Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-22 21:14 UTC

oroinc / OroCRMDotmailerBundle

OroCRM package, integrates marketing functionality with dotmailer.

PHPCustom license★ 4 stars⑂ 3 forkssince Jun 2015View on GitHub ↗

oroinc/OroCRMDotmailerBundle holds a health index of 56 out of 100, placing it in the Moderate band. It scores highest on Sustainability & Governance (76/100) and lowest on AI Readiness (29/100). It was last updated today. 5 contributors account for most of its recent work.

56
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

56
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

Oro, Inc.Organization
121 followers104 public repossince Apr 2013

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publish
Packagistoro/crm-dotmailer7.0.36,93616342 days ago

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

75Good · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
11.1/36Commit cadence — 16/52 weeks with commits
14.2/18Commit volume — 37 commits in the last year
6/10OpenSSF Scorecard: Maintained — 8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6
Inputs used
commits_last_year37
human_commit_share1
days_since_last_push0
active_weeks_last_year16
How it's scored
16.2/27Ships releases — 100 version tags (no GitHub releases)
36/36Release recency — latest release 41 days ago
27/27Release cadence — a release every ~36.5 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count100
latest_release_tag6.1.9
releases_from_tagsyes
days_since_latest_release41
mean_days_between_releases36.5
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

37At risk · 18% of overall
How it's scored
7.7/60Stars — 4 stars
2.5/25Forks — 3 forks
9/15Watchers — 43 watchers
Inputs used
forks3
stars4
watchers43
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
16.9/22.5License — license file present, not a recognized license
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno
How it's scored
51.2/80Monthly downloads — 6,936 downloads/month across packagist
4.7/20Registry dependents — 4 packages depend on it
Inputs used
packagesoro/crm-dotmailer
dependents4
ecosystemspackagist
total_downloads302,081
monthly_downloads6,936

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

76Good · 24% of overall
How it's scored
45.9/54Bus factor — 5 contributor(s) cover half of all commits
18.4/22.5Commit distribution — top contributor authored 18% of commits
13.5/13.5Contributor breadth — 66 contributors
10/10OpenSSF Scorecard: Contributors — project has 14 contributing companies or organizations
Inputs used
bus_factor5
contributors_sampled66
top_contributor_share0.184
How it's scored
46.8/46.8Issue resolution — 100% of issues closed
0/38.3PR acceptance — 0/2 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Inputs used
merged_prs0
open_issues0
closed_issues2
issue_closed_ratio1
closed_unmerged_prs2
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
15/25Owner reach — 121 followers of oroinc
25/25Track record — 104 public repos, account ~13 yr old
Inputs used
followers121
owner_typeOrganization
is_verified
owner_loginoroinc
public_repos104
account_age_days4,845
How it's scored
25/25Published & resolvable — 1 package(s) on packagist
35/35Publish recency — latest publish 42 days ago
20/20Version history — 163 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesoro/crm-dotmailer
ecosystemspackagist
any_deprecatedno
min_days_since_publish42

Engineering Quality

Are baseline engineering and documentation practices in place?

40At risk · 20% of overall
How it's scored
0/24CI workflows
24/24Tests present
0/16Linter config
0/9.6Pre-commit hooks
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — no data
Inputs used
has_cino
has_testsyes
has_editorconfigno
has_linter_configno
has_precommit_configno
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.

Documentation

55Moderate
How it's scored
30/30README
0/25Documentation directory
15/15Documentation / homepage site — https://www.dotmailer.com/
10/10Repository description
0/10Topics
0/10Wiki
Inputs used
topics
has_wikino
homepagehttps://www.dotmailer.com/
has_readmeyes
has_docs_dirno
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

40At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
0/2.5CI-Tests — no data
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 14 contributing companies or organizations
0/10Dangerous-Workflow — no data
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5License — license file detected
4.5/7.5Maintained — 8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6
0/5Packaging — no data
0/5Pinned-Dependencies — no data
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — no data
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated11
scorecard_versionv5.5.0
checks_inconclusive7
scorecard_aggregate4
Excluded from scoring (no data or not applicable): branch_protection, ci_tests, dangerous_workflow, packaging, pinned_dependencies, signed_releases, token_permissions. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

29Critical · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
23.5/40Legible commit history — 44 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.44
agent_instruction_files
agent_instruction_max_bytes
How it's scored
0/18One-command bootstrap
22/22Automated tests
0/11Lint / format config
0/11Static type checking
0/10Reproducible environment
0/10Demonstrated agent practice — no agent-authored commits among the last 100
0/8Automated maintenance — no automated dependency updates observed
0/10OpenSSF Scorecard: Pinned-Dependencies — no data
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileno
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_configno
typecheck_configs
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Pinned-Dependencies. Remaining weights renormalized.
How it's scored
0/45Type-checkable code — PHP without a type-check config
55/55Manageable file sizes — 0/417 source files over 60KB
Inputs used
primary_languagePHP
largest_source_bytes36,149
source_files_sampled417
oversized_source_files0

Key facts

4GitHub stars
66contributors
37commits, last 12 months
0days since last push
100releases
5bus factor
0open issues
Packagistpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • No resolved dependencies carried a version and a supported ecosystem

More detail

Star and fork history 0 ★ / 3 ⇿
0Stars
3Forks

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

111222212017-092018-042018-12

Each point covers 2 days.

OpenSSF Scorecard 4.0 / 10
4.0aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-22 21:13 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
n/aCI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 14 contributing companies or organizations
n/aDangerous-Workflowno workflows found
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
6Maintained8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6
n/aPackagingpackaging workflow not detected
n/aPinned-Dependenciesno dependencies found
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
n/aSigned-Releasesno releases found
n/aToken-PermissionsNo tokens found
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 3
RegistryPackageVersion constraintManifest
Packagistoro/crm7.0.*composer.json
Packagistromanpitak/dotmailer-api-v2-client4.2.*composer.json
Packagistoro/marketing7.0.*composer.json
All dependencies 4

Full resolved dependency set from the GitHub dependency graph: 3 direct and 1 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
Packagistoro/crmdirect
Packagistoro/marketingdirect
Packagistromanpitak/dotmailer-api-v2-clientdirect
Packagistext-curlindirect
Dependency advisories not assessed

Advisory matching could not run for this report: No resolved dependencies carried a version and a supported ecosystem

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 3139,
      "has_wiki": false,
      "homepage": "https://www.dotmailer.com/",
      "languages": {
        "PHP": 1416056,
        "HTML": 271,
        "SCSS": 1433,
        "Twig": 38227,
        "JavaScript": 25560
      },
      "pushed_at": "2026-07-22T21:05:12Z",
      "created_at": "2015-06-12T16:35:23Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-22T21:05:56Z",
      "description": "OroCRM package, integrates marketing functionality with dotmailer.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "master",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "PHP",
      "significant_languages": [
        "PHP"
      ]
    },
    "owner": {
      "blog": "https://www.oroinc.com/",
      "name": "Oro, Inc.",
      "type": "Organization",
      "login": "oroinc",
      "company": null,
      "location": "Los Angeles",
      "followers": 121,
      "avatar_url": "https://avatars.githubusercontent.com/u/4165718?v=4",
      "created_at": "2013-04-15T23:39:58Z",
      "is_verified": null,
      "public_repos": 104,
      "account_age_days": 4845
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "7.0.3",
          "kind": "patch",
          "published_at": "2026-06-10T17:52:20Z"
        },
        {
          "tag": "7.0.2",
          "kind": "patch",
          "published_at": "2026-05-11T20:51:06Z"
        },
        {
          "tag": "7.0.1",
          "kind": "patch",
          "published_at": "2026-04-01T20:46:46Z"
        },
        {
          "tag": "7.0.0",
          "kind": "major",
          "published_at": "2026-03-31T16:27:54Z"
        },
        {
          "tag": "7.0.0-rc",
          "kind": "prerelease",
          "published_at": "2026-01-15T07:48:32Z"
        },
        {
          "tag": "6.1.9",
          "kind": "patch",
          "published_at": "2026-06-11T17:50:53Z"
        },
        {
          "tag": "6.1.8",
          "kind": "patch",
          "published_at": "2026-01-24T01:08:40Z"
        },
        {
          "tag": "6.1.7",
          "kind": "patch",
          "published_at": "2025-11-27T17:39:50Z"
        },
        {
          "tag": "6.1.6",
          "kind": "patch",
          "published_at": "2025-09-19T11:54:53Z"
        },
        {
          "tag": "6.1.5",
          "kind": "patch",
          "published_at": "2025-07-18T14:07:58Z"
        },
        {
          "tag": "6.1.5-rc3",
          "kind": "prerelease",
          "published_at": "2025-07-18T14:07:58Z"
        },
        {
          "tag": "6.1.5-rc1",
          "kind": "prerelease",
          "published_at": "2025-07-18T14:07:58Z"
        },
        {
          "tag": "6.1.1",
          "kind": "patch",
          "published_at": "2025-04-18T13:16:13Z"
        },
        {
          "tag": "6.1.0",
          "kind": "minor",
          "published_at": "2025-03-31T11:51:51Z"
        },
        {
          "tag": "6.1.0-rc.3",
          "kind": "prerelease",
          "published_at": "2025-02-03T20:52:37Z"
        },
        {
          "tag": "6.1.0-rc.2",
          "kind": "prerelease",
          "published_at": "2025-02-03T20:52:37Z"
        },
        {
          "tag": "6.1.0-rc",
          "kind": "prerelease",
          "published_at": "2025-01-31T20:24:08Z"
        },
        {
          "tag": "6.0.7",
          "kind": "patch",
          "published_at": "2026-06-15T18:39:27Z"
        },
        {
          "tag": "6.0.6",
          "kind": "patch",
          "published_at": "2025-11-27T17:39:43Z"
        },
        {
          "tag": "6.0.5",
          "kind": "patch",
          "published_at": "2025-09-19T11:54:57Z"
        },
        {
          "tag": "6.0.4",
          "kind": "patch",
          "published_at": "2025-02-20T13:08:51Z"
        },
        {
          "tag": "6.0.3",
          "kind": "patch",
          "published_at": "2024-11-05T10:48:34Z"
        },
        {
          "tag": "6.0.2",
          "kind": "patch",
          "published_at": "2024-08-02T14:07:33Z"
        },
        {
          "tag": "6.0.1",
          "kind": "patch",
          "published_at": "2024-06-05T08:06:44Z"
        },
        {
          "tag": "6.0.0",
          "kind": "major",
          "published_at": "2024-03-30T09:34:29Z"
        },
        {
          "tag": "6.0.0-rc",
          "kind": "prerelease",
          "published_at": "2024-02-29T14:19:31Z"
        },
        {
          "tag": "6.0.0-beta.1",
          "kind": "prerelease",
          "published_at": "2024-01-08T13:57:27Z"
        },
        {
          "tag": "5.1.7",
          "kind": "patch",
          "published_at": "2026-06-17T17:37:40Z"
        },
        {
          "tag": "5.1.6",
          "kind": "patch",
          "published_at": "2025-11-27T17:39:35Z"
        },
        {
          "tag": "5.1.5",
          "kind": "patch",
          "published_at": "2025-02-20T13:02:46Z"
        },
        {
          "tag": "5.1.4",
          "kind": "patch",
          "published_at": "2024-01-31T13:57:46Z"
        },
        {
          "tag": "5.1.3",
          "kind": "patch",
          "published_at": "2023-12-13T14:58:00Z"
        },
        {
          "tag": "5.1.2",
          "kind": "patch",
          "published_at": "2023-07-13T10:30:17Z"
        },
        {
          "tag": "5.1.1",
          "kind": "patch",
          "published_at": "2023-06-19T08:47:22Z"
        },
        {
          "tag": "5.1.0",
          "kind": "minor",
          "published_at": "2023-03-31T09:11:18Z"
        },
        {
          "tag": "5.1.0-rc.2",
          "kind": "prerelease",
          "published_at": "2023-03-03T10:54:23Z"
        },
        {
          "tag": "5.1.0-rc.1",
          "kind": "prerelease",
          "published_at": "2023-02-01T17:36:37Z"
        },
        {
          "tag": "5.1.0-beta.2",
          "kind": "prerelease",
          "published_at": "2022-11-30T10:22:46Z"
        },
        {
          "tag": "5.1.0-beta.1",
          "kind": "prerelease",
          "published_at": "2022-09-30T18:55:01Z"
        },
        {
          "tag": "5.1.0-alpha.2",
          "kind": "prerelease",
          "published_at": "2022-08-01T15:51:33Z"
        },
        {
          "tag": "5.1.0-alpha.1",
          "kind": "prerelease",
          "published_at": "2022-06-01T10:58:33Z"
        },
        {
          "tag": "5.0.8",
          "kind": "patch",
          "published_at": "2026-06-17T17:36:20Z"
        },
        {
          "tag": "5.0.7",
          "kind": "patch",
          "published_at": "2025-11-27T17:39:29Z"
        },
        {
          "tag": "5.0.6",
          "kind": "patch",
          "published_at": "2024-01-31T13:57:50Z"
        },
        {
          "tag": "5.0.5",
          "kind": "patch",
          "published_at": "2023-12-13T14:58:11Z"
        },
        {
          "tag": "5.0.4",
          "kind": "patch",
          "published_at": "2023-06-23T09:53:14Z"
        },
        {
          "tag": "5.0.3",
          "kind": "patch",
          "published_at": "2023-05-17T12:10:51Z"
        },
        {
          "tag": "5.0.2",
          "kind": "patch",
          "published_at": "2022-11-04T09:41:38Z"
        },
        {
          "tag": "5.0.1",
          "kind": "patch",
          "published_at": "2022-09-15T11:30:33Z"
        },
        {
          "tag": "5.0.0",
          "kind": "major",
          "published_at": "2022-01-17T10:52:10Z"
        },
        {
          "tag": "5.0.0-rc",
          "kind": "prerelease",
          "published_at": "2021-12-07T20:16:40Z"
        },
        {
          "tag": "5.0.0-beta.2",
          "kind": "prerelease",
          "published_at": "2021-09-30T15:37:17Z"
        },
        {
          "tag": "5.0.0-beta.1",
          "kind": "prerelease",
          "published_at": "2021-07-30T15:41:08Z"
        },
        {
          "tag": "5.0.0-alpha.2",
          "kind": "prerelease",
          "published_at": "2021-05-28T14:14:19Z"
        },
        {
          "tag": "5.0.0-alpha.1",
          "kind": "prerelease",
          "published_at": "2021-02-05T15:40:40Z"
        },
        {
          "tag": "4.2.4",
          "kind": "patch",
          "published_at": "2021-11-25T14:41:03Z"
        },
        {
          "tag": "4.2.3",
          "kind": "patch",
          "published_at": "2021-07-20T15:11:36Z"
        },
        {
          "tag": "4.2.2",
          "kind": "patch",
          "published_at": "2021-06-14T15:28:14Z"
        },
        {
          "tag": "4.2.1",
          "kind": "patch",
          "published_at": "2021-06-07T12:57:19Z"
        },
        {
          "tag": "4.2.0",
          "kind": "minor",
          "published_at": "2021-01-29T04:34:44Z"
        },
        {
          "tag": "4.2.0-rc",
          "kind": "prerelease",
          "published_at": "2020-11-28T17:20:43Z"
        },
        {
          "tag": "4.2.0-beta",
          "kind": "prerelease",
          "published_at": "2020-09-27T10:26:00Z"
        },
        {
          "tag": "4.2.0-alpha.3",
          "kind": "prerelease",
          "published_at": "2020-06-26T05:19:50Z"
        },
        {
          "tag": "4.2.0-alpha.2",
          "kind": "prerelease",
          "published_at": "2020-04-28T11:06:17Z"
        },
        {
          "tag": "4.2.0-alpha.1",
          "kind": "prerelease",
          "published_at": "2020-03-23T18:10:04Z"
        },
        {
          "tag": "4.2.0-alpha",
          "kind": "prerelease",
          "published_at": "2020-03-23T18:10:04Z"
        },
        {
          "tag": "4.1.9",
          "kind": "patch",
          "published_at": "2021-07-15T15:15:42Z"
        },
        {
          "tag": "4.1.8",
          "kind": "patch",
          "published_at": "2021-05-28T11:20:45Z"
        },
        {
          "tag": "4.1.7",
          "kind": "patch",
          "published_at": "2020-12-21T11:45:15Z"
        },
        {
          "tag": "4.1.6",
          "kind": "patch",
          "published_at": "2020-09-04T09:38:23Z"
        },
        {
          "tag": "4.1.5",
          "kind": "patch",
          "published_at": "2020-07-02T13:51:32Z"
        },
        {
          "tag": "4.1.4",
          "kind": "patch",
          "published_at": "2020-05-20T15:30:03Z"
        },
        {
          "tag": "4.1.3",
          "kind": "patch",
          "published_at": "2020-04-26T21:51:01Z"
        },
        {
          "tag": "4.1.2",
          "kind": "patch",
          "published_at": "2020-03-12T15:29:36Z"
        },
        {
          "tag": "4.1.1",
          "kind": "patch",
          "published_at": "2020-02-25T07:33:25Z"
        },
        {
          "tag": "4.1.1-rc",
          "kind": "prerelease",
          "published_at": "2020-02-25T07:33:25Z"
        },
        {
          "tag": "4.1.0",
          "kind": "minor",
          "published_at": "2020-01-28T11:59:00Z"
        },
        {
          "tag": "4.1.0-rc4",
          "kind": "prerelease",
          "published_at": "2020-01-09T13:58:54Z"
        },
        {
          "tag": "4.1.0-rc",
          "kind": "prerelease",
          "published_at": "2019-12-10T14:55:50Z"
        },
        {
          "tag": "4.1.0-beta",
          "kind": "prerelease",
          "published_at": "2019-09-30T19:03:28Z"
        },
        {
          "tag": "4.0.0",
          "kind": "major",
          "published_at": "2019-07-31T13:59:45Z"
        },
        {
          "tag": "4.0.0-rc",
          "kind": "prerelease",
          "published_at": "2019-04-26T09:40:12Z"
        },
        {
          "tag": "4.0.0-beta",
          "kind": "prerelease",
          "published_at": "2019-03-28T13:40:48Z"
        },
        {
          "tag": "3.1.12",
          "kind": "patch",
          "published_at": "2020-04-01T20:36:54Z"
        },
        {
          "tag": "3.1.11",
          "kind": "patch",
          "published_at": "2020-03-10T21:52:21Z"
        },
        {
          "tag": "3.1.10",
          "kind": "patch",
          "published_at": "2020-01-22T11:16:52Z"
        },
        {
          "tag": "3.1.9",
          "kind": "patch",
          "published_at": "2019-11-14T21:22:54Z"
        },
        {
          "tag": "3.1.8",
          "kind": "patch",
          "published_at": "2019-07-30T16:51:18Z"
        },
        {
          "tag": "3.1.7",
          "kind": "patch",
          "published_at": "2019-06-03T09:32:31Z"
        },
        {
          "tag": "3.1.6",
          "kind": "patch",
          "published_at": "2019-05-16T15:37:53Z"
        },
        {
          "tag": "3.1.5",
          "kind": "patch",
          "published_at": "2019-04-17T09:45:28Z"
        },
        {
          "tag": "3.1.4",
          "kind": "patch",
          "published_at": "2019-03-22T17:01:20Z"
        },
        {
          "tag": "3.1.3",
          "kind": "patch",
          "published_at": "2019-02-19T15:33:48Z"
        },
        {
          "tag": "3.1.2",
          "kind": "patch",
          "published_at": "2019-02-05T11:05:27Z"
        },
        {
          "tag": "3.1.1",
          "kind": "patch",
          "published_at": "2019-02-04T11:06:54Z"
        },
        {
          "tag": "3.1.0",
          "kind": "minor",
          "published_at": "2019-01-29T08:19:45Z"
        },
        {
          "tag": "2.6.10",
          "kind": "patch",
          "published_at": "2020-04-22T19:23:14Z"
        },
        {
          "tag": "2.6.9",
          "kind": "patch",
          "published_at": "2019-04-19T20:44:28Z"
        },
        {
          "tag": "2.6.8",
          "kind": "patch",
          "published_at": "2019-01-21T09:08:02Z"
        },
        {
          "tag": "2.6.7",
          "kind": "patch",
          "published_at": "2018-12-14T16:57:06Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "984b5241f1b976a7bf2f3a51114b84b7c1e697bf",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-07-22T21:05:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "88641c77d4a47bbf70a82ca2c97416d1e34c1320",
          "body": "…45993)\n\n- Changed Oro\\Bundle\\SecurityBundle\\Authorization\\AuthorizationChecker to additionally implement Symfony\\Component\\Security\\Core\\Authorization\\UserAuthorizationCheckerInterface\n- Added AuthorizationChecker::isGrantedForUser() that delegates the check to the decorated security.authorization_\n[…]\nions together with the oro_distribution.composer_json parameter, as the Composer classes come from the composer/composer package that the applications do not require and the services have no consumers",
          "is_bot": false,
          "headline": "BB-27602: lint:container reports several service definition issues (#…",
          "author_name": "oro-panasiukr",
          "author_login": "oro-panasiukr",
          "committed_at": "2026-07-22T08:08:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "979b490c1ea35598e2d2fcf5d3706254caa264f6",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-07-10T20:55:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0f270c20a96266691f6c950125d09d739bd921e",
          "body": "…ity fields and system configuration data (#45345)\n\n* BB-27357: Disallow access to entity fields not marked as available_in_template=true (#45192)\n\n- Implemented the CustomerUserEmailTemplateVariablesProvider to expose the fullName virtual field in email templates.\n- Simplified logic for security po\n[…]\n- updated migrations with immutable=true for consistency with attributes\n\n---------\n\nCo-authored-by: Yefim Yevtushenko <yyevtushenko@oroinc.com>\nCo-authored-by: Julia Khrysieva <ikhrysieva@oroinc.com>",
          "is_bot": false,
          "headline": "BB-27247: Email template management allows overly broad access to ent…",
          "author_name": "vsheverov",
          "author_login": "vsheverov",
          "committed_at": "2026-06-22T10:22:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "59c7cad97b1bd45b555290a7d2057fc8a5a0a8d3",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-05-05T20:51:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ceda2398cb18b6c41b34cbe64d4b99300f05ee79",
          "body": "… UPS integration settings fields (#44602)",
          "is_bot": false,
          "headline": "BB-25105: Missing client-side maximum length validation for FedEx and…",
          "author_name": "oro-panasiukr",
          "author_login": "oro-panasiukr",
          "committed_at": "2026-05-05T07:54:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6949f034b4fc406bdc551522957f756a3ef5975c",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-04-24T20:54:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d1c5195f7c59426f40c37d438339102a1e4caf34",
          "body": "… standard (#45005)",
          "is_bot": false,
          "headline": "BAP-23363: Fix test classes that do not comply with PSR-4 autoloading…",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-04-24T00:03:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6cc0f5370656806dc0d4cb85435da3bc93a1efee",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-04-21T14:11:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "64baecc9414a10ba0569a050695bc3eb9a82d389",
          "body": null,
          "is_bot": false,
          "headline": "BAP-23360: Remove redundant comments in entity classes (#44948)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-04-20T21:58:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3d0c5b6e6a1a011e48270ae8915775b2345e4d44",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-02-17T21:46:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf8f24d038c83dd372bb2dd4db28b466767c75e9",
          "body": null,
          "is_bot": false,
          "headline": "BAP-23301: Refactor service locators for security voters (#44031)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-02-17T03:38:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "79b1cfab517a0e15bff341dfec7f827421e6280b",
          "body": null,
          "is_bot": false,
          "headline": "BAP-23300: Refactor service locators for Doctrine listeners (#44033)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-02-17T00:25:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b7f77db887063c323a1d8d142af650aeb63a6a5",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-15T21:49:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "10e3ed6c9d3145fba8c818f5061decb3ac2f63ce",
          "body": null,
          "is_bot": false,
          "headline": "BB-25349: Set application version in master to 7.0 (#43720)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2026-01-15T07:48:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "614f2a8ebec5726e2cdd9e55a2f8f67cd2220278",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-12T21:50:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "648692aaa5adcf8a56e4707ac00c97a252cb0f1e",
          "body": "- Added missing class PHPDoc comments",
          "is_bot": false,
          "headline": "BAP-23252: Upgrade PHP_CodeSniffer and PHP CS Fixer",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2026-01-11T23:50:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c81d8ca90ff20d3d86b3c168b38c00b78416bdca",
          "body": "- Misc PSR-2 and PSR-12 code style fixes:\n  - PSR12.Traits.UseDeclaration\n  - Squiz.Functions.FunctionDeclarationArgumentSpacing\n  - PSR12.Operators.OperatorSpacing\n  - PSR2.Classes.PropertyDeclaration\n  - PSR12.Operators.OperatorSpacing\n  - PSR12.Classes.AnonClassDeclaration\n  - duplicated namespace\n  - multiline control structures\n  - ignore valid deprecation comments",
          "is_bot": false,
          "headline": "BAP-23252: Upgrade PHP_CodeSniffer and PHP CS Fixer",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2026-01-11T23:50:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0c1c67b4b1916cf975853692343f4e799a9181b4",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-09T21:50:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a3ba47ad40b1b41f81e9f51151dbe9e2080cfdc",
          "body": "…irement to 8.5 (#42767)\n\n- Upgrade Symfony to 7.4\n- Upgrade Doctrine ORM to 2.20.9 and DBAL to 3.10.4\n- Update Monolog to 3.9, Twig to 3.21, MongoDB to 2.1.2\n- Upgrade Gedmo doctrine-extensions to v3.21\n- Update PHP requirement to 8.5, Node.js to 24\n\n---------\nCo-authored-by: OleksandrProtsiuk <oprotsiuk@oroinc.com>\nCo-authored-by: Vitalii Yeromenko <vyeromenko@oroinc.com>\nCo-authored-by: Vadim Malesh <vmalesh@oroinc.com>",
          "is_bot": false,
          "headline": "BAP-23109: Upgrade Symfony to 7.4, Doctrine DBAL to 3.10 and PHP requ…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2026-01-09T17:33:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7480f647f6319c7ca39bbc4134311782fcc27f00",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-05T21:45:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "336ac10c917248c60200a4196484d35444e7c3a2",
          "body": "- removed old workarounds in package/platform/build/.php-cs-fixer.php\n- php bin/php-cs-fixer fix ../../package/ --config=../../package/platform/build/.php-cs-fixer.php",
          "is_bot": false,
          "headline": "BAP-21019: Switch to PSR-12 coding standard (#43608)",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2026-01-04T01:58:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e81be81d20ec03febdd68098e6d2e03f75145584",
          "body": "- upgraded to \"squizlabs/php_codesniffer\": \"~4.0.1\"\n- updated to the new phpcs annotation syntax\n- updated phpcs project ruleset and Oro standard\n- upgraded to \"friendsofphp/php-cs-fixer\": \"~3.92.3\"\n- updated php_code_style_standalone.sh\n- applied php-cs-fixer to existing code",
          "is_bot": false,
          "headline": "BAP-23252: Upgrade PHP_CodeSniffer and PHP CS Fixer",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2026-01-03T23:37:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4d754a9048555847884101cd00b6a35c2cb4f3e",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-11-27T21:39:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9600bb29a6b80b1b98bdf72ff708980c18d2c0b",
          "body": "…3271)",
          "is_bot": false,
          "headline": "BAP-23198: Replace \"tmpnam\" and \"sys_get_temp_dir\" with \"tmpfile\" (#4…",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2025-11-27T17:39:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8921e96fb43db6e036fd4af777992e2d036a3da2",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-10-15T20:40:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a026071a39c69be16e45e17fcacc9615cf948778",
          "body": "…, ldap, mailchimp (#42717)\n\n* BB-26262: Convert for dotmailer, google-tag-manager, infinitepay, dpd, ldap, mailchimp",
          "is_bot": false,
          "headline": "BB-26262: Convert for dotmailer, google-tag-manager, infinitepay, dpd…",
          "author_name": "Alex Yegerev",
          "author_login": "lexxcode",
          "committed_at": "2025-10-15T14:01:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4d5a227362731384b2fd8e9fcc1651560fbf732",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-10-10T20:44:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "10f55f1b7f1a1b0fb9f6309bfdd00011a6abe1a6",
          "body": "* BAP-23109: Upgrade dependencies that block Symfony 7\n- Partially updated next dev-dependencies:\n    \"symfony/phpunit-bridge\",\n    \"symfony/browser-kit\",\n    \"symfony/css-selector\",\n    \"symfony/debug-bundle\",\n    \"symfony/dom-crawler\",\n    \"symfony/stopwatch\",\n    \"symfony/var-dumper\",\n    \"symfon\n[…]\nhe updated branches\n- Added copy of Symfony\\Component\\Serializer\\Normalizer\\GetSetMethodNormalizer\n- Refactored GetSetMethodNormalizer. Removed copied logic. Added SymfonyGetSetMethodNormalizer parent",
          "is_bot": false,
          "headline": "BAP-23109: Upgrade dependencies that block Symfony 7(Part 4) (#42726)",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2025-10-10T11:24:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ff564f63aa1277d6b83da35d88a3c401d6a87400",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-09-22T20:41:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d141acf51de00432a4137b912c6a984464befbf6",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22507: dotdigital campaign summary synchronization fails (#42638)",
          "author_name": "Yevhenii Zhadan",
          "author_login": "yevhenii101991",
          "committed_at": "2025-09-22T08:06:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "72d2e1e721fed1c150f609e224b60b6b3198163d",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-09-16T20:41:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6306bc877312bfdd98c8e4c2e145ca9bcfb27bb1",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22920: Remove sensio/framework-extra-bundle dependency (#42187)",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2025-09-16T07:30:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb8a124ba419f4f6146e84fa719b622302871a73",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-09-10T20:39:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a131181e80f477ac757edb8c955e1886295f583c",
          "body": "…… (#41808)",
          "is_bot": false,
          "headline": "BAP-23077 Dotdigital integration does not work after Enum architectur…",
          "author_name": "timofiyprisyazhnyuk",
          "author_login": "timofiyprisyazhnyuk",
          "committed_at": "2025-09-10T17:39:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca56000b9a1e3c83575a21652d8e383320844172",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-08-05T20:37:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "beb1d974d321d8fb7a8c226dabbc71c92ccb7130",
          "body": null,
          "is_bot": false,
          "headline": "BAP-23129: Make cache related services private (#42177)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2025-08-01T20:38:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d60968a86b752418ddec98f8768d7735730c674",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-07-25T20:37:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "64299e6d036e02600b59d9b039ccc9eb2624a23a",
          "body": "- Updated namespaces to use routing attributes\n- Updated routing configs to fix annotations services deprication notices\n- Disabled annotations cache\n- Updated app`s configs to use attributes for validations to fix annotations services deprecation notices\n- Updated console commands to fix \"$defaultN\n[…]\n deprecated constraints with recommended\n- Removed deprecated method setDoctrineAnnotationReader calls\n- Upgrade toolkit dependencies updated\n- Updated rector rules/rulesets\n- Added new YmlFixer rules",
          "is_bot": false,
          "headline": "BAP-23106: Get rid of Symfony 7 deprecations. Part 1 (#42062)",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2025-07-25T14:48:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "16c4d996f0b7c6bfd17910f54165121cf02439c6",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-04-24T20:35:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0fcd50c1d8f905569132042a26a4699a5f7c465",
          "body": "…GELOG-.md files  (#41267)",
          "is_bot": false,
          "headline": "BB-25341: Release preparation activities - Generate UPGRADE-.md, CHAN…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2025-04-24T14:46:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "32f57793e9ebc04c0b2c7a50f5c17d0e4cd93229",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-04-18T20:33:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e0f80880e492acf6552bdafa217e5a870918445f",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22995: Disable DB prepares emulation (#40909)",
          "author_name": "Dmitry Khrysev",
          "author_login": "x86demon",
          "committed_at": "2025-04-18T13:16:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "69a5aba504d5e1acd1da80465818ab48843ee63b",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-02-20T20:54:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "19179be296eddf9d93e8a333dead3d9cc6f5c4ea",
          "body": "…s (#40551)\n\n* BB-25262 Build to 6.0 failing because of old classes with PSR-4 errors\n- updated dev.json files to proper Tests folder exclusion rule\n- updated composer.json files to proper Tests folder exclusion rule\n- appended composer.json\n\n* Updated dev.locks\n| Production Changes        | From   \n[…]\nser     | 2.0.0    | 2.1.0    | [...](https://github.com/phpstan/phpdoc-parser/compare/2.0.0...2.1.0)                           |\n\n---------\n\nCo-authored-by: orocrmdeployer <orocrmdeployer@oroinc.com>",
          "is_bot": false,
          "headline": "BB-25262 Build to 6.0 failing because of old classes with PSR-4 error…",
          "author_name": "Vitalii Yeromenko",
          "author_login": "vetal-e",
          "committed_at": "2025-02-20T13:00:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6a2e36bdadfe85cf643ac51e68fa2fd1040f9184",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-02-03T20:52:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2063d5185b39eb894cc2cc2bf0ad98462440173",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22921: Fix code styles for method parameters (#40353)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2025-02-01T13:19:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ebb253f8adbba18c6707681816940dd3921d7cf9",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-01-31T20:24:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e26e232d6ba834332faf82022ee46a7f74259ebd",
          "body": "…0343)",
          "is_bot": false,
          "headline": "BAP-22912: Fix PHP 8.4 deprecation messages - fix Static Analysis (#4…",
          "author_name": "ikhrysieva",
          "author_login": "ikhrysieva",
          "committed_at": "2025-01-31T16:40:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7461d82c985f3de8a6012ec7190861c5bdbd772c",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22912: Fix PHP 8.4 deprecation messages",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2025-01-31T01:37:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a0a0055e13836f63f8a5715142961cffb0b43e3c",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-01-27T22:50:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37ffcfa367f516d32f5b8ac5845a73da05ef9981",
          "body": "…2 (#40223)\n\n- Updated PHP to 8.4, NodeJS to 22, and some composer dependencies to support the new version of PHP.\n- Suppressed deprecations as there are too many of them in third-party dependencies\n- Fixed some tests after dependency updates\n- Skipped unstable tests related to content purifying\n- T\n[…]\nh the existing WAF rules\n- Used new docker images\n---------\n\nCo-authored-by: Viacheslav Dubrovskyi <vdubrovskyi@oroinc.com>\nCo-authored-by: Valerii Yustyniuk <ValeriyYustunyk@users.noreply.github.com>",
          "is_bot": false,
          "headline": "BAP-22905: Set minimum required version of PHP to 8.4 and NodeJS to 2…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2025-01-27T21:33:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d46b6b22b489284ffbee70e7e5308d00e386f303",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-11-05T21:50:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "522edf1efdb0962407b83ee7890d3b7298915bef",
          "body": "* BB-24783: Update license files\r\n- updated copyright year, domains, license texts and references in applications and packages\r\n\r\n* Updated dev.locks\r\n\r\n| Production Changes                | From     | To       | Compare                                                                                \n[…]\n(https://github.com/schmittjoh/serializer/compare/3.31.0...3.31.1) |\r\n\r\n---------\r\n\r\nCo-authored-by: orocrmdeployer <orocrmdeployer@oroinc.com>\r\nCo-authored-by: Julia Khrysieva <ikhrysieva@oroinc.com>",
          "is_bot": false,
          "headline": "BB-24783: Update license files (#39644)",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2024-11-05T10:48:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3997fc898eac79ba8aed24bb10786cf27a0e51dc",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-10-16T15:55:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "831bc0fd0e186153e89b0ac99853ea0c64873b48",
          "body": "…#39344)\n\n- Updated php-cs-fixer config\r\n- Applied new cs rules\r\n- Deleted annotations like \"{@inheritDoc}\"\r\n- Rector AddOverrideAttributeToOverriddenMethodsRector rule applied\r\n- Updated documentation",
          "is_bot": false,
          "headline": "BAP-22772: Use override attribute instead of inheritdoc annotations (…",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2024-09-24T12:20:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1eff6fbd246f4166814ad8732154c17f2adde79",
          "body": "…eld type (#36373)\n\nUpdating the ORO Enum implementation is caused by:\r\n- Read-only permissions for web server user on entity extend files in the system cache.\r\n- Updates of enums in entities from the UI do not require cache updates in the entity management.\r\n- Need to avoid code generation.\r\n- Redu\n[…]\nmber of database requests in cases where the object uses join queries with a large number of lists.\r\n\r\nSee more details at: https://github.com/oroinc/platform/blob/master/CHANGELOG.md#oro-enum-changes",
          "is_bot": false,
          "headline": "BAP-22220: Migration Enums from the \"table-column\" to \"serialized\" fi…",
          "author_name": "timofiyprisyazhnyuk",
          "author_login": "timofiyprisyazhnyuk",
          "committed_at": "2024-09-20T12:44:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "23a0d7294c60b537c06faac8dd4ccd26d7190107",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-08-02T20:42:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "016d8e886385cd14f032c27c56699763a8cd95fe",
          "body": "* BAP-22587: Upgrade jQuery to the latest stable version\r\n\r\nCo-authored-by: orocrmdeployer <orocrmdeployer@oroinc.com>\r\nCo-authored-by: Yefim Yevtushenko <yyevtushenko@oroinc.com>\r\nCo-authored-by: Vadym Balan <144042893+vadymbalanoroinc@users.noreply.github.com>\r\nCo-authored-by: Alex Yegerev <1755578+lexxcode@users.noreply.github.com>",
          "is_bot": false,
          "headline": "BAP-22607: Upgrade jQuery to the 3.7.1 version (#38398)",
          "author_name": "Valerii Yustyniuk",
          "author_login": "ValeriyYustunyk",
          "committed_at": "2024-08-02T13:39:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a9ff7bca97e729a40dd9010d56ac9241beb8b6c",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-07-12T20:47:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "13c175398e05293bdc22964049e8e63b7a2ea173",
          "body": "…3 (#38826)\n\n* BAP-22681: Update SQL Injection test dependencies to work with PHP 8.3\r\n\r\n* BAP-22681: Update SQL Injection test dependencies to work with PHP 8.3\r\n\r\n* BAP-22681: Update SQL Injection test dependencies to work with PHP 8.3\r\n\r\n* BAP-22681: Update SQL Injection test dependencies to work with PHP 8.3",
          "is_bot": false,
          "headline": "BAP-22681: Update SQL Injection test dependencies to work with PHP 8.…",
          "author_name": "Dmitry Khrysev",
          "author_login": "x86demon",
          "committed_at": "2024-07-12T10:09:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7bb2b07d9862c6d30d31d5aa77475a068c300fb1",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-06-04T20:43:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "60eca0f5987db86fab7d41b2c4c3a12563d980a5",
          "body": "…ly classes) (#38494)",
          "is_bot": false,
          "headline": "BAP-22645: Update CS tooling to support new PHP features (e.g. readon…",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2024-06-04T10:28:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ed633b1cba47760953291ce645e87dea57ea8a09",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-04-08T20:41:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "befe7d235128b5ba7a0f885540bbb45be412525e",
          "body": null,
          "is_bot": false,
          "headline": "BB-23821: Updated app version to 6.1 (#37996)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-04-08T12:57:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "282e8d436efa835041f7f8f69e264d26fa32dd8a",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-04-02T15:52:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "644695912878adfdeb209f5b8a802cca7e93b93b",
          "body": "…NGELOG-*.md files (#37961)",
          "is_bot": false,
          "headline": "BB-23826: Release preparation activities - Generate UPGRADE-*.md, CHA…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-04-02T11:31:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cc1fa36b441d37ebd137f38444788221f38e8a6d",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-03-28T21:43:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "45e59daeebbbf4dc8d3a5c58f174e1261c90cb46",
          "body": "- sanitizing SQL queries dump command\r\n- entity config based sanitizing rule aggregation\r\n- file based sanitizing rules aggregation, taking bundle-less design into account\r\n- entity and fields sanitizing rules processing mechanism\r\n- guessing mechanism for field sanitizing rule\r\n- predefined entity \n[…]\nh DB engine itself\r\n- moving cloud's sanitizing rules manifest into bundles' configuration files regarding rules' belonging\r\n- functional and unit tests\r\n- documentation using 'code examples' approach",
          "is_bot": false,
          "headline": "BAP-21493: Application data sanitization(master) (#36951)",
          "author_name": "smiasnoi",
          "author_login": "smiasnoi",
          "committed_at": "2024-03-27T21:18:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3390509f3776ac6d7a329617029d7535820c3541",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-02-29T21:40:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "65a867b81bee9629893777565062229fcd8e5288",
          "body": "…NGELOG-*.md files (#37708)",
          "is_bot": false,
          "headline": "BB-23739: Release preparation activities - Generate UPGRADE-*.md, CHA…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-02-29T14:19:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff09259fb544956ce08bcec7b14df85fd821d9e5",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-02-26T12:48:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e62ddc4c710e66bc060c8e2d737b26d501342913",
          "body": "- Added AttributeReader. All custom attribute implementations should use this reader instead of third-party readers.\r\n- Added rector rules to convert ORO annotations to attributes.\r\n- Created rule-set to migrate from annotations to attributes.\r\n- Processed all the code with new ORO, Symfony and Doct\n[…]\nntities when possible without the business logic change.\r\n- Added tests.\r\n\r\n---------\r\n\r\nCo-authored-by: Oleksandr Protsiuk <oprotsiuk@oroinc.com>\r\nCo-authored-by: Andrii Baranik <abaranik@oroinc.com>",
          "is_bot": false,
          "headline": "BAP-22386: Use PHP Attributes instead of annotations (#37286)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-02-25T10:12:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7bb342db9774425c2124dda3e2808e40e16715d6",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-02-22T21:36:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c3ab20dfddbf0c2bb19f52ee8ca88d8496313e8d",
          "body": "…328)\n\nBAP-22400: Remove some of remaining deprecations after upgrading\r\n- changed list of properties in method\r\n- fixed preg_match_all default values\r\n- removed getListeners without argument\r\n- updated listeners method\r\n- in_array: added default value for all in_array method\r\n- update argument to PropertyAccessor methods\r\n- fixed dynamic property in project\r\n- update code style and property area",
          "is_bot": false,
          "headline": "BAP-22400: Remove some of remaining deprecations after upgrading (#37…",
          "author_name": "yevhenii101991",
          "author_login": "yevhenii101991",
          "committed_at": "2024-02-22T08:40:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "50208ac4600e7a45e5276c72380a9a1e34a73a08",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-02-05T12:57:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "94f7e11ca7572cc266d0f1713a60a810f6016699",
          "body": null,
          "is_bot": false,
          "headline": "BAP-19137: Wrong query type for testing Dotdigital integration (#37430)",
          "author_name": "Dmytro Syrvachov",
          "author_login": "dsyrvachov",
          "committed_at": "2024-01-31T13:57:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c3eb20a5279beac088edf5164825bd602869ccdd",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-01-09T21:41:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "266eb66a9f8e84383a2718c84e9ec91ecd207912",
          "body": "- added incompatibilities-6-0-beta.md and updated CHANGELOG.md in all the changed packages",
          "is_bot": false,
          "headline": "BB-22921: 6.0.0 BETA (#37299)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-01-08T13:57:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b609ae72f74370ad0fbea72ec2d7c72c4c416e36",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22396: Refactor data fixtures that use entity names (#37294)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2024-01-07T21:25:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "06ff50ca5d472291f8e151d3e5504ec4ae10932b",
          "body": "…organization (#37293)",
          "is_bot": false,
          "headline": "BAP-22395: Refactor functional tests fixtures that depend on default …",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2024-01-07T12:34:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "43a50cc8e06b3426f6758e489eaaf6fa94cd599c",
          "body": "- Migrated to Authenticator-based Security\r\n    - Refactored all the authenticators to use new security architecture\r\n    - Disabled all the custom authenticators\r\n    - Refactoring + UserInterface replaced by AbstractUser\r\n    - Added PULIC_ACCESS to open routes and added oro_security.access_contro\n[…]\nroinc.com>\r\nCo-authored-by: Zsombor Boldizsar-Zeik <zsombor.boldizsar.zeik@oroinc.com>\r\nCo-authored-by: Maksym Maksymenko <mmaksymenko@oroinc.com>\r\nCo-authored-by: Yevhenii Zhadan <yzhadan@oroinc.com>",
          "is_bot": false,
          "headline": "BAP-22237: Upgrade to Symfony 6.4 (#37219)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-01-07T10:00:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cd571f6f7ed658b01fea05af36a9a2b2d01a4fbf",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-01-02T21:40:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "75f388b7429e741cc4ea1b5fd19ed89c43f15329",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22381: Make methods private in database installers (#37261)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2024-01-01T21:31:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8caefaba6a93b5e7895a55d03c20068a2266ae74",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-12-29T21:42:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "11d455f96d99b921fa2de8f470c1af58cb8ac809",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22377: Create traits to inject extensions into migrations (#37249)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-12-29T09:35:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5df2430784bec562ef2b080308993e6be61d35d8",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-12-13T21:45:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "226b14f1193af089e3108a5a286e1ff0eb215025",
          "body": "… even when multi_host_operation_directory parameter is absent (#37049)",
          "is_bot": false,
          "headline": "BAP-22331: Load oro:cron:multi-host:operations:check-stale definition…",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-12-13T14:57:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cbe74bb1fdaec757eebb9ce1976c5edb2de7759e",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-09-13T20:39:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "50fddb9a7dbf24170065c18b8a777c5b9c553b41",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22238: Use Symfony 6 return and param types  (#36400)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-09-13T13:43:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fd2a1600a036390c7b31e3581115a24d24954fcf",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-09-12T15:49:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a1782e2d098d6a007c763f140f494f7472d91da3",
          "body": "- switched oro/ packages to 6.0.* version",
          "is_bot": false,
          "headline": "BB-22921: 6.0.0 BETA (#36401)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-09-12T10:20:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f73cd7b4ddb0669dd87c23a75dea39eb665c9d77",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22238: Use Symfony 6 return types (#36389)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-09-11T18:55:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "119a756d397d18d6897038e3ec438eb44c57bfd3",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-07-12T20:37:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "78e320e08088413704d6a27f012f2713d3231914",
          "body": "- fixed mismatching types\r\n- removed redundant phpdoc blocks",
          "is_bot": false,
          "headline": "BAP-22158: Remove redundant and fix mismatching docblocks (#36024)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-07-12T06:58:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a63a738869432d7abcdf016d2f1209f22b992a4",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-07-07T20:40:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1f05098d82b097ceeb3d17930f5a812554072c6",
          "body": "- added trait generation with virtual properties and methods docblocks to use as a @mixin on an entity to enable an autocomplete",
          "is_bot": false,
          "headline": "BAP-21949: Autocomplete for Extend entity fields and methods (#35156)",
          "author_name": "timofiyprisyazhnyuk",
          "author_login": "timofiyprisyazhnyuk",
          "committed_at": "2023-07-07T07:57:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "12198891ff6d339a55ba7c9849bf4dadde877488",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-06-23T16:27:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "46d9ff57220c09e85a27c9d35733ce702c4ab49e",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22089: Fix set arrays with data in DQL queries (#35782)",
          "author_name": "Yurii Muratov",
          "author_login": "yurio",
          "committed_at": "2023-06-23T09:53:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "adf7a359d6cbdcda40f03955d5725193a15e6add",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22125: Define visibility of constants in tests (#35917)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-06-23T07:55:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 100,
      "commits_last_year": 37,
      "latest_release_at": "2026-06-11T17:50:53Z",
      "latest_release_tag": "6.1.9",
      "releases_from_tags": true,
      "days_since_last_push": 0,
      "active_weeks_last_year": 16,
      "days_since_latest_release": 41,
      "mean_days_between_releases": 36.5
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 37,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "oro/crm-dotmailer",
          "exists": true,
          "license": "OSL-3.0",
          "keywords": [],
          "ecosystem": "packagist",
          "matches_repo": true,
          "registry_url": "https://packagist.org/packages/oro/crm-dotmailer",
          "is_deprecated": false,
          "latest_version": "7.0.3",
          "repository_url": "https://github.com/oroinc/OroCRMDotmailerBundle",
          "versions_count": 163,
          "total_downloads": 302081,
          "dependents_count": 4,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": 6936,
          "first_published_at": null,
          "latest_published_at": "2026-06-10T17:52:20Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 42
        }
      ]
    },
    "popularity": {
      "forks": 3,
      "stars": 4,
      "watchers": 43,
      "fork_history": {
        "days": [
          {
            "date": "2017-09-03",
            "count": 1
          },
          {
            "date": "2018-12-04",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 2,
        "total_forks": 3
      },
      "star_history": null,
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [],
      "largest_source_bytes": 36149,
      "source_files_sampled": 417,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "composer.json"
      ],
      "advisories": {
        "error": "No resolved dependencies carried a version and a supported ecosystem",
        "scope": "repository_graph",
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 4,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "packagist"
      ],
      "dependencies": [
        {
          "name": "oro/crm",
          "manifest": "composer.json",
          "ecosystem": "packagist",
          "version_constraint": "7.0.*"
        },
        {
          "name": "romanpitak/dotmailer-api-v2-client",
          "manifest": "composer.json",
          "ecosystem": "packagist",
          "version_constraint": "4.2.*"
        },
        {
          "name": "oro/marketing",
          "manifest": "composer.json",
          "ecosystem": "packagist",
          "version_constraint": "7.0.*"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "oro/crm",
            "direct": true,
            "version": null,
            "ecosystem": "packagist"
          },
          {
            "name": "oro/marketing",
            "direct": true,
            "version": null,
            "ecosystem": "packagist"
          },
          {
            "name": "romanpitak/dotmailer-api-v2-client",
            "direct": true,
            "version": null,
            "ecosystem": "packagist"
          },
          {
            "name": "ext-curl",
            "direct": false,
            "version": null,
            "ecosystem": "packagist"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 4,
        "direct_count": 3,
        "indirect_count": 1
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 0,
        "closed_ratio": 1,
        "closed_issues": 2,
        "closed_unmerged_prs": 2
      },
      "bus_factor": 5,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "arbitbet",
          "commits": 163,
          "avatar_url": "https://avatars.githubusercontent.com/u/218938?v=4"
        },
        {
          "type": "User",
          "login": "orocrmdeployer",
          "commits": 117,
          "avatar_url": "https://avatars.githubusercontent.com/u/4609435?v=4"
        },
        {
          "type": "User",
          "login": "vsoroka",
          "commits": 76,
          "avatar_url": "https://avatars.githubusercontent.com/u/4763952?v=4"
        },
        {
          "type": "User",
          "login": "anyt",
          "commits": 60,
          "avatar_url": "https://avatars.githubusercontent.com/u/5183991?v=4"
        },
        {
          "type": "User",
          "login": "ishakuta",
          "commits": 51,
          "avatar_url": "https://avatars.githubusercontent.com/u/193552?v=4"
        },
        {
          "type": "User",
          "login": "ignat-s",
          "commits": 46,
          "avatar_url": "https://avatars.githubusercontent.com/u/335396?v=4"
        },
        {
          "type": "User",
          "login": "Grygir",
          "commits": 41,
          "avatar_url": "https://avatars.githubusercontent.com/u/131182?v=4"
        },
        {
          "type": "User",
          "login": "mbessolov",
          "commits": 24,
          "avatar_url": "https://avatars.githubusercontent.com/u/2725121?v=4"
        },
        {
          "type": "User",
          "login": "x86demon",
          "commits": 19,
          "avatar_url": "https://avatars.githubusercontent.com/u/196506?v=4"
        },
        {
          "type": "User",
          "login": "tumbochka",
          "commits": 17,
          "avatar_url": "https://avatars.githubusercontent.com/u/1199347?v=4"
        }
      ],
      "contributors_sampled": 66,
      "top_contributor_share": 0.184
    },
    "quality_signals": {
      "has_ci": false,
      "has_tests": true,
      "ci_workflows": [],
      "has_docs_dir": false,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 14 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": null,
            "reason": "no workflows found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 6,
            "reason": "8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": null,
            "reason": "no dependencies found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": null,
            "reason": "No tokens found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "984b5241f1b976a7bf2f3a51114b84b7c1e697bf",
        "ran_at": "2026-07-22T21:13:49Z",
        "aggregate_score": 4,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-22T21:05:13Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": null,
      "oldest_open_issues": []
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/oroinc/OroCRMDotmailerBundle",
    "host": "github.com",
    "name": "OroCRMDotmailerBundle",
    "owner": "oroinc"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 56,
      "inputs": {
        "security": 40,
        "vitality": 75,
        "community": 37,
        "governance": 76,
        "engineering": 40
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 75,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 67,
            "inputs": {
              "commits_last_year": 37,
              "human_commit_share": 1,
              "days_since_last_push": 0,
              "active_weeks_last_year": 16
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "16/52 weeks with commits",
                "points": 11.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 16
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "37 commits in the last year",
                "points": 14.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 37
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "releases_count": 100,
              "latest_release_tag": "6.1.9",
              "releases_from_tags": true,
              "days_since_latest_release": 41,
              "mean_days_between_releases": 36.5
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "100 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 41 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 41
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~36.5 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 36.5
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 0,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 0 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 37,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 19,
            "inputs": {
              "forks": 3,
              "stars": 4,
              "watchers": 43,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "4 stars",
                "points": 7.7,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "3 forks",
                "points": 2.5,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "43 watchers",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 43
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "at_risk",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 44,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": null,
            "notes": [],
            "value": 56,
            "inputs": {
              "packages": [
                "oro/crm-dotmailer"
              ],
              "dependents": 4,
              "ecosystems": "packagist",
              "total_downloads": 302081,
              "monthly_downloads": 6936
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "6,936 downloads/month across packagist",
                "points": 51.2,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 6936,
                      "ecosystems": "packagist"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "4 packages depend on it",
                "points": 4.7,
                "status": "partial",
                "details": [
                  {
                    "code": "registry_dependents",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "good",
        "name": "Sustainability & Governance",
        "value": 76,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "excellent",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 88,
            "inputs": {
              "bus_factor": 5,
              "contributors_sampled": 66,
              "top_contributor_share": 0.184
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "5 contributor(s) cover half of all commits",
                "points": 45.9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 5
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 18% of commits",
                "points": 18.4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 18
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "66 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 66
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 14 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "at_risk",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 47,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 0,
              "closed_issues": 2,
              "issue_closed_ratio": 1,
              "closed_unmerged_prs": 2
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "100% of issues closed",
                "points": 46.8,
                "status": "met",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "0/2 decided PRs merged",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 0,
                      "decided": 2
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 70,
            "inputs": {
              "followers": 121,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "oroinc",
              "public_repos": 104,
              "account_age_days": 4845
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "121 followers of oroinc",
                "points": 15,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 121,
                      "login": "oroinc"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "104 public repos, account ~13 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 104
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 13
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "oro/crm-dotmailer"
              ],
              "ecosystems": "packagist",
              "any_deprecated": false,
              "min_days_since_publish": 42
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on packagist",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "packagist"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 42 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 42
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "163 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 163
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "at_risk",
        "name": "Engineering Quality",
        "value": 40,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "at_risk",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 30,
            "inputs": {
              "has_ci": false,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": "https://www.dotmailer.com/",
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://www.dotmailer.com/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 40,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection, CI-Tests, Dangerous-Workflow, Packaging, Pinned-Dependencies, Signed-Releases, Token-Permissions. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection",
                    "ci_tests",
                    "dangerous_workflow",
                    "packaging",
                    "pinned_dependencies",
                    "signed_releases",
                    "token_permissions"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 40,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 11,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 7,
              "scorecard_aggregate": 4
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 14 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no workflows found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6",
                "points": 4.5,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "no dependencies found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "No tokens found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 9
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "critical",
        "name": "AI Readiness",
        "value": 29,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "critical",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 24,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.44,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "44 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 23.5,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 44,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "critical",
            "name": "Verify loop (build / test / typecheck)",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Pinned-Dependencies. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_pinned_dependencies"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 24,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "no dependencies found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "moderate",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "primary_language": "PHP",
              "largest_source_bytes": 36149,
              "source_files_sampled": 417,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "PHP without a type-check config",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_typecheck_config_language",
                    "params": {
                      "language": "PHP"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/417 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 417,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "No resolved dependencies carried a version and a supported ecosystem"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T21:14:04.067522Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/o/oroinc/OroCRMDotmailerBundle.svg",
  "full_name": "oroinc/OroCRMDotmailerBundle",
  "license_state": "custom",
  "license_spdx": null
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsPackagist.