 0.23.1",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-25T08:10:55Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bc1d8ec96441a94936f72abfb77f185a5bdc80d6",
"body": "Bumps [go.uber.org/zap](https://github.com/uber-go/zap) from 1.27.1 to 1.28.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/uber-go/zap/releases\">go.uber.org/zap's releases</a>.</em></p>\n<blockquote>\n<h2>v1.28.0</h2>\n<p>Enhancements:</p>\n<ul>\n<li><a href\n[…]\npgrade to it yourself)\n\n\n</details>\n\n> **Note**\n> Automatic rebases have been disabled on this pull request as it has been open for over 30 days.\n\n\n\nApproved-by: rhdedgar\n\nApproved-by: nathan-weinberg",
"is_bot": true,
"headline": "chore: bump go.uber.org/zap from 1.27.1 to 1.28.0 (#291)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-24T16:48:40Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5c258ae22d73acb4e786271eeacb8b6dbb3889e6",
"body": "Bumps [github.com/google/go-containerregistry](https://github.com/google/go-containerregistry) from 0.20.7 to 0.21.7.\n- [Release notes](https://github.com/google/go-containerregistry/releases)\n- [Commits](https://github.com/google/go-containerregistry/compare/v0.20.7...v0.21.7)\n\n---\nupdated-dependen\n[…]\nub.com/google/go-containerregistry\n dependency-version: 0.21.7\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump github.com/google/go-containerregistry from 0.20.7 to 0.21.7",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-24T16:35:14Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "6ee7d7a513163617134e4dd7bb30c9896c21a9cf",
"body": "Signed-off-by: Nathan Weinberg <nweinber@redhat.com>",
"is_bot": false,
"headline": "fix(ci): remove DCO check from Mergify (#317)",
"author_name": "Nathan Weinberg",
"author_login": "nathan-weinberg",
"committed_at": "2026-06-24T14:37:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e1c321021d8cad9f405df42f08213b7c5d5bb3e9",
"body": "Bumps [actions/setup-go](https://github.com/actions/setup-go) from 6.4.0\nto 6.5.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/actions/setup-go/releases\">actions/setup-go's\nreleases</a>.</em></p>\n<blockquote>\n<h2>v6.5.0</h2>\n<h2>What's Changed</h2>\n<h3>\n[…]\n: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: mergify[bot] <37929162+mergify[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump actions/setup-go from 6.4.0 to 6.5.0 (#316)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-24T14:04:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bef73e496a616174481c663ea20fb812c4eb7b7e",
"body": "Bumps [actions/setup-python](https://github.com/actions/setup-python)\nfrom 6.2.0 to 6.3.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/actions/setup-python/releases\">actions/setup-python's\nreleases</a>.</em></p>\n<blockquote>\n<h2>v6.3.0</h2>\n<h2>What's C\n[…]\nnless you reopen the\nPR or upgrade to it yourself)\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump actions/setup-python from 6.2.0 to 6.3.0 (#315)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-24T13:58:55Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "fab1a4b2db2ae6ca4d4594e453f5fe7879b88b53",
"body": "Addressing the disconnected scanner results from\nhttps://github.com/opendatahub-io/disconnected-readiness-scorer/actions/runs/27770487578.\nThe remediation documentation for that is located at\nhttps://github.com/opendatahub-io/disconnected-readiness-scorer/blob/main/docs/remediation-guide.md.\n\nAdds g\n[…]\noff-by: Doug Edgar <dedgar@redhat.com>\nCo-authored-by: Nathan Weinberg <31703736+nathan-weinberg@users.noreply.github.com>\nCo-authored-by: mergify[bot] <37929162+mergify[bot]@users.noreply.github.com>",
"is_bot": false,
"headline": "refactor: add necessary image placeholders for disconnected (#312)",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-06-23T15:57:55Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "462f8f3d0f46e7917230d8ada19fb6912f57dd12",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.3\nto 7.0.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/actions/checkout/releases\">actions/checkout's\nreleases</a>.</em></p>\n<blockquote>\n<h2>v7.0.0</h2>\n<h2>What's Changed</h2>\n<ul>\n[…]\nendabot[bot]@users.noreply.github.com>\nCo-authored-by: Nathan Weinberg <31703736+nathan-weinberg@users.noreply.github.com>\nCo-authored-by: mergify[bot] <37929162+mergify[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump actions/checkout from 6.0.3 to 7.0.0 (#313)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-23T15:22:39Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "36e8989bec143def8e897203b3fec067521a9b2f",
"body": "## Summary\n- Adds a Mergify rule to automatically update non-draft, non-conflicting\nPRs when they fall behind main\n- Mirrors the change from\n[ogx-distribution#453](https://github.com/opendatahub-io/ogx-distribution/pull/453)\n\n## Test plan\n- [ ] Verify Mergify picks up the new rule after merge\n- [ ] Confirm PRs behind main get auto-updated\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\nCo-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "ci: add Mergify rule to auto-update PRs behind main (#314)",
"author_name": "Nathan Weinberg",
"author_login": "nathan-weinberg",
"committed_at": "2026-06-23T14:13:04Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "efbd3b2ba44b2d7d88dab4bdadfb0e2862486218",
"body": "…umps (#311)\n\nSigned-off-by: Nathan Weinberg <nweinber@redhat.com>\nCo-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "ci: require only 1 approval to auto-merge GitHub Actions dependency b…",
"author_name": "Nathan Weinberg",
"author_login": "nathan-weinberg",
"committed_at": "2026-06-23T13:44:01Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "01f73e54ed1bef3330f17dec071964cba62b0fef",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.2\nto 6.0.3.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/actions/checkout/releases\">actions/checkout's\nreleases</a>.</em></p>\n<blockquote>\n<h2>v6.0.3</h2>\n<h2>What's Changed</h2>\n<ul>\n[…]\nndabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Nathan Weinberg <31703736+nathan-weinberg@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump actions/checkout from 6.0.2 to 6.0.3 (#301)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-23T13:26:36Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bc07a26c047094fb79e9074b9db351b50f765396",
"body": "Bumps [docker/login-action](https://github.com/docker/login-action) from\n4.1.0 to 4.2.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/docker/login-action/releases\">docker/login-action's\nreleases</a>.</em></p>\n<blockquote>\n<h2>v4.2.0</h2>\n<ul>\n<li>Bump <c\n[…]\nndabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>\nCo-authored-by: Nathan Weinberg <31703736+nathan-weinberg@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump docker/login-action from 4.1.0 to 4.2.0 (#299)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-06-23T13:22:11Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "f67620664e1a84cd40f05517a99eb90bf5836ca3",
"body": "…p (#309)\n\nGenerated config cleanup lists ReplicaSets to preserve ConfigMaps still\nreferenced by in-flight rollouts. Add ReplicaSet cache coverage and RBAC\nso that lookup works reliably under the controller-runtime cached\nclient.\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>",
"is_bot": false,
"headline": "fix: Add ReplicaSet cache and RBAC access for generated config cleanu…",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-06-17T21:05:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7a0f3d95c18565c5a55bdb60357c9d08815b96b1",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "feat: support for PrometheusRules and ServiceMonitors permission",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-06-17T19:11:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "52fc13773688955226bc6ae82f3ba5f404145574",
"body": "This PR implements and documents the OGX runtime config generation\npipeline driven by OGXServer CR fields.\n\nRuntime config generation\nGenerates config.yaml from declarative fields:\n```\nspec.providers\nspec.resources\nspec.storage\nspec.disabledAPIs\n```\n\nUses OCI label `com.ogx.distribution.configs` as \n[…]\nverride\ndeclarative generation.\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>\nCo-authored-by: Eoin Fennessy <efenness@redhat.com>\nCo-authored-by: Claude Opus 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "Add config generation pipeline (#295)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-06-15T13:01:41Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "f16f55e766a24d4c51c8de5b59f299f1812f7a4a",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "feat: add CRD scaffolding for metrics and monitoring",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-06-11T15:34:20Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a3c3412fed1b4c9595571cb4a444c4eb4bc0a884",
"body": "## Summary\n\n- Adds an optional `spec.registryRefreshIntervalSeconds` field\n(`*int32`, minimum 1) to the OGXServer CRD for configuring the model\nregistry refresh interval\n- Passes the value as `OGX_REGISTRY_REFRESH_INTERVAL_SECONDS` env var to\nthe container; omitted when unset so the server's built-i\n[…]\nlSeconds:\n60` and verify the env var appears on the pod\n\n🤖 Generated with [Claude Code](https://claude.com/claude-code)\n\n---------\n\nCo-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat: add registryRefreshIntervalSeconds field to OGXServer CRD (#306)",
"author_name": "Nathan Weinberg",
"author_login": "nathan-weinberg",
"committed_at": "2026-06-11T14:13:56Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "d3b8e6fcebd683c27bb1b108742a28442022dd2e",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "fix: rename distro orgs so images can pull during tests",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-06-10T20:50:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "cc8412d55c51fc1a02d4bf27636034a8d26c9a36",
"body": "Provides build/test commands, architecture overview, reconciliation\npipeline, and code conventions so future Claude Code sessions can be\nproductive immediately.\n\nSigned-off-by: Nathan Weinberg <nweinber@redhat.com>\nCo-authored-by: Claude Opus 4.6 (1M context) <noreply@anthropic.com>",
"is_bot": false,
"headline": "docs: add CLAUDE.md for Claude Code onboarding (#303)",
"author_name": "Nathan Weinberg",
"author_login": "nathan-weinberg",
"committed_at": "2026-06-10T18:05:48Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "d34ad1a8e9fa540594f0931b5dedf9b88ec325ad",
"body": "Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) from 4.0.0 to 4.1.0.\n- [Release notes](https://github.com/docker/setup-buildx-action/releases)\n- [Commits](https://github.com/docker/setup-buildx-action/compare/4d04d5d9486b7bd6fa91e7baf45bbb4f8b9deedd...d7f5e7f509e45c\n[…]\ncy-name: docker/setup-buildx-action\n dependency-version: 4.1.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump docker/setup-buildx-action from 4.0.0 to 4.1.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-05-27T11:30:00Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "d2ecf4f2be3ee654ae741a358dd317e6c4d24d94",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "chore: cleanup old unused references to the removed Safety / Shields API",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-05-15T17:52:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a129beeba182b7437d8332a54fedc5a8ad1d5ac1",
"body": "StartupScript that is used by custom user config still refers to\nllama-stack client. This commit fixes the references to point to ogx\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>",
"is_bot": false,
"headline": "fix: Update startupScript with ogx (#297)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-05-14T21:54:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "17c192b2999f87ac261f2590a243068a3fc56d67",
"body": "- Rewrite all E2E tests from llamastack.io/v1alpha1\nLlamaStackDistribution to ogx.io/v1beta1 OGXServer, updating spec\nstructure, namespaces, and helper utilities\n- Update all operator documentation (README, CONTRIBUTING,\ncreate-operator, ca-bundle-configuration) to reflect OGX naming, new CRD\nschema\n[…]\nlamastackdistributions.yaml)\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>\nCo-authored-by: Claude Opus 4.6 <noreply@anthropic.com>\nCo-authored-by: Eoin Fennessy <fennessyeoin@gmail.com>",
"is_bot": false,
"headline": "feat: Update E2E tests, controller tests, docs (#293)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-05-13T12:59:10Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "29760ad112f0d82f46f1c629dab52caad220a2ff",
"body": "**Pre-req:** Follow-up to #290 . That PR should be reviewed and merged\nfirst\n\nThis PR implements PR 2b of 003-ogx-rename: annotation-driven adoption\nof legacy LLSD resources into OGXServer, plus adoption-focused test\ncoverage.\n\nIt adds controller logic to:\n\n- adopt legacy storage (PVC) and networkin\n[…]\nrupt normal reconcile\nbehavior.\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>\nCo-authored-by: Claude Opus 4.6 <noreply@anthropic.com>\nCo-authored-by: Eoin Fennessy <efenness@redhat.com>",
"is_bot": false,
"headline": "feat(controller): add legacy resource adoption for OGXServer (#292)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-05-08T13:39:48Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "58a02ea5678d96b0b3dd3ffd5d347e6ebc85306a",
"body": "- Add detailed per-provider configuration: network settings (TLS, proxy,\ntimeouts, headers), allowed models, and refresh controls via\n`RemoteInferenceCommonConfig`\n- Replace `CABundleConfig` and `OverrideConfigSpec` with\n`ConfigMapKeyRef`-based types; add `TLSClientConfig` with mTLS client\nidentity \n[…]\n\n- Add `MinItems`/`MaxItems` validation on all custom provider arrays\n- Removed now-redundant runtime `validateConfigMapKeys` function and\ntest\n\nCo-authored-by: Claude Opus 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(api): Refine provider specs; remove safety API (#294)",
"author_name": "Eoin Fennessy",
"author_login": "eoinfennessy",
"committed_at": "2026-05-06T14:47:29Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "b35094a32e44a091d986b4b8be58e56df2bc1039",
"body": "Pre-req: Review and merge #289 \n \n## Summary\n\n- Renames `LlamaStackDistributionReconciler` → `OGXServerReconciler` and\nrewires\nthe entire controller, `pkg/deploy`, and `pkg/cluster` to the\n`ogx.io/v1beta1`\n `OGXServer` CRD types introduced in the prior PR.\n- Removes the global ConfigMap-based featu\n[…]\nfy no remaining references to `v1alpha1`,\n`LlamaStackDistribution`,\n `llama-stack-operator`, or `llamastack.io` in `.go`/`.yaml` files\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>",
"is_bot": false,
"headline": "(feat)controller: Add ogx controller (reconciler rename) (#290)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-05-05T15:18:47Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "bffae1fd44bcbc947e579f0971ccea349a314680",
"body": "…289)\n\n- Introduce the `OGXServer CRD` under `ogx.io/v1beta1` with the full\nexpanded API surface from spec 002 (distribution, providers, resources,\nstate storage, network, workload, externalProviders, overrideConfig)\nplus adoption annotation helpers and CEL validations.\n- Redesign `spec.network` to \n[…]\nroller\ncompatibility until PR2.\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>\nCo-authored-by: Eoin Fennessy <efenness@redhat.com>\nCo-authored-by: Claude Opus 4.6 <noreply@anthropic.com>",
"is_bot": false,
"headline": "feat(api): Add OGXServer CRD types and renamed operator references (#…",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-05-01T15:42:49Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "49aa1265e6fb9062cd6215750c37809737c6b2bb",
"body": "## Summary\n\n- Introduce spec files for the OGX (Open GenAI Stack) operator rename\n- Replace `LlamaStackDistribution` (`llamastack.io/v1alpha1`) with\n`OGXServer` (`ogx.io/v1beta1`) as a breaking change, folding in the\nexpanded API surface from spec 002 (providers, resources, state storage,\nnetworking\n[…]\n: Create OGXServer CR with ogx.io/adopt-storage annotation\nStep 5: (Optional) Add ogx.io/adopt-networking annotation\nStep 6: Delete old CRD\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>",
"is_bot": false,
"headline": "feat: Rename Llama Stack to OGX (#288)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-04-27T15:51:15Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8eca730e2de1f5075751e2c47460dd7bcf6cb03a",
"body": "Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) from 3.12.0 to 4.0.0.\n- [Release notes](https://github.com/docker/setup-buildx-action/releases)\n- [Commits](https://github.com/docker/setup-buildx-action/compare/8d2750c68a42422c14e847fe6c8ac0403b4cbd6f...4d04d5d9486b7\n[…]\ncy-name: docker/setup-buildx-action\n dependency-version: 4.0.0\n dependency-type: direct:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump docker/setup-buildx-action from 3.12.0 to 4.0.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-21T14:30:03Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "78b92c914a622cfe6d1c5395ce9239f839da2127",
"body": "Bumps [GoTestTools/limgo-action](https://github.com/gotesttools/limgo-action) from 1.0.2 to 1.1.0.\n- [Release notes](https://github.com/gotesttools/limgo-action/releases)\n- [Commits](https://github.com/gotesttools/limgo-action/compare/d4a725a46ab3bdbbf23186bbbe54b4ff4a35d5a7...36fa41fcb568acfcb15526\n[…]\nency-name: GoTestTools/limgo-action\n dependency-version: 1.1.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump GoTestTools/limgo-action from 1.0.2 to 1.1.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-21T14:25:14Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7735e43c2028bce93afb3a545b41a4c94590bb6b",
"body": "…#259)\n\nBumps [github.com/go-openapi/jsonpointer](https://github.com/go-openapi/jsonpointer) from 0.22.4 to 0.22.5.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/go-openapi/jsonpointer/releases\">github.com/go-openapi/jsonpointer's releases</a>.</em></p>\n<\n[…]\nmmits viewable in <a href=\"https://github.com/go-openapi/jsonpointer/compare/v0.22.4...v0.22.5\">compare view</a></li>\n</ul>\n</details>\n<br />\n\n\n\nApproved-by: derekhiggins\n\nApproved-by: nathan-weinberg",
"is_bot": true,
"headline": "chore: bump github.com/go-openapi/jsonpointer from 0.22.4 to 0.22.5 (…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-15T01:51:16Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "4a5ab69583cbfe2bb9968f23f939d2ca6818bc49",
"body": "Bumps [docker/login-action](https://github.com/docker/login-action) from 4.0.0 to 4.1.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/docker/login-action/releases\">docker/login-action's releases</a>.</em></p>\n<blockquote>\n<h2>v4.1.0</h2>\n<ul>\n<li>Fix sco\n[…]\nn/compare/b45d80f862d83dbcd57f89517bcf500b2ab88fb2...4907a6ddec9925e35a0a9e82d7399ccc52663121\">compare view</a></li>\n</ul>\n</details>\n<br />\n\n\n\nApproved-by: VaishnaviHire\n\nApproved-by: nathan-weinberg",
"is_bot": true,
"headline": "chore: bump docker/login-action from 4.0.0 to 4.1.0 (#281)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-15T01:41:21Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "6d3620ab46779953f3c4befadc3cefb6f77c5ddc",
"body": "Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 7.0.0 to 7.0.1.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/actions/upload-artifact/releases\">actions/upload-artifact's releases</a>.</em></p>\n<blockquote>\n<h2>v7.0.1</h2>\n\n[…]\nill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: nathan-weinberg\n\nApproved-by: VaishnaviHire",
"is_bot": true,
"headline": "chore: bump actions/upload-artifact from 7.0.0 to 7.0.1 (#283)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-04-13T18:45:30Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "8296cb67400b9764a565c7c107175618e60e26bf",
"body": "[RHOAIENG-3916](https://issues.redhat.com/browse/RHOAIENG-3916)\n\n### Description\n\nCompanion to opendatahub-io/llama-stack-distribution#318.\n\nDocuments that `inline::milvus` (enabled via `ENABLE_INLINE_MILVUS`)\nis only supported in single-worker, single-replica deployments. The\noperator does not manage or validate this env var.\n\n### How Has This Been Tested?\n\n```bash\nmake test\n```\n\n### Test Impact\n\nNone. Documentation only.\n\n\nApproved-by: VaishnaviHire\n\nApproved-by: derekhiggins",
"is_bot": false,
"headline": "docs: document ENABLE_INLINE_MILVUS limitations in README (#280)",
"author_name": "Matt Leader",
"author_login": "mfleader",
"committed_at": "2026-04-07T13:51:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2d2ca4e8b703f1fb6a8ab3f2e038e82eb837d423",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "fix: memory improvements for ConfigMap tracking",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-04-02T19:58:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "af77b7bc59d899b3d3c590e676f21d5fe9f7e3e2",
"body": "Fixes CVE-2025-61726\n\n\nApproved-by: nathan-weinberg\n\nApproved-by: derekhiggins",
"is_bot": false,
"headline": "fix: Bump go version to 1.25.8 (#247)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-03-31T16:22:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2457341c33f1700d712455298bc9a574a499766f",
"body": "Bumps [actions/setup-go](https://github.com/actions/setup-go) from 6.3.0 to 6.4.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/actions/setup-go/releases\">actions/setup-go's releases</a>.</em></p>\n<blockquote>\n<h2>v6.4.0</h2>\n<h2>What's Changed</h2>\n<h3>\n[…]\nill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: nathan-weinberg\n\nApproved-by: VaishnaviHire",
"is_bot": true,
"headline": "chore: bump actions/setup-go from 6.3.0 to 6.4.0 (#279)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-31T14:39:22Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "0bae09af384ed80aaca09fc50861ba556e7fed6a",
"body": "…ed (#275)\n\n## Problem\n\nWhen `spec.server.userConfig` is removed from a `LlamaStackDistribution` resource, the `user-config` volume and volumeMount persist in the Deployment — new pods continue mounting the old ConfigMap.\n\n## Root Cause\n\nThe Deployment is initially created via `cli.Create` (no SSA f\n[…]\nb-tests for the detection function\n- `TestUserConfigVolumeRemoval` — envtest integration test reproducing the exact bug\n\nAll existing tests pass.\n\n\nApproved-by: derekhiggins\n\nApproved-by: eoinfennessy",
"is_bot": false,
"headline": "fix(deploy): remove stale user-config volume when userConfig is clear…",
"author_name": "EleanorWho",
"author_login": "EleanorWho",
"committed_at": "2026-03-31T10:11:08Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "00bc1f3286004ef99a165860b5bcbc62e0c91d5a",
"body": "Fixes RHAIENG-3783 - PodDisruptionBudgetAtLimit alert firing for\nllama-stack-k8s-operator PDB on fresh RHOAI 3.3 deployments.\n\n## Root Cause\n\nThe operator's PodDisruptionBudget (PDB) was configured with\nminAvailable: 1 while the controller manager deployment runs a single\nreplica, resulting in:\n al\n[…]\ndhat.atlassian.net/browse/RHAIENG-3783\n\nSigned-off-by: Derek Higgins <dhiggins@redhat.com>\nCo-authored-by: Derek Higgins <dhiggins@redhat.com>\nCo-authored-by: Claude Sonnet 4.5 <noreply@anthropic.com>",
"is_bot": false,
"headline": "fix(operator): use maxUnavailable for single-replica PDBs (#277)",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-03-27T13:00:29Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "1546718ee6f1226de7e858f7fe5b9b6e2212181d",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "fix(ca-bundle): handle whitespace-only keys as valid empty state",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-03-26T17:03:08Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "aacc29237229e7e70200cc606e45ed03b62a5e70",
"body": "Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>\nSigned-off-by: Matthew F Leader <mleader@redhat.com>",
"is_bot": false,
"headline": "fix(deploy): set Recreate strategy when persistent storage is configured",
"author_name": "Matthew F Leader",
"author_login": "mfleader",
"committed_at": "2026-03-19T21:23:53Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "22938631e3df065144dc49d4a6016490225e6388",
"body": "Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>\nSigned-off-by: Matthew F Leader <mleader@redhat.com>",
"is_bot": false,
"headline": "style(deploy): use existing deploymentKind constant in suite_test.go",
"author_name": "Matthew F Leader",
"author_login": "mfleader",
"committed_at": "2026-03-19T21:23:53Z",
"body_truncated": false,
"is_coding_agent": true
},
{
"oid": "552009e6716ad80a6d85232ad3e1e02bac267d91",
"body": "…(#267)\n\nThe default networkpolicy is restrictive since our approach was that the operator secures what it owns and makes it easy for users to open access when they need it, without touching anything outside its scope\n\nRemove the requirement to allow traffic only from app.kubernetes.io/part-of: llama-stack pods within the lls-d instance namespace. Update the documentation to reflect this change\n\n\nApproved-by: eoinfennessy\n\nApproved-by: derekhiggins",
"is_bot": false,
"headline": "Allow unrestricted access to Llamastack server within same namespace …",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-03-11T12:42:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d25d53950325919fb1d84a606194dc97be1f33f6",
"body": "## Summary\n\nRevised v1alpha2 operator-generated config specification, incorporating all critical findings from the PR #253 code review. This is a **spec-only PR** (no implementation code) intended for design validation before implementation begins.\n\nThe key insight from reviewing PR #253: several de\n[…]\n370), [code quality review](https://github.com/llamastack/llama-stack-k8s-operator/pull/253#issuecomment-4025951020)\n\nAssisted-by: 🤖 Claude Code\n\n\nApproved-by: VaishnaviHire\n\nApproved-by: eoinfennessy",
"is_bot": false,
"headline": "docs(spec): revise v1alpha2 spec after PR #253 review (#263)",
"author_name": "Roland Huß",
"author_login": "rhuss",
"committed_at": "2026-03-10T14:00:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "7e37ae2598521217da30fa551d5d8b08bf07612a",
"body": "Bumps [docker/login-action](https://github.com/docker/login-action) from 3.7.0 to 4.0.0.\n- [Release notes](https://github.com/docker/login-action/releases)\n- [Commits](https://github.com/docker/login-action/compare/c94ce9fb468520275223c153574b00df6fe4bcc9...b45d80f862d83dbcd57f89517bcf500b2ab88fb2)\n\n[…]\nependency-name: docker/login-action\n dependency-version: 4.0.0\n dependency-type: direct:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump docker/login-action from 3.7.0 to 4.0.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-03-05T08:30:37Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5d5d64bfa39f4aa72d8919e2f8776be044185ae8",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "ci: setup ARM64 builds with CGO_ENABLED=1 compatibility",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-02-27T20:38:13Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "47bf4e89d287dc4b0a32060190c1a3452aa8ecca",
"body": "Bumps\n[actions/upload-artifact](https://github.com/actions/upload-artifact)\nfrom 6.0.0 to 7.0.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/actions/upload-artifact/releases\">actions/upload-artifact's\nreleases</a>.</em></p>\n<blockquote>\n<h2>v7.0.0</h2>\n\n[…]\nnless you reopen the\nPR or upgrade to it yourself)\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump actions/upload-artifact from 6.0.0 to 7.0.0 (#256)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-27T13:48:25Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5cb01b9addb9e35b40603e60fa12453a93aafeda",
"body": "Bumps [actions/setup-go](https://github.com/actions/setup-go) from 6.1.0 to 6.3.0.\n- [Release notes](https://github.com/actions/setup-go/releases)\n- [Commits](https://github.com/actions/setup-go/compare/4dc6199c7b1a012772edbd06daecab0f50c9053c...4b73464bb391d4059bd26b0524d20df3927bd417)\n\n---\nupdated\n[…]\n- dependency-name: actions/setup-go\n dependency-version: 6.3.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump actions/setup-go from 6.1.0 to 6.3.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-26T14:28:04Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "5c3d7252a93d48c6aadedd29630f28ecb88f8330",
"body": "Bumps [helm/kind-action](https://github.com/helm/kind-action) from 1.13.0 to 1.14.0.\n- [Release notes](https://github.com/helm/kind-action/releases)\n- [Commits](https://github.com/helm/kind-action/compare/92086f6be054225fa813e0a4b13787fc9088faab...ef37e7f390d99f746eb8b610417061a60e82a6cc)\n\n---\nupdat\n[…]\n dependency-name: helm/kind-action\n dependency-version: 1.14.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump helm/kind-action from 1.13.0 to 1.14.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-26T14:18:01Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "24188b09055acb2e286d64de0e4a174227768001",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "docs: adding DfFIPS specifics to Spec Kit Constitution",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2026-02-24T17:33:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "183143cba3b9b764e418cf74b4f36ece05bf8468",
"body": "Downstream linter had a problem with this line, changing upstream\nto avoid future merge conflicts.\n\nSigned-off-by: Derek Higgins <derekh@redhat.com>",
"is_bot": false,
"headline": "chore: Sync linting error",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-02-23T13:58:17Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7e12c88dfc06e17e4fd8c4de8c0fee8570a3b724",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.1 to 6.0.2.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/8e8c483db84b4bee98b60c0\n[…]\n- dependency-name: actions/checkout\n dependency-version: 6.0.2\n dependency-type: direct:production\n update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump actions/checkout from 6.0.1 to 6.0.2",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-19T18:12:28Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "3247bf621c0a2b1fdb49e0c0c4612d361d164485",
"body": "Bumps [docker/login-action](https://github.com/docker/login-action) from 3.6.0 to 3.7.0.\n- [Release notes](https://github.com/docker/login-action/releases)\n- [Commits](https://github.com/docker/login-action/compare/5e57cd118135c172c3672efd75eb46360885c0ef...c94ce9fb468520275223c153574b00df6fe4bcc9)\n\n[…]\nependency-name: docker/login-action\n dependency-version: 3.7.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump docker/login-action from 3.6.0 to 3.7.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-02-19T17:52:53Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "ad78aa034f5d0c9f2bf501ba31678260b95b29e8",
"body": "Docker 29 defaults to the containerd image store which no longer falls back from HTTPS to HTTP when pushing to registries. This broke the e2e test push to the local Kind registry at kind-registry:5000.\n\n\nApproved-by: leseb\n\nApproved-by: mfleader",
"is_bot": false,
"headline": "fix(ci): configure insecure registry for Docker 29 compatibility (#248)",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-02-18T15:12:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "17d03236ef3a5fee0e8e14d93890f65db036f30b",
"body": "## Summary\n\nThis PR adds the specification for the v1alpha2 API, enabling\noperator-generated server configuration. This is a foundational change\nthat will allow users to configure LlamaStack with minimal YAML while\npreserving flexibility.\n\n### Key Features\n\n- **New spec fields**: `providers`, `resou\n[…]\n\n- [ ] Alignment check with design document\n- [ ] Verify no conflicts with ongoing work\n\n🤖 Generated with [Claude Code](https://claude.ai/code)\n\n---------\n\nSigned-off-by: Roland Huß <rhuss@redhat.com>",
"is_bot": false,
"headline": "docs(spec): v1alpha2 operator-generated config specification (#242)",
"author_name": "Roland Huß",
"author_login": "rhuss",
"committed_at": "2026-02-11T17:37:34Z",
"body_truncated": true,
"is_coding_agent": true
},
{
"oid": "c6e3f70b8cdda1410929520b1e4dc39427594f0d",
"body": "Allows users to configure terminationGracePeriodSeconds via spec.server.podOverrides to prevent in-flight requests from being killed during HPA scale-down events.\n\n\nApproved-by: VaishnaviHire\n\nApproved-by: derekhiggins",
"is_bot": false,
"headline": "feat(api): add termination grace period to PodOverrides (#244)",
"author_name": "Matt Leader",
"author_login": "mfleader",
"committed_at": "2026-02-10T15:45:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2776f8799ed71190631b6fa02cc84a8231eccefa",
"body": "When upgrading a version with legacy CA bundle volumes, deployments fail with volume\nvalidation errors if the odh-trusted-ca-bundle ConfigMap exists. The old\noperator used an emptyDir volume (\"ca-bundle\") with an init container to\ncopy certificates, while the new operator uses a managed ConfigMap vo\n[…]\nartifacts (emptyDir volume, source\nConfigMap volume, and init container) in a single operation.\n\nAssisted-by: Claude Sonnet 4.5 <noreply@anthropic.com>\nSigned-off-by: Derek Higgins <derekh@redhat.com>",
"is_bot": false,
"headline": "Fix: CA bundle volume conflict during operator upgrade",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2026-02-05T15:48:41Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "aec113e74516be00cd66ba77d97c2662dc9108b3",
"body": "## Summary\n\nUpdate Go from 1.24 to 1.25 to address CVE-2025-61729, a denial-of-service vulnerability in `crypto/x509.HostnameError.Error()`.\n\n## Vulnerability Details\n\n- **CVE**: CVE-2025-61729\n- **Affected**: crypto/x509 in Go < 1.24.11 and 1.25.0-1.25.4\n- **Impact**: Certificates with excessive ho\n[…]\naffected through Kubernetes client-go dependencies which perform TLS hostname verification.\n\n**Reference**: https://pkg.go.dev/vuln/GO-2025-4155\n\n\nApproved-by: derekhiggins\n\nApproved-by: VaishnaviHire",
"is_bot": false,
"headline": "build(golang): update Go to 1.25 for CVE-2025-61729 (#231)",
"author_name": "Matt Leader",
"author_login": "mfleader",
"committed_at": "2026-01-27T15:13:32Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "11852b7b736cfab1661720d4b3cc98e043195dd0",
"body": "Address errcheck, noctx, and prealloc findings introduced by the v2.8.0 upgrade.\n\nSigned-off-by: Matthew F Leader <mleader@redhat.com>",
"is_bot": false,
"headline": "chore(lint): fix new v2 lint findings",
"author_name": "Matthew F Leader",
"author_login": "mfleader",
"committed_at": "2026-01-26T20:15:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0ff47c35e745c36367c9e67c6b9059d2ecd6e968",
"body": "Upgrade golangci-lint from v1.64.4 to v2.8.0 for future Go 1.25 compatibility.\n\nSigned-off-by: Matthew F Leader <mleader@redhat.com>",
"is_bot": false,
"headline": "chore(lint): migrate golangci-lint to v2.8.0",
"author_name": "Matthew F Leader",
"author_login": "mfleader",
"committed_at": "2026-01-26T20:15:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a56f0f1cedbb99228fa459009a59c9caa7aff792",
"body": "- With NetworkPolicy enabled, external traffic through OpenShift Routes is blocked even when the correct namespaces/labels are configured in allowedFrom. This is because the NetworkPolicy includes an explicit `podSelector: {}` in the ingress rules, which doesn't match HostNetwork traffic from the OpenShift router.\n- Remove references to managed OpenShift Route. LLS operator only creates Ingress resource.\n\n\nApproved-by: leseb\n\nApproved-by: nathan-weinberg",
"is_bot": false,
"headline": "fix: Update networkpolicy to remove podSelectors (#227)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-01-22T16:10:41Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ec6296d8b4e13250ec6d3edc7d7c0b8f2d101b72",
"body": "Bumps [actions/setup-python](https://github.com/actions/setup-python)\nfrom 6.1.0 to 6.2.0.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/actions/setup-python/releases\">actions/setup-python's\nreleases</a>.</em></p>\n<blockquote>\n<h2>v6.2.0</h2>\n<h2>What's C\n[…]\nnless you reopen the\nPR or upgrade to it yourself)\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump actions/setup-python from 6.1.0 to 6.2.0 (#228)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-01-22T14:39:01Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "59051e9cc725b1306947c289aec0504a212f3783",
"body": "Bumps [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) from 3.11.1 to 3.12.0.\n- [Release notes](https://github.com/docker/setup-buildx-action/releases)\n- [Commits](https://github.com/docker/setup-buildx-action/compare/e468171a9de216ec08956ac3ada2f0791b6bd435...8d2750c68a42\n[…]\ny-name: docker/setup-buildx-action\n dependency-version: 3.12.0\n dependency-type: direct:production\n update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump docker/setup-buildx-action from 3.11.1 to 3.12.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2026-01-15T09:01:42Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "246afbbe2c3b68f083f16e12dee1add34a153c33",
"body": "Addressed comments in #221 \n\n\nApproved-by: leseb\n\nApproved-by: mfleader",
"is_bot": false,
"headline": "fix: network resources error handling (#224)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-01-13T21:43:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0f32d801e4ff6c96cd95543a6bf7745fca599883",
"body": "Remove run.yaml references and replace with config.yaml\n\n---------\n\nSigned-off-by: Vaishnavi Hire <vhire@redhat.com>",
"is_bot": false,
"headline": "Update run.yaml references to config.yaml (#223)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-01-12T21:02:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d38317f7a5dd528044a26bbbe956e2eaa221ae09",
"body": "Fixes #212 \n\nI have kept the global `EnableNetworkPolicy` as is, to allow users to add/remove network policies for all lls instances at once.\n\n\nApproved-by: rhdedgar\n\nApproved-by: leseb",
"is_bot": false,
"headline": "Add support for Network config (#221)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2026-01-07T16:35:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0c86fe274938915e25024231cf3de4b6dc13c3bb",
"body": "Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 5.0.0 to 6.0.0.\n- [Release notes](https://github.com/actions/upload-artifact/releases)\n- [Commits](https://github.com/actions/upload-artifact/compare/330a01c490aca151604b8cf639adc76d48f6c5d4...b7c566a772e6b6bfb58ed0dc25\n[…]\ndency-name: actions/upload-artifact\n dependency-version: 6.0.0\n dependency-type: direct:production\n update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore: bump actions/upload-artifact from 5.0.0 to 6.0.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-16T17:08:48Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "a3f79120f4052119679e9a87d302c3c19d3fd3a9",
"body": "…0.7 (#216)\n\nBumps\n[github.com/google/go-containerregistry](https://github.com/google/go-containerregistry)\nfrom 0.20.6 to 0.20.7.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a\nhref=\"https://github.com/google/go-containerregistry/releases\">github.com/google/go-containerregistry's\n[…]\nnless you reopen the\nPR or upgrade to it yourself)\n\n\n</details>\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump github.com/google/go-containerregistry from 0.20.6 to 0.2…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-12T20:23:03Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e3cf2581a67132f91aae410c00228ff33686ee6a",
"body": "Fixes #164 \nExpose `worker` field in `LlamaStackDistribution` CR\n\nExample CR\n```\nspec:\n server:\n containerSpec:\n env:\n - name: OLLAMA_INFERENCE_MODEL\n value: 'llama3.2:1b'\n - name: OLLAMA_URL\n value: 'http://ollama-server-service.ollama-dist.svc.cluster.local:11434'\n name: llama-stack\n distribution:\n name: starter\n workers: 2\n```\n\n\nApproved-by: mfleader\n\nApproved-by: derekhiggins\n\nApproved-by: rhdedgar",
"is_bot": false,
"headline": "feat: Add support for uvicorn workers for llama-stack (#211)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2025-12-12T20:13:39Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1c1ee75f98d36b368e0e0a0509fcd85b7ad0b1bb",
"body": "Signed-off-by: Doug Edgar <dedgar@redhat.com>",
"is_bot": false,
"headline": "chore: log level adjustments",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2025-12-12T19:37:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0e459afc57c833a953aa9dc9d63a0c7b2fad9769",
"body": "Implements a mechanism for the Llama Stack Operator to read and apply\nLLS Distribution image updates from a ConfigMap, enabling independent patching\nfor security fixes or bug fixes without requiring a new LLS Operator.\n\n- Add ImageMappingOverrides field to LlamaStackDistributionReconciler\n- Implemen\n[…]\no-image mappings.\nOverrides take precedence over default distribution images and are refreshed\non each reconciler initialization.\n\nCloses: RHAIENG-1079\nSigned-off-by: Derek Higgins <derekh@redhat.com>",
"is_bot": false,
"headline": "feat: ConfigMap image mapping overrides for LLS Distro",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2025-12-11T09:08:43Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "238b5b6ca3e0d9e47771eed3396ef78ba36f4014",
"body": "o Add operator config detection in configMapUpdatePredicate\no Update feature flags when operator config changes\no Trigger reconciliation of all LlamaStackDistributions on operator config change\n\nSigned-off-by: Derek Higgins <derekh@redhat.com>",
"is_bot": false,
"headline": "Fix operator config ConfigMap watching",
"author_name": "Derek Higgins",
"author_login": "derekhiggins",
"committed_at": "2025-12-11T09:08:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "72def84dba309e5ffdd089940069f8bb2cfc8863",
"body": "…#214)\n\nBumps [github.com/go-openapi/jsonpointer](https://github.com/go-openapi/jsonpointer) from 0.22.3 to 0.22.4.\n<details>\n<summary>Release notes</summary>\n<p><em>Sourced from <a href=\"https://github.com/go-openapi/jsonpointer/releases\">github.com/go-openapi/jsonpointer's releases</a>.</em></p>\n<\n[…]\nill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)\n\n\n</details>\n\n\nApproved-by: nathan-weinberg\n\nApproved-by: VaishnaviHire",
"is_bot": true,
"headline": "chore: bump github.com/go-openapi/jsonpointer from 0.22.3 to 0.22.4 (…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-10T16:08:33Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "c50ff91010bf838a639ac229887b51b1d88664c1",
"body": "Bumps the k8s-dependencies group with 4 updates: [k8s.io/api](https://github.com/kubernetes/api), [k8s.io/apiextensions-apiserver](https://github.com/kubernetes/apiextensions-apiserver), [k8s.io/apimachinery](https://github.com/kubernetes/apimachinery) and [k8s.io/client-go](https://github.com/kuber\n[…]\nnignore <dependency name> <ignore condition>` will remove the ignore condition of the specified dependency and ignore conditions\n\n\n</details>\n\n\nApproved-by: nathan-weinberg\n\nApproved-by: VaishnaviHire",
"is_bot": true,
"headline": "chore: bump the k8s-dependencies group with 4 updates (#215)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-10T15:30:03Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "e7f308b3b967e77d9275d69cc9315e1e3f7018a8",
"body": "Setup multi-arch builds with a manifest that will automatically point to the image of supported architectures.\n\nOn Kubernetes, with these changes, images are still referred to in the same manner, but will resolve to the architecture that is relevant to the node where it is to be run. \n```\n \n[…]\nusers to seamlessly transition between clusters with different architectures, once the distribution changes are also in place.\n\nCloses: RHAIENG-1941\n\n\nApproved-by: mfleader\n\nApproved-by: VaishnaviHire",
"is_bot": false,
"headline": "feat: enable multi-arch builds with ARM compatibility (#206)",
"author_name": "Doug Edgar",
"author_login": "rhdedgar",
"committed_at": "2025-12-10T15:15:27Z",
"body_truncated": true,
"is_coding_agent": false
},
{
"oid": "b9d37d9da0d6ff6ef62be6f2ee4339cbd0f05b9c",
"body": "Remove the check to fetch operator verion only when its not set. This will allow the controller to set the updated version during upgrades\n\n\nApproved-by: nathan-weinberg\n\nApproved-by: mfleader",
"is_bot": false,
"headline": "fix: set correct operator version on upgrade (#213)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2025-12-10T14:54:47Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d9df604a3039870bd7401f2b598d4f6add02a345",
"body": "Add test-e2e job that calls run-e2e-test.yml before building release \nartifacts. Release fails if e2e tests fail.\n\nSigned-off-by: Matthew F Leader <mleader@redhat.com>",
"is_bot": false,
"headline": "feat(ci): add e2e test validation to release workflow (#210)",
"author_name": "Matt Leader",
"author_login": "mfleader",
"committed_at": "2025-12-05T22:02:08Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7dbf881142d4c5494c5195786f3359033f444e13",
"body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.0\nto 6.0.1.\n\nSigned-off-by: dependabot[bot] <support@github.com>\nCo-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>",
"is_bot": true,
"headline": "chore: bump actions/checkout from 6.0.0 to 6.0.1 (#209)",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-12-05T16:59:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "16feef0ca2599ecea9d93b1f4dea8146fa9c6593",
"body": "This PR introduces following changes -\n- Sets Pod Disruption Budget for operator and lls server\n- Configures HPA for lls server. (When HPA is enabled, `replica` field is ignored in LLSD)\n- Sets `TopologySpreadConstraints` for operator and lls server\n\n\nFollow-up -\n- Once this PR is merged, we need to update `run.yaml` with postgres config\n- Update controller to manage Postgres deployment\n\n\nApproved-by: leseb\n\nApproved-by: mfleader",
"is_bot": false,
"headline": "Add support for HA for server and operator (#205)",
"author_name": "Vaishnavi Hire",
"author_login": "VaishnaviHire",
"committed_at": "2025-12-04T17:00:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "87c721611f4b331c16bade42caa22a3dcdfae0a1",
"body": "Add `workflow_call` trigger with `success`, `summary`, and `run_url`\noutputs to enable integration with our automated release processes.\n\nSubsequent work will add a call to the e2e test workflow within the\nGenerate Release workflow.\n\nSigned-off-by: Matthew F Leader <mleader@redhat.com>",
"is_bot": false,
"headline": "feat(ci): make e2e test workflow callable by other workflows (#208)",
"author_name": "Matt Leader",
"author_login": "mfleader",
"committed_at": "2025-12-03T17:43:28Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 13,
"commits_last_year": 151,
"latest_release_at": "2026-07-20T15:12:07Z",
"latest_release_tag": "v0.13.0",
"releases_from_tags": false,
"days_since_last_push": 1,
"active_weeks_last_year": 46,
"days_since_latest_release": 2,
"mean_days_between_releases": 30.7
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": false,
"has_contributing": true,
"health_percentage": 50,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "github.com/ogx-ai/ogx-k8s-operator",
"exists": true,
"license": null,
"keywords": [],
"ecosystem": "go",
"matches_repo": true,
"registry_url": "https://pkg.go.dev/github.com/ogx-ai/ogx-k8s-operator",
"is_deprecated": false,
"latest_version": "v0.13.0",
"repository_url": "https://github.com/ogx-ai/ogx-k8s-operator",
"versions_count": 13,
"total_downloads": null,
"dependents_count": null,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": null,
"first_published_at": null,
"latest_published_at": "2026-07-20T15:09:32Z",
"latest_version_yanked": null,
"days_since_latest_publish": 2
}
]
},
"popularity": {
"forks": 57,
"stars": 29,
"watchers": 5,
"fork_history": {
"days": [
{
"date": "2025-05-01",
"count": 1
},
{
"date": "2025-05-02",
"count": 1
},
{
"date": "2025-05-05",
"count": 1
},
{
"date": "2025-05-06",
"count": 1
},
{
"date": "2025-05-08",
"count": 1
},
{
"date": "2025-05-15",
"count": 1
},
{
"date": "2025-05-19",
"count": 1
},
{
"date": "2025-06-02",
"count": 1
},
{
"date": "2025-06-04",
"count": 1
},
{
"date": "2025-06-08",
"count": 1
},
{
"date": "2025-06-10",
"count": 1
},
{
"date": "2025-06-27",
"count": 1
},
{
"date": "2025-07-02",
"count": 1
},
{
"date": "2025-07-08",
"count": 2
},
{
"date": "2025-07-09",
"count": 1
},
{
"date": "2025-07-18",
"count": 1
},
{
"date": "2025-07-29",
"count": 1
},
{
"date": "2025-08-05",
"count": 1
},
{
"date": "2025-08-14",
"count": 1
},
{
"date": "2025-08-24",
"count": 1
},
{
"date": "2025-08-25",
"count": 1
},
{
"date": "2025-09-10",
"count": 1
},
{
"date": "2025-09-16",
"count": 1
},
{
"date": "2025-09-26",
"count": 1
},
{
"date": "2025-11-09",
"count": 1
},
{
"date": "2025-12-15",
"count": 1
},
{
"date": "2026-01-06",
"count": 1
},
{
"date": "2026-01-10",
"count": 1
},
{
"date": "2026-03-19",
"count": 1
},
{
"date": "2026-03-25",
"count": 1
},
{
"date": "2026-05-06",
"count": 1
},
{
"date": "2026-07-02",
"count": 1
},
{
"date": "2026-07-03",
"count": 1
}
],
"complete": true,
"collected": 34,
"total_forks": 57
},
"star_history": null,
"open_issues_and_prs": 27
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [
"samples"
],
"has_llms_txt": false,
"has_dockerfile": true,
"has_mcp_signal": false,
"bootstrap_files": [
"Makefile"
],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [
"go.mod"
],
"largest_source_bytes": 78898,
"source_files_sampled": 81,
"oversized_source_files": 2,
"agent_instruction_files": [
"CLAUDE.md"
],
"agent_instruction_max_bytes": 6397
},
"dependencies": {
"manifests": [
"go.mod"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [
{
"name": "golang.org/x/net",
"direct": false,
"version": "v0.55.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5942"
],
"fixed_version": "0.56.0",
"advisory_count": 1,
"oldest_advisory_days": 8
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.37.0",
"severity": "unknown",
"ecosystem": "go",
"cvss_score": null,
"advisory_ids": [
"GO-2026-5970"
],
"fixed_version": "0.39.0",
"advisory_count": 1,
"oldest_advisory_days": 8
}
],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {
"unknown": 2
},
"advisory_count": 2,
"affected_count": 2,
"assessed_count": 72,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 0,
"direct_affected_count": 0
},
"ecosystems": [
"go"
],
"dependencies": [
{
"name": "github.com/go-logr/logr",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.4.3"
},
{
"name": "github.com/go-openapi/jsonpointer",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.0.0"
},
{
"name": "github.com/google/go-cmp",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.7.0"
},
{
"name": "github.com/google/go-containerregistry",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.21.7"
},
{
"name": "github.com/openshift/api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20260610192510-1b2a074e0bd6"
},
{
"name": "github.com/openshift/controller-runtime-common",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.0.0-20260428152732-64ee174f5e2e"
},
{
"name": "github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.82.0"
},
{
"name": "github.com/stretchr/testify",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.11.1"
},
{
"name": "go.uber.org/zap",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.28.0"
},
{
"name": "gopkg.in/yaml.v2",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v2.4.0"
},
{
"name": "gopkg.in/yaml.v3",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v3.0.1"
},
{
"name": "k8s.io/api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.35.2"
},
{
"name": "k8s.io/apiextensions-apiserver",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.35.1"
},
{
"name": "k8s.io/apimachinery",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.35.2"
},
{
"name": "k8s.io/client-go",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.35.2"
},
{
"name": "sigs.k8s.io/controller-runtime",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.23.3"
},
{
"name": "sigs.k8s.io/kustomize/api",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.21.0"
},
{
"name": "sigs.k8s.io/kustomize/kyaml",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v0.21.0"
},
{
"name": "sigs.k8s.io/yaml",
"manifest": "go.mod",
"ecosystem": "go",
"version_constraint": "v1.6.0"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "github.com/go-logr/logr",
"direct": true,
"version": "v1.4.3",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/jsonpointer",
"direct": true,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/google/go-cmp",
"direct": true,
"version": "v0.7.0",
"ecosystem": "go"
},
{
"name": "github.com/google/go-containerregistry",
"direct": true,
"version": "v0.21.7",
"ecosystem": "go"
},
{
"name": "github.com/openshift/api",
"direct": true,
"version": "v0.0.0-20260610192510-1b2a074e0bd6",
"ecosystem": "go"
},
{
"name": "github.com/openshift/controller-runtime-common",
"direct": true,
"version": "v0.0.0-20260428152732-64ee174f5e2e",
"ecosystem": "go"
},
{
"name": "github.com/prometheus-operator/prometheus-operator/pkg/apis/monitoring",
"direct": true,
"version": "v0.82.0",
"ecosystem": "go"
},
{
"name": "github.com/stretchr/testify",
"direct": true,
"version": "v1.11.1",
"ecosystem": "go"
},
{
"name": "go.uber.org/zap",
"direct": true,
"version": "v1.28.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/yaml.v2",
"direct": true,
"version": "v2.4.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/yaml.v3",
"direct": true,
"version": "v3.0.1",
"ecosystem": "go"
},
{
"name": "k8s.io/api",
"direct": true,
"version": "v0.35.2",
"ecosystem": "go"
},
{
"name": "k8s.io/apiextensions-apiserver",
"direct": true,
"version": "v0.35.1",
"ecosystem": "go"
},
{
"name": "k8s.io/apimachinery",
"direct": true,
"version": "v0.35.2",
"ecosystem": "go"
},
{
"name": "k8s.io/client-go",
"direct": true,
"version": "v0.35.2",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/controller-runtime",
"direct": true,
"version": "v0.23.3",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/kustomize/api",
"direct": true,
"version": "v0.21.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/kustomize/kyaml",
"direct": true,
"version": "v0.21.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/yaml",
"direct": true,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "github.com/beorn7/perks",
"direct": false,
"version": "v1.0.1",
"ecosystem": "go"
},
{
"name": "github.com/blang/semver/v4",
"direct": false,
"version": "v4.0.0",
"ecosystem": "go"
},
{
"name": "github.com/cespare/xxhash/v2",
"direct": false,
"version": "v2.3.0",
"ecosystem": "go"
},
{
"name": "github.com/davecgh/go-spew",
"direct": false,
"version": "v1.1.2-0.20180830191138-d8f796af33cc",
"ecosystem": "go"
},
{
"name": "github.com/emicklei/go-restful/v3",
"direct": false,
"version": "v3.12.2",
"ecosystem": "go"
},
{
"name": "github.com/evanphx/json-patch/v5",
"direct": false,
"version": "v5.9.11",
"ecosystem": "go"
},
{
"name": "github.com/fsnotify/fsnotify",
"direct": false,
"version": "v1.9.0",
"ecosystem": "go"
},
{
"name": "github.com/fxamacker/cbor/v2",
"direct": false,
"version": "v2.9.0",
"ecosystem": "go"
},
{
"name": "github.com/go-errors/errors",
"direct": false,
"version": "v1.4.2",
"ecosystem": "go"
},
{
"name": "github.com/go-logr/zapr",
"direct": false,
"version": "v1.3.0",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/jsonreference",
"direct": false,
"version": "v0.21.0",
"ecosystem": "go"
},
{
"name": "github.com/go-openapi/swag",
"direct": false,
"version": "v0.23.1",
"ecosystem": "go"
},
{
"name": "github.com/google/btree",
"direct": false,
"version": "v1.1.3",
"ecosystem": "go"
},
{
"name": "github.com/google/gnostic-models",
"direct": false,
"version": "v0.7.0",
"ecosystem": "go"
},
{
"name": "github.com/google/uuid",
"direct": false,
"version": "v1.6.0",
"ecosystem": "go"
},
{
"name": "github.com/josharian/intern",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/json-iterator/go",
"direct": false,
"version": "v1.1.12",
"ecosystem": "go"
},
{
"name": "github.com/mailru/easyjson",
"direct": false,
"version": "v0.9.0",
"ecosystem": "go"
},
{
"name": "github.com/modern-go/concurrent",
"direct": false,
"version": "v0.0.0-20180306012644-bacd9c7ef1dd",
"ecosystem": "go"
},
{
"name": "github.com/modern-go/reflect2",
"direct": false,
"version": "v1.0.3-0.20250322232337-35a7c28c31ee",
"ecosystem": "go"
},
{
"name": "github.com/monochromegane/go-gitignore",
"direct": false,
"version": "v0.0.0-20200626010858-205db1a8cc00",
"ecosystem": "go"
},
{
"name": "github.com/munnerz/goautoneg",
"direct": false,
"version": "v0.0.0-20191010083416-a7dc8b61c822",
"ecosystem": "go"
},
{
"name": "github.com/opencontainers/go-digest",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "github.com/openshift/library-go",
"direct": false,
"version": "v0.0.0-20260213153706-03f1709971c5",
"ecosystem": "go"
},
{
"name": "github.com/pmezard/go-difflib",
"direct": false,
"version": "v1.0.1-0.20181226105442-5d4384ee4fb2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/client_golang",
"direct": false,
"version": "v1.23.2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/client_model",
"direct": false,
"version": "v0.6.2",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/common",
"direct": false,
"version": "v0.66.1",
"ecosystem": "go"
},
{
"name": "github.com/prometheus/procfs",
"direct": false,
"version": "v0.16.1",
"ecosystem": "go"
},
{
"name": "github.com/spf13/pflag",
"direct": false,
"version": "v1.0.10",
"ecosystem": "go"
},
{
"name": "github.com/x448/float16",
"direct": false,
"version": "v0.8.4",
"ecosystem": "go"
},
{
"name": "github.com/xlab/treeprint",
"direct": false,
"version": "v1.2.0",
"ecosystem": "go"
},
{
"name": "go.uber.org/multierr",
"direct": false,
"version": "v1.11.0",
"ecosystem": "go"
},
{
"name": "go.yaml.in/yaml/v2",
"direct": false,
"version": "v2.4.3",
"ecosystem": "go"
},
{
"name": "go.yaml.in/yaml/v3",
"direct": false,
"version": "v3.0.4",
"ecosystem": "go"
},
{
"name": "golang.org/x/net",
"direct": false,
"version": "v0.55.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/oauth2",
"direct": false,
"version": "v0.36.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sync",
"direct": false,
"version": "v0.21.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/sys",
"direct": false,
"version": "v0.46.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/term",
"direct": false,
"version": "v0.43.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/text",
"direct": false,
"version": "v0.37.0",
"ecosystem": "go"
},
{
"name": "golang.org/x/time",
"direct": false,
"version": "v0.11.0",
"ecosystem": "go"
},
{
"name": "gomodules.xyz/jsonpatch/v2",
"direct": false,
"version": "v2.5.0",
"ecosystem": "go"
},
{
"name": "google.golang.org/protobuf",
"direct": false,
"version": "v1.36.8",
"ecosystem": "go"
},
{
"name": "gopkg.in/evanphx/json-patch.v4",
"direct": false,
"version": "v4.13.0",
"ecosystem": "go"
},
{
"name": "gopkg.in/inf.v0",
"direct": false,
"version": "v0.9.1",
"ecosystem": "go"
},
{
"name": "k8s.io/apiserver",
"direct": false,
"version": "v0.35.1",
"ecosystem": "go"
},
{
"name": "k8s.io/klog/v2",
"direct": false,
"version": "v2.130.1",
"ecosystem": "go"
},
{
"name": "k8s.io/kube-openapi",
"direct": false,
"version": "v0.0.0-20250910181357-589584f1c912",
"ecosystem": "go"
},
{
"name": "k8s.io/utils",
"direct": false,
"version": "v0.0.0-20260210185600-b8788abfbbc2",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/json",
"direct": false,
"version": "v0.0.0-20250730193827-2d320260d730",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/randfill",
"direct": false,
"version": "v1.0.0",
"ecosystem": "go"
},
{
"name": "sigs.k8s.io/structured-merge-diff/v6",
"direct": false,
"version": "v6.3.2-0.20260122202528-d9cc6641c482",
"ecosystem": "go"
}
],
"collected": true,
"truncated": false,
"total_count": 72,
"direct_count": 19,
"indirect_count": 53
}
},
"maintainership": {
"issues": {
"open_prs": 7,
"merged_prs": 235,
"open_issues": 20,
"closed_ratio": 0.535,
"closed_issues": 23,
"closed_unmerged_prs": 55
},
"bus_factor": 2,
"bot_contributors": 1,
"top_contributors": [
{
"type": "User",
"login": "VaishnaviHire",
"commits": 73,
"avatar_url": "https://avatars.githubusercontent.com/u/17230536?v=4"
},
{
"type": "User",
"login": "rhdedgar",
"commits": 35,
"avatar_url": "https://avatars.githubusercontent.com/u/10885842?v=4"
},
{
"type": "User",
"login": "mfleader",
"commits": 35,
"avatar_url": "https://avatars.githubusercontent.com/u/65633602?v=4"
},
{
"type": "User",
"login": "leseb",
"commits": 21,
"avatar_url": "https://avatars.githubusercontent.com/u/912735?v=4"
},
{
"type": "User",
"login": "derekhiggins",
"commits": 12,
"avatar_url": "https://avatars.githubusercontent.com/u/883848?v=4"
},
{
"type": "User",
"login": "rhuss",
"commits": 11,
"avatar_url": "https://avatars.githubusercontent.com/u/99080?v=4"
},
{
"type": "User",
"login": "nathan-weinberg",
"commits": 7,
"avatar_url": "https://avatars.githubusercontent.com/u/31703736?v=4"
},
{
"type": "User",
"login": "zdtsw",
"commits": 5,
"avatar_url": "https://avatars.githubusercontent.com/u/915053?v=4"
},
{
"type": "User",
"login": "matzew",
"commits": 2,
"avatar_url": "https://avatars.githubusercontent.com/u/157646?v=4"
},
{
"type": "User",
"login": "anik120",
"commits": 2,
"avatar_url": "https://avatars.githubusercontent.com/u/3811058?v=4"
}
],
"contributors_sampled": 18,
"top_contributor_share": 0.346
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"build-image.yml",
"build-vllm-cpu-image.yml",
"code-coverage.yml",
"generate-release.yml",
"pre-commit.yml",
"release-image.yml",
"run-e2e-test.yml"
],
"has_docs_dir": true,
"linter_configs": [
".golangci.yml"
],
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": true
},
"security_signals": {
"lockfiles": [
"go.sum"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 1,
"reason": "branch protection is not maximal on development and all release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 10,
"reason": "28 out of 28 merged PRs checked by a CI test -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 10,
"reason": "all changesets reviewed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 10,
"reason": "project has 17 contributing companies or organizations",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": 10,
"reason": "no dangerous workflow patterns detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 10,
"reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": 10,
"reason": "packaging workflow detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": 8,
"reason": "dependency not pinned by hash detected -- score normalized to 8",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 0,
"reason": "SAST tool is not run on all commits -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": null,
"reason": "no releases found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": 0,
"reason": "detected GitHub workflow tokens with excessive permissions",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 8,
"reason": "2 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "0fa46859057f43d6dcb2ff5b3499087bbe334960",
"ran_at": "2026-07-23T12:32:31Z",
"aggregate_score": 6.5,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": true
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-07-22T13:34:00Z",
"oldest_open_prs": [
{
"number": 151,
"created_at": "2025-08-29T14:52:20Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 166,
"created_at": "2025-09-26T16:49:41Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 245,
"created_at": "2026-02-10T13:36:19Z",
"last_comment_at": "2026-06-24T16:37:09Z",
"last_comment_author": "dependabot"
},
{
"number": 330,
"created_at": "2026-07-13T22:17:01Z",
"last_comment_at": "2026-07-22T16:44:34Z",
"last_comment_author": "mergify"
},
{
"number": 338,
"created_at": "2026-07-20T14:58:45Z",
"last_comment_at": "2026-07-20T14:59:25Z",
"last_comment_author": "mergify"
},
{
"number": 339,
"created_at": "2026-07-21T13:33:33Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 340,
"created_at": "2026-07-21T13:33:46Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2026-07-20T14:44:22Z",
"ci_last_conclusion": "FAILURE",
"oldest_open_issues": [
{
"number": 13,
"created_at": "2025-05-06T12:53:41Z",
"last_comment_at": "2025-05-09T01:32:49Z",
"last_comment_author": "liangwen12year"
},
{
"number": 15,
"created_at": "2025-05-06T12:55:06Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 24,
"created_at": "2025-05-12T15:57:19Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 38,
"created_at": "2025-05-28T03:39:16Z",
"last_comment_at": "2025-07-23T18:06:39Z",
"last_comment_author": "rhdedgar"
},
{
"number": 55,
"created_at": "2025-06-11T10:21:57Z",
"last_comment_at": "2025-07-22T03:21:31Z",
"last_comment_author": "nithinputhenveettil"
},
{
"number": 73,
"created_at": "2025-06-19T12:30:58Z",
"last_comment_at": "2025-07-30T12:52:24Z",
"last_comment_author": "mfleader"
},
{
"number": 79,
"created_at": "2025-06-25T10:02:00Z",
"last_comment_at": "2025-06-25T12:15:59Z",
"last_comment_author": "zdtsw"
},
{
"number": 91,
"created_at": "2025-07-02T12:26:27Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 117,
"created_at": "2025-07-18T10:52:17Z",
"last_comment_at": "2025-08-01T15:05:25Z",
"last_comment_author": "rhuss"
},
{
"number": 124,
"created_at": "2025-07-23T18:01:26Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 127,
"created_at": "2025-07-25T20:43:53Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 149,
"created_at": "2025-08-28T08:16:53Z",
"last_comment_at": "2025-12-02T20:25:58Z",
"last_comment_author": "nathan-weinberg"
},
{
"number": 150,
"created_at": "2025-08-29T14:52:03Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 234,
"created_at": "2026-01-28T18:06:32Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 235,
"created_at": "2026-01-28T18:06:46Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 236,
"created_at": "2026-01-28T18:06:51Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 237,
"created_at": "2026-01-28T18:06:55Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 238,
"created_at": "2026-01-28T18:07:00Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 261,
"created_at": "2026-03-04T18:41:33Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 269,
"created_at": "2026-03-11T13:10:54Z",
"last_comment_at": null,
"last_comment_author": null
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/ogx-ai/ogx-k8s-operator",
"host": "github.com",
"name": "ogx-k8s-operator",
"owner": "ogx-ai"
},
"metrics": {
"overall": {
"key": "overall",
"band": "good",
"name": "Overall health",
"note": null,
"notes": [],
"value": 76,
"inputs": {
"security": 72,
"vitality": 98,
"community": 55,
"governance": 68,
"engineering": 84
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "excellent",
"name": "Vitality",
"value": 98,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "excellent",
"name": "Development activity",
"note": null,
"notes": [],
"value": 96,
"inputs": {
"commits_last_year": 151,
"human_commit_share": 0.64,
"days_since_last_push": 1,
"active_weeks_last_year": 46
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 1 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "push_recency",
"params": {
"days": 1
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "46/52 weeks with commits",
"points": 31.8,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 46
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "151 commits in the last year",
"points": 18,
"status": "met",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 151
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 100,
"inputs": {
"releases_count": 13,
"latest_release_tag": "v0.13.0",
"releases_from_tags": false,
"days_since_latest_release": 2,
"mean_days_between_releases": 30.7
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "13 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 13
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 2 days ago",
"points": 36,
"status": "met",
"details": [
{
"code": "release_recency",
"params": {
"days": 2
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~30.7 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 30.7
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 5,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 5 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 5
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "moderate",
"name": "Community & Adoption",
"value": 55,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "at_risk",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 41,
"inputs": {
"forks": 57,
"stars": 29,
"watchers": 5,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "29 stars",
"points": 23.5,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 29
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "57 forks",
"points": 14.6,
"status": "partial",
"details": [
{
"code": "forks",
"params": {
"count": 57
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "5 watchers",
"points": 3.3,
"status": "partial",
"details": [
{
"code": "watchers",
"params": {
"count": 5
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "good",
"name": "Community health",
"note": null,
"notes": [],
"value": 70,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": true,
"has_issue_template": false,
"has_code_of_conduct": false,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (MIT)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "MIT"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 18,
"status": "met",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 68,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "moderate",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 63,
"inputs": {
"bus_factor": 2,
"contributors_sampled": 18,
"top_contributor_share": 0.346
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "2 contributor(s) cover half of all commits",
"points": 25.2,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 2
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 35% of commits",
"points": 14.7,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 35
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "18 contributors",
"points": 13.5,
"status": "met",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 18
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 17 contributing companies or organizations",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "good",
"name": "Issue & PR responsiveness",
"note": null,
"notes": [],
"value": 71,
"inputs": {
"merged_prs": 235,
"open_issues": 20,
"closed_issues": 23,
"issue_closed_ratio": 0.535,
"closed_unmerged_prs": 55
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "54% of issues closed",
"points": 25,
"status": "partial",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 54
}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "235/290 decided PRs merged",
"points": 31,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 235,
"decided": 290
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "all changesets reviewed",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "at_risk",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 47,
"inputs": {
"followers": 15,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "ogx-ai",
"public_repos": 10,
"account_age_days": 113
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "15 followers of ogx-ai",
"points": 8.7,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 15,
"login": "ogx-ai"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "10 public repos, account ~0 yr old",
"points": 8.2,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 10
}
},
{
"code": "account_age_years",
"params": {
"years": 0
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"github.com/ogx-ai/ogx-k8s-operator"
],
"ecosystems": "go",
"any_deprecated": false,
"min_days_since_publish": 2
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on go",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "go"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 2 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 2
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "13 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 13
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "good",
"name": "Engineering Quality",
"value": 84,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "excellent",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 94,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": true
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "7 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 7
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": ".golangci.yml",
"points": 16,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".golangci.yml"
}
}
],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 9.6,
"status": "met",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "28 out of 28 merged PRs checked by a CI test -- score normalized to 10",
"points": 20,
"status": "met",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "good",
"name": "Documentation",
"note": null,
"notes": [],
"value": 70,
"inputs": {
"topics": [],
"has_wiki": false,
"homepage": "https://ogx-ai.github.io/",
"has_readme": true,
"has_docs_dir": true,
"has_description": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 25,
"status": "met",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://ogx-ai.github.io/",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "good",
"name": "Security",
"value": 72,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "moderate",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 65,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 17,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 1,
"scorecard_aggregate": 6.5
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection is not maximal on development and all release branches",
"points": 0.8,
"status": "partial",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "28 out of 28 merged PRs checked by a CI test -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "all changesets reviewed",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 17 contributing companies or organizations",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no dangerous workflow patterns detected",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow detected",
"points": 5,
"status": "met",
"details": [],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 8",
"points": 4,
"status": "partial",
"details": [],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "detected GitHub workflow tokens with excessive permissions",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "2 existing vulnerabilities detected",
"points": 6,
"status": "partial",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 72 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories",
"no_advisories_left_outstanding"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 72
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 100,
"inputs": {
"source": "osv",
"advisories": 2,
"affected_packages": 2,
"assessed_packages": 72,
"unassessed_packages": 0,
"affected_by_severity": "unknown 2",
"direct_affected_packages": 0
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "no direct dependency carries a known advisory",
"points": 35,
"status": "met",
"details": [
{
"code": "no_direct_advisories",
"params": {}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory carries a publication date",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_no_publication_date",
"params": {}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 72,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 13
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "excellent",
"name": "AI Readiness",
"value": 86,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "excellent",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 1,
"agent_instruction_files": [
"CLAUDE.md"
],
"agent_instruction_max_bytes": 6397
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "CLAUDE.md",
"points": 45,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "CLAUDE.md"
}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "64 of 64 human commits state their intent (structured subject or explanatory body)",
"points": 40,
"status": "met",
"details": [
{
"code": "legible_history",
"params": {
"legible": 64,
"sampled": 64
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "excellent",
"name": "Verify loop (build / test / typecheck)",
"note": null,
"notes": [],
"value": 98,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"go.sum"
],
"has_dockerfile": true,
"typed_language": true,
"bootstrap_files": [
"Makefile"
],
"has_devcontainer": false,
"has_linter_config": true,
"typecheck_configs": [],
"agent_commit_share": 0.17,
"toolchain_manifests": [
"go.mod"
],
"dependency_bot_commit_share": 0.36
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": "Makefile",
"points": 18,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "Makefile"
}
}
],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": ".golangci.yml",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": ".golangci.yml"
}
}
],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": "Go (statically typed)",
"points": 11,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "Dockerfile, lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "Dockerfile, lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "17 of the last 100 commits agent-authored or agent-credited",
"points": 10,
"status": "met",
"details": [
{
"code": "agent_authored_commits",
"params": {
"count": 17,
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "36 of the last 100 commits are automated dependency updates",
"points": 8,
"status": "met",
"details": [
{
"code": "dependency_bot_commits",
"params": {
"count": 36,
"sampled": 100
}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "dependency not pinned by hash detected -- score normalized to 8",
"points": 8,
"status": "partial",
"details": [],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "excellent",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 99,
"inputs": {
"primary_language": "Go",
"largest_source_bytes": 78898,
"source_files_sampled": 81,
"oversized_source_files": 2
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "Go (statically typed)",
"points": 45,
"status": "met",
"details": [
{
"code": "statically_typed_language",
"params": {
"language": "Go"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "2/81 source files over 60KB",
"points": 53.6,
"status": "partial",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 81,
"oversized": 2
}
}
],
"max_points": 55
}
]
},
{
"key": "ai_interfaces",
"band": "at_risk",
"name": "Machine-readable interfaces",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"example_dirs": [
"samples"
],
"has_mcp_signal": false,
"api_schema_files": []
},
"components": [
{
"key": "api_schema_openapi_graphql_proto",
"name": "API schema (OpenAPI/GraphQL/proto)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 40
},
{
"key": "mcp_server",
"name": "MCP server",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "runnable_examples",
"name": "Runnable examples",
"detail": "samples",
"points": 40,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "samples"
}
}
],
"max_points": 40
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
],
"report_type": "repository",
"generated_at": "2026-07-23T12:33:01.420974Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/o/ogx-ai/ogx-k8s-operator.svg",
"full_name": "ogx-ai/ogx-k8s-operator",
"license_state": "standard",
"license_spdx": "MIT"
}