Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-23 21:12 UTC

oroinc / OroCRMZendeskBundle

OroCRM package, integrates cases with ZenDesk tickets.

PHPCustom license★ 6 stars⑂ 6 forkssince Jul 2014View on GitHub ↗

oroinc/OroCRMZendeskBundle holds a health index of 52 out of 100, placing it in the Moderate band. It scores highest on Sustainability & Governance (72/100) and lowest on AI Readiness (29/100). It was last updated today. 4 contributors account for most of its recent work.

52
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

52
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

Oro, Inc.Organization
121 followers104 public repossince Apr 2013

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publishTags
Packagistoro/crm-zendesk7.0.36,85012543 days agointegrationzendeskoro

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

60Moderate · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
9.7/36Commit cadence — 14/52 weeks with commits
13.3/18Commit volume — 29 commits in the last year
6/10OpenSSF Scorecard: Maintained — 8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6
Inputs used
commits_last_year29
human_commit_share1
days_since_last_push0
active_weeks_last_year14
How it's scored
27/27Ships releases — 3 releases published
0/36Release recency — latest release 4,251 days ago
19.8/27Release cadence — a release every ~54.9 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count3
latest_release_tag1.1.1
releases_from_tagsno
days_since_latest_release4,251
mean_days_between_releases54.9
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

40At risk · 18% of overall
How it's scored
11.3/60Stars — 6 stars
5.8/25Forks — 6 forks
8.8/15Watchers — 40 watchers
Inputs used
forks6
stars6
watchers40
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
How it's scored
22.5/22.5README
16.9/22.5License — license file present, not a recognized license
0/18CONTRIBUTING guide
0/13.5Code of conduct
0/7.2Issue template
0/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingno
has_issue_templateno
has_code_of_conductno
has_pull_request_templateno
How it's scored
51.1/80Monthly downloads — 6,850 downloads/month across packagist
4.7/20Registry dependents — 4 packages depend on it
Inputs used
packagesoro/crm-zendesk
dependents4
ecosystemspackagist
total_downloads296,654
monthly_downloads6,850

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

72Good · 24% of overall
How it's scored
43.2/54Bus factor — 4 contributor(s) cover half of all commits
18.7/22.5Commit distribution — top contributor authored 17% of commits
13.5/13.5Contributor breadth — 57 contributors
10/10OpenSSF Scorecard: Contributors — project has 13 contributing companies or organizations
Inputs used
bus_factor4
contributors_sampled57
top_contributor_share0.17
How it's scored
23.4/46.8Issue resolution — 50% of issues closed
0/38.3PR acceptance — no decided pull requests or no data
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Inputs used
merged_prs0
open_issues1
closed_issues1
issue_closed_ratio0.5
closed_unmerged_prs0
Excluded from scoring (no data or not applicable): PR acceptance. Remaining weights renormalized.
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
15/25Owner reach — 121 followers of oroinc
25/25Track record — 104 public repos, account ~13 yr old
Inputs used
followers121
owner_typeOrganization
is_verified
owner_loginoroinc
public_repos104
account_age_days4,846
How it's scored
25/25Published & resolvable — 1 package(s) on packagist
35/35Publish recency — latest publish 43 days ago
20/20Version history — 125 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesoro/crm-zendesk
ecosystemspackagist
any_deprecatedno
min_days_since_publish43

Engineering Quality

Are baseline engineering and documentation practices in place?

40At risk · 20% of overall
How it's scored
0/24CI workflows
24/24Tests present
0/16Linter config
0/9.6Pre-commit hooks
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — no data
Inputs used
has_cino
has_testsyes
has_editorconfigno
has_linter_configno
has_precommit_configno
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.

Documentation

55Moderate
How it's scored
30/30README
0/25Documentation directory
15/15Documentation / homepage site — https://www.zendesk.com/
10/10Repository description
0/10Topics
0/10Wiki
Inputs used
topics
has_wikino
homepagehttps://www.zendesk.com/
has_readmeyes
has_docs_dirno
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

40At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — no data
0/2.5CI-Tests — no data
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
2.5/2.5Contributors — project has 13 contributing companies or organizations
0/10Dangerous-Workflow — no data
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.2/2.5License — license file detected
4.5/7.5Maintained — 8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6
0/5Packaging — no data
0/5Pinned-Dependencies — no data
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — no data
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated11
scorecard_versionv5.5.0
checks_inconclusive7
scorecard_aggregate4
Excluded from scoring (no data or not applicable): branch_protection, ci_tests, dangerous_workflow, packaging, pinned_dependencies, signed_releases, token_permissions. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

29Critical · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
22.4/40Legible commit history — 42 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.42
agent_instruction_files
agent_instruction_max_bytes
How it's scored
0/18One-command bootstrap
22/22Automated tests
0/11Lint / format config
0/11Static type checking
0/10Reproducible environment
0/10Demonstrated agent practice — no agent-authored commits among the last 100
0/8Automated maintenance — no automated dependency updates observed
0/10OpenSSF Scorecard: Pinned-Dependencies — no data
Inputs used
has_nixno
has_testsyes
lockfiles
has_dockerfileno
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_configno
typecheck_configs
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Pinned-Dependencies. Remaining weights renormalized.
How it's scored
0/45Type-checkable code — PHP without a type-check config
55/55Manageable file sizes — 0/198 source files over 60KB
Inputs used
primary_languagePHP
largest_source_bytes41,268
source_files_sampled198
oversized_source_files0

Key facts

6GitHub stars
57contributors
29commits, last 12 months
0days since last push
3releases
4bus factor
1open issues
Packagistpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • No resolved dependencies carried a version and a supported ecosystem

More detail

Star and fork history 0 ★ / 6 ⇿
0Stars
6Forks
1Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

123456612014-102016-092018-08
Major 0Minor 0Patch 1

Each point covers 4 days.

OpenSSF Scorecard 4.0 / 10
4.0aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-23 21:12 UTC

10Binary-Artifactsno binaries found in the repo
n/aBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
n/aCI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
10Contributorsproject has 13 contributing companies or organizations
n/aDangerous-Workflowno workflows found
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
9Licenselicense file detected
6Maintained8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6
n/aPackagingpackaging workflow not detected
n/aPinned-Dependenciesno dependencies found
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
n/aSigned-Releasesno releases found
n/aToken-PermissionsNo tokens found
10Vulnerabilities0 existing vulnerabilities detected
Direct dependencies 1
RegistryPackageVersion constraintManifest
Packagistoro/crm7.0.*composer.json
All dependencies 1

Full resolved dependency set from the GitHub dependency graph: 1 direct and 0 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
Packagistoro/crmdirect
Dependency advisories not assessed

Advisory matching could not run for this report: No resolved dependencies carried a version and a supported ecosystem

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 1479,
      "has_wiki": false,
      "homepage": "https://www.zendesk.com/",
      "languages": {
        "PHP": 813144,
        "Twig": 9548,
        "JavaScript": 15867
      },
      "pushed_at": "2026-07-23T21:05:46Z",
      "created_at": "2014-07-23T21:42:50Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-23T21:06:00Z",
      "description": "OroCRM package, integrates cases with ZenDesk tickets.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": null,
      "default_branch": "master",
      "license_spdx_raw": "NOASSERTION",
      "primary_language": "PHP",
      "significant_languages": [
        "PHP"
      ]
    },
    "owner": {
      "blog": "https://www.oroinc.com/",
      "name": "Oro, Inc.",
      "type": "Organization",
      "login": "oroinc",
      "company": null,
      "location": "Los Angeles",
      "followers": 121,
      "avatar_url": "https://avatars.githubusercontent.com/u/4165718?v=4",
      "created_at": "2013-04-15T23:39:58Z",
      "is_verified": null,
      "public_repos": 104,
      "account_age_days": 4846
    },
    "license": {
      "state": "custom",
      "spdx_id": null,
      "raw_spdx": "NOASSERTION",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "1.1.1",
          "kind": "patch",
          "published_at": "2014-12-02T12:31:28Z"
        },
        {
          "tag": "1.0.1",
          "kind": "patch",
          "published_at": "2014-08-14T18:34:35Z"
        },
        {
          "tag": "1.0.0",
          "kind": "major",
          "published_at": "2014-08-14T18:33:45Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "b925a16d1b4546fe9faacfb1c13ab3b25265063f",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-07-23T21:05:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f27b7ed0af23f9c9158ecbf9014a321035f81239",
          "body": "… 255 characters (#46043)\n\n- Updated ZendeskRestTransport entity ORM column types to TEXT\n- Updated OroZendeskBundleInstaller to use text type without length limit\n- Added migration v7_1_0_1 to alter existing columns in production databases",
          "is_bot": false,
          "headline": "BB-27492: Zendesk integration cannot process OAuth tokens longer than…",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2026-07-23T16:53:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "acd0e1134c4de140217d91891cbcf1971f11c658",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-07-10T20:55:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "68a2af3e04eec13d888f60c0a1b66eeffadad45d",
          "body": "…ity fields and system configuration data (#45345)\n\n* BB-27357: Disallow access to entity fields not marked as available_in_template=true (#45192)\n\n- Implemented the CustomerUserEmailTemplateVariablesProvider to expose the fullName virtual field in email templates.\n- Simplified logic for security po\n[…]\n- updated migrations with immutable=true for consistency with attributes\n\n---------\n\nCo-authored-by: Yefim Yevtushenko <yyevtushenko@oroinc.com>\nCo-authored-by: Julia Khrysieva <ikhrysieva@oroinc.com>",
          "is_bot": false,
          "headline": "BB-27247: Email template management allows overly broad access to ent…",
          "author_name": "vsheverov",
          "author_login": "vsheverov",
          "committed_at": "2026-06-22T10:22:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f1da4be9c0c139f03e64e4737a0e7fdddec8c1a9",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-05-22T20:52:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d13341f6fac2aca08ddf7e9c1c85faf53c3cc16",
          "body": "- Implemented OAuth authentication\n- Made auth type configurable and required crypter service for the form\n- Updated docs\n\n---------\n\nCo-authored-by: Kateryna <kisakova@oroinc.com>\nCo-authored-by: Vitalii Yeromenko <vyeromenko@oroinc.com>",
          "is_bot": false,
          "headline": "BAP-23236: Update Zendesk Integration (#43804)",
          "author_name": "vmalesh-oro",
          "author_login": "vmalesh-oro",
          "committed_at": "2026-05-22T15:17:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e1314a358d614963a882e8e7e56a3cdb11be75b",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-05-05T20:51:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39a734b7c58f7a0d9a1b69753c5e62adb0701425",
          "body": "… UPS integration settings fields (#44602)",
          "is_bot": false,
          "headline": "BB-25105: Missing client-side maximum length validation for FedEx and…",
          "author_name": "oro-panasiukr",
          "author_login": "oro-panasiukr",
          "committed_at": "2026-05-05T07:54:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "91a33c815abe77ff0d2baf12c60a0b94af046046",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-04-24T20:54:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "977c8cba9df13266819fa960fd59687b037429fe",
          "body": "… standard (#45005)",
          "is_bot": false,
          "headline": "BAP-23363: Fix test classes that do not comply with PSR-4 autoloading…",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-04-24T00:03:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca5f22062cb76b37fa5ec6724cef421a9d6a98f9",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-04-21T14:10:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d411b0fc395c61298d53976ec1dfaddec6d01e54",
          "body": null,
          "is_bot": false,
          "headline": "BAP-23360: Remove redundant comments in entity classes (#44948)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-04-20T21:58:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fdfe8aee4241b32bf9949a587f67022bb8f0c92c",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-02-23T21:46:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c651787675959e48e3f19dfafc12342958b3d2ef",
          "body": null,
          "is_bot": false,
          "headline": "BAP-23310: Refactor service locators for TWIG extensions (#44128)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-02-22T02:00:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2064c60a6ba307daf194c33a17bd1a98fe24945e",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-02-17T21:46:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d11212f3ae9f7911c330385d39cccc8c2c9102d",
          "body": null,
          "is_bot": false,
          "headline": "BAP-23300: Refactor service locators for Doctrine listeners (#44033)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2026-02-17T00:25:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4dd75754460e34ce6f057bd1de8095d7e8d8eaf",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-15T21:49:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c5c4d6eebfac7bec1859a553d6e1e1e085f69f7c",
          "body": null,
          "is_bot": false,
          "headline": "BB-25349: Set application version in master to 7.0 (#43720)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2026-01-15T07:48:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "956f97e68435924cf198f3a7dd674bbf0d4fefdd",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-12T21:50:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a73450108da1c0ae3cbdd21b5e91d65b76d2f43",
          "body": "- Added missing class PHPDoc comments",
          "is_bot": false,
          "headline": "BAP-23252: Upgrade PHP_CodeSniffer and PHP CS Fixer",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2026-01-11T23:50:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "61061ecbcfa9f86195a6ea8934dadfe598c9ff51",
          "body": "- Misc PSR-2 and PSR-12 code style fixes:\n  - PSR12.Traits.UseDeclaration\n  - Squiz.Functions.FunctionDeclarationArgumentSpacing\n  - PSR12.Operators.OperatorSpacing\n  - PSR2.Classes.PropertyDeclaration\n  - PSR12.Operators.OperatorSpacing\n  - PSR12.Classes.AnonClassDeclaration\n  - duplicated namespace\n  - multiline control structures\n  - ignore valid deprecation comments",
          "is_bot": false,
          "headline": "BAP-23252: Upgrade PHP_CodeSniffer and PHP CS Fixer",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2026-01-11T23:50:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3c045883e61a1a06c3ff4199972304af6b13b7c0",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-09T21:50:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "884ea45d70a7a3bf639e3e124e403cd742ffd7cf",
          "body": "…irement to 8.5 (#42767)\n\n- Upgrade Symfony to 7.4\n- Upgrade Doctrine ORM to 2.20.9 and DBAL to 3.10.4\n- Update Monolog to 3.9, Twig to 3.21, MongoDB to 2.1.2\n- Upgrade Gedmo doctrine-extensions to v3.21\n- Update PHP requirement to 8.5, Node.js to 24\n\n---------\nCo-authored-by: OleksandrProtsiuk <oprotsiuk@oroinc.com>\nCo-authored-by: Vitalii Yeromenko <vyeromenko@oroinc.com>\nCo-authored-by: Vadim Malesh <vmalesh@oroinc.com>",
          "is_bot": false,
          "headline": "BAP-23109: Upgrade Symfony to 7.4, Doctrine DBAL to 3.10 and PHP requ…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2026-01-09T17:33:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "885eed9258d768d4785de90508764293c370ad99",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2026-01-05T21:45:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c46afecf7d2837e00b7f15d398ff7b6e6a2406e4",
          "body": "- removed old workarounds in package/platform/build/.php-cs-fixer.php\n- php bin/php-cs-fixer fix ../../package/ --config=../../package/platform/build/.php-cs-fixer.php",
          "is_bot": false,
          "headline": "BAP-21019: Switch to PSR-12 coding standard (#43608)",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2026-01-04T01:58:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "54d36a35b43a4e849a2ae0d8723e82618c71dac6",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-10-10T20:44:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9de8e04a30befce21b74931228f1d265b54d033e",
          "body": "* BAP-23109: Upgrade dependencies that block Symfony 7\n- Partially updated next dev-dependencies:\n    \"symfony/phpunit-bridge\",\n    \"symfony/browser-kit\",\n    \"symfony/css-selector\",\n    \"symfony/debug-bundle\",\n    \"symfony/dom-crawler\",\n    \"symfony/stopwatch\",\n    \"symfony/var-dumper\",\n    \"symfon\n[…]\nhe updated branches\n- Added copy of Symfony\\Component\\Serializer\\Normalizer\\GetSetMethodNormalizer\n- Refactored GetSetMethodNormalizer. Removed copied logic. Added SymfonyGetSetMethodNormalizer parent",
          "is_bot": false,
          "headline": "BAP-23109: Upgrade dependencies that block Symfony 7(Part 4) (#42726)",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2025-10-10T11:24:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3a6b77e51be6b5f13a1cdda968016e35b74f1ddf",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-09-16T20:41:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0cbfc9223f8a20f84ccb2b44524c374b616f9dd1",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22920: Remove sensio/framework-extra-bundle dependency (#42187)",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2025-09-16T07:30:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3625a38c80e4b3e62fcbba49f9c87182a6bc5589",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-08-06T20:37:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "09169ef0fab0edb44f1ba597105801183ea9b30a",
          "body": null,
          "is_bot": false,
          "headline": "BB-25942: Missing email address validation in guest checkout (#42091)",
          "author_name": "Eugene Zibrov",
          "author_login": "eugene-zibrov",
          "committed_at": "2025-08-06T10:57:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "06e66506ad64059bfe6c49857165eb20fb309141",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-04-24T20:35:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "217f4da2d1d2c7b7e9be1f2c99c337149335833e",
          "body": "…GELOG-.md files  (#41267)",
          "is_bot": false,
          "headline": "BB-25341: Release preparation activities - Generate UPGRADE-.md, CHAN…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2025-04-24T14:46:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "28270943659d5cebd29e28f36273edcd96bf7634",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-03-26T21:05:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a397fccc6543ea457b1fa4342a547ef6bd7b15cf",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22994: Fix typos in API docs (#40882)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2025-03-26T12:14:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1481b76942f9cce2619dc7ee884e4213c913aab9",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-02-20T20:54:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "91d03299cfbd0e605023d7561b0a775110f6f2e3",
          "body": "…s (#40551)\n\n* BB-25262 Build to 6.0 failing because of old classes with PSR-4 errors\n- updated dev.json files to proper Tests folder exclusion rule\n- updated composer.json files to proper Tests folder exclusion rule\n- appended composer.json\n\n* Updated dev.locks\n| Production Changes        | From   \n[…]\nser     | 2.0.0    | 2.1.0    | [...](https://github.com/phpstan/phpdoc-parser/compare/2.0.0...2.1.0)                           |\n\n---------\n\nCo-authored-by: orocrmdeployer <orocrmdeployer@oroinc.com>",
          "is_bot": false,
          "headline": "BB-25262 Build to 6.0 failing because of old classes with PSR-4 error…",
          "author_name": "Vitalii Yeromenko",
          "author_login": "vetal-e",
          "committed_at": "2025-02-20T13:00:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "dc0c0bbae833b844f04416b9909a0955a1c1d597",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-02-07T20:52:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7088932c2226b146bfbeae53f6a4b81a7b170f1d",
          "body": null,
          "is_bot": false,
          "headline": "BAP-20198: Remove WSSE authentication (#40279)",
          "author_name": "Yurii Muratov",
          "author_login": "yurio",
          "committed_at": "2025-02-07T15:26:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "216912e934e1278f68f52bea3d4901555ee9ba9c",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-01-31T20:24:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "242391b9f7e3fc0f6b1f39c21478490668cb3272",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22912: Fix PHP 8.4 deprecation messages",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2025-01-31T01:37:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2c0da0ec43f1f1be5c559175d38968c62edefd0f",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2025-01-27T22:50:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0f687bcfd7664ef13764370c6278e638fdfb8d86",
          "body": "…2 (#40223)\n\n- Updated PHP to 8.4, NodeJS to 22, and some composer dependencies to support the new version of PHP.\n- Suppressed deprecations as there are too many of them in third-party dependencies\n- Fixed some tests after dependency updates\n- Skipped unstable tests related to content purifying\n- T\n[…]\nh the existing WAF rules\n- Used new docker images\n---------\n\nCo-authored-by: Viacheslav Dubrovskyi <vdubrovskyi@oroinc.com>\nCo-authored-by: Valerii Yustyniuk <ValeriyYustunyk@users.noreply.github.com>",
          "is_bot": false,
          "headline": "BAP-22905: Set minimum required version of PHP to 8.4 and NodeJS to 2…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2025-01-27T21:33:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "bfd3a8b1aded4fb712df46b42f4dc6a54e872e38",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-11-15T21:44:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ddbe2e76d50619f6b5d9547493529b8c31d9ff0",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22833: Remove usage of UserUtilityTrait in functional tests (#39769)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2024-11-15T06:50:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0b8ee426478d6be27a63a6e755af9ca1eaf5ddf",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-11-05T21:50:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4a11226078639e19a0831b325cbc41fe95615444",
          "body": "* BB-24783: Update license files\r\n- updated copyright year, domains, license texts and references in applications and packages\r\n\r\n* Updated dev.locks\r\n\r\n| Production Changes                | From     | To       | Compare                                                                                \n[…]\n(https://github.com/schmittjoh/serializer/compare/3.31.0...3.31.1) |\r\n\r\n---------\r\n\r\nCo-authored-by: orocrmdeployer <orocrmdeployer@oroinc.com>\r\nCo-authored-by: Julia Khrysieva <ikhrysieva@oroinc.com>",
          "is_bot": false,
          "headline": "BB-24783: Update license files (#39644)",
          "author_name": "Michael Bessolov",
          "author_login": "mbessolov",
          "committed_at": "2024-11-05T10:48:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c1b6b3cb45234b8b59fafed9ceed84989d09f363",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-10-16T15:55:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6ed54ec1e1303598bdc7895c92cb1520516696e1",
          "body": "…#39344)\n\n- Updated php-cs-fixer config\r\n- Applied new cs rules\r\n- Deleted annotations like \"{@inheritDoc}\"\r\n- Rector AddOverrideAttributeToOverriddenMethodsRector rule applied\r\n- Updated documentation",
          "is_bot": false,
          "headline": "BAP-22772: Use override attribute instead of inheritdoc annotations (…",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2024-09-24T12:20:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "93f9b0ad8761a9d5eef376bd2953412a11d37799",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-08-02T20:42:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15642ed62e61165098ef99416eeca60b591eb153",
          "body": "* BAP-22587: Upgrade jQuery to the latest stable version\r\n\r\nCo-authored-by: orocrmdeployer <orocrmdeployer@oroinc.com>\r\nCo-authored-by: Yefim Yevtushenko <yyevtushenko@oroinc.com>\r\nCo-authored-by: Vadym Balan <144042893+vadymbalanoroinc@users.noreply.github.com>\r\nCo-authored-by: Alex Yegerev <1755578+lexxcode@users.noreply.github.com>",
          "is_bot": false,
          "headline": "BAP-22607: Upgrade jQuery to the 3.7.1 version (#38398)",
          "author_name": "Valerii Yustyniuk",
          "author_login": "ValeriyYustunyk",
          "committed_at": "2024-08-02T13:39:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c0dbe25671cbe502e0ab8bb26e827ee22c091a09",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-06-04T20:43:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6b282e5990f80fa7cd9e3659f8b65ccf514df55b",
          "body": "…ly classes) (#38494)",
          "is_bot": false,
          "headline": "BAP-22645: Update CS tooling to support new PHP features (e.g. readon…",
          "author_name": "Oleksandr Protsiuk",
          "author_login": "OleksandrProtsiuk",
          "committed_at": "2024-06-04T10:28:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bb777d919eaece33956f5fea89a9f15393663237",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-04-08T20:41:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bc3e93aef0cf8e1c2e08dbfe2576322f01341502",
          "body": null,
          "is_bot": false,
          "headline": "BB-23821: Updated app version to 6.1 (#37996)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-04-08T12:57:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b3ce8c44deb18d774990e23fa1a1af5c8ce047e0",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-04-02T15:52:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5a461951cc024894f243802972004d3973658509",
          "body": "…NGELOG-*.md files (#37961)",
          "is_bot": false,
          "headline": "BB-23826: Release preparation activities - Generate UPGRADE-*.md, CHA…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-04-02T11:31:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84eeb6541809d96be13de057dd1718ec6c3209d9",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-03-28T21:43:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9f7feec2501ea0e7ce7daf4732c14fe486143cd7",
          "body": "- sanitizing SQL queries dump command\r\n- entity config based sanitizing rule aggregation\r\n- file based sanitizing rules aggregation, taking bundle-less design into account\r\n- entity and fields sanitizing rules processing mechanism\r\n- guessing mechanism for field sanitizing rule\r\n- predefined entity \n[…]\nh DB engine itself\r\n- moving cloud's sanitizing rules manifest into bundles' configuration files regarding rules' belonging\r\n- functional and unit tests\r\n- documentation using 'code examples' approach",
          "is_bot": false,
          "headline": "BAP-21493: Application data sanitization(master) (#36951)",
          "author_name": "smiasnoi",
          "author_login": "smiasnoi",
          "committed_at": "2024-03-27T21:18:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "af39e780541ca124e8149653e6b7cfbd379d7c0d",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-02-29T21:40:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5b4f0f943d0643467f0bf70298e19e7004fa70c8",
          "body": "…NGELOG-*.md files (#37708)",
          "is_bot": false,
          "headline": "BB-23739: Release preparation activities - Generate UPGRADE-*.md, CHA…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-02-29T14:19:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1555917840714699adad6595b854e9d1c71170b5",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-02-26T12:48:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0ac6484db17604660e5fb50b2dfe848f22e0b37",
          "body": "- Added AttributeReader. All custom attribute implementations should use this reader instead of third-party readers.\r\n- Added rector rules to convert ORO annotations to attributes.\r\n- Created rule-set to migrate from annotations to attributes.\r\n- Processed all the code with new ORO, Symfony and Doct\n[…]\nntities when possible without the business logic change.\r\n- Added tests.\r\n\r\n---------\r\n\r\nCo-authored-by: Oleksandr Protsiuk <oprotsiuk@oroinc.com>\r\nCo-authored-by: Andrii Baranik <abaranik@oroinc.com>",
          "is_bot": false,
          "headline": "BAP-22386: Use PHP Attributes instead of annotations (#37286)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-02-25T10:12:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "44095aeb114e938158153c3ff68f21b38964719e",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-02-22T21:36:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89479d7ac45e5078fb893548484b2f2ae25852dd",
          "body": "…328)\n\nBAP-22400: Remove some of remaining deprecations after upgrading\r\n- changed list of properties in method\r\n- fixed preg_match_all default values\r\n- removed getListeners without argument\r\n- updated listeners method\r\n- in_array: added default value for all in_array method\r\n- update argument to PropertyAccessor methods\r\n- fixed dynamic property in project\r\n- update code style and property area",
          "is_bot": false,
          "headline": "BAP-22400: Remove some of remaining deprecations after upgrading (#37…",
          "author_name": "yevhenii101991",
          "author_login": "yevhenii101991",
          "committed_at": "2024-02-22T08:40:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a494ed72f917a0d6a2ea1c258c218a93c6703c73",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-01-09T21:41:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71c8b9d36cbf574de41f619655244c0ca9e1cfef",
          "body": "- added incompatibilities-6-0-beta.md and updated CHANGELOG.md in all the changed packages",
          "is_bot": false,
          "headline": "BB-22921: 6.0.0 BETA (#37299)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-01-08T13:57:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c692747d8616ac3ba01808a0b2968b4609ed50b4",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22396: Refactor data fixtures that use entity names (#37294)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2024-01-07T21:25:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fdff79fb03ca5c3e9a9af56f287a179cf41d1a75",
          "body": "…organization (#37293)",
          "is_bot": false,
          "headline": "BAP-22395: Refactor functional tests fixtures that depend on default …",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2024-01-07T12:34:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd09667977babc1d7490ca0928275d9a19246e02",
          "body": "- Migrated to Authenticator-based Security\r\n    - Refactored all the authenticators to use new security architecture\r\n    - Disabled all the custom authenticators\r\n    - Refactoring + UserInterface replaced by AbstractUser\r\n    - Added PULIC_ACCESS to open routes and added oro_security.access_contro\n[…]\nroinc.com>\r\nCo-authored-by: Zsombor Boldizsar-Zeik <zsombor.boldizsar.zeik@oroinc.com>\r\nCo-authored-by: Maksym Maksymenko <mmaksymenko@oroinc.com>\r\nCo-authored-by: Yevhenii Zhadan <yzhadan@oroinc.com>",
          "is_bot": false,
          "headline": "BAP-22237: Upgrade to Symfony 6.4 (#37219)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2024-01-07T10:00:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cc0daa42f6d3179b228284c925dceae68b9ca4c9",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2024-01-02T21:40:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d9b352635dbed5f90c10f85ad7e0c357f74a4116",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22381: Make methods private in database installers (#37261)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2024-01-01T21:31:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3dcf2f2354ba537b27febdb81db4ff7c1d6cfc87",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-11-17T21:42:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac89a057852ec217bb13cc3730fc7093ee1de6d0",
          "body": "…#36925)\n\n- replace Symfony\\Component\\Serializer\\Serializer with Symfony\\Component\\Serializer\\SerializerInterface where it is possible\r\n- simplify logic in Oro\\Component\\Layout\\BlockViewCache\r\n- remove unneeded Oro\\Bundle\\SecurityBundle\\Test\\OwnerTreeWrappingPropertiesAccessor",
          "is_bot": false,
          "headline": "BAP-22328: Replace injection of Serializer with SerializerInterface (…",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-11-17T13:50:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97931ceffa03a3cadf6a6b4e802e07cb5ca34d3e",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-09-13T20:39:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "30b0425edfbdd56f25a09655017fb4986183dfcc",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22238: Use Symfony 6 return and param types  (#36400)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-09-13T13:43:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1df62354a2a77f589b6b2d8085ef1317c1275af2",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-09-12T15:49:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a43ac4fd59c56f0328f58b6ff2ec65c69c13d75e",
          "body": "- switched oro/ packages to 6.0.* version",
          "is_bot": false,
          "headline": "BB-22921: 6.0.0 BETA (#36401)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-09-12T10:20:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aaf21c21a66f0533732acaa5ae153a0b65665234",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-09-11T20:39:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f7bb3a6def1c8d1e2b005661da8fdbedc3cb4b35",
          "body": null,
          "is_bot": false,
          "headline": "BAP-22238: Use Symfony 6 return types (#36389)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-09-11T18:55:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "447461d554a059f7adbb828808e6dc0b46485f83",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-07-12T20:37:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff95a115ac1d06eb2407c252ab1e38f15eb72767",
          "body": "- fixed mismatching types\r\n- removed redundant phpdoc blocks",
          "is_bot": false,
          "headline": "BAP-22158: Remove redundant and fix mismatching docblocks (#36024)",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-07-12T06:58:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b82e283a1244c0f51ad3d5120425b082929a48f7",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-06-19T20:37:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b518c71898e13a7338a689e50c6cb3767f3b7f60",
          "body": "- fix entity name providers\r\n- disable \"title\" meta property for some API resources\r\n- functional tests for all entities that need enttity name provider",
          "is_bot": false,
          "headline": "BAP-22120: Investigate and fix entity name providers (#35886)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-06-19T19:12:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "49f8782e741c2110ee143ff510977ef678bfc410",
          "body": "… visibility requirement (#35870)\n\n- used PSR-12 except required visibility for constants\r\n- updated php-cs-fixer config\r\n- added doc block comments for changed classes\r\n- updated php-semver-checker",
          "is_bot": false,
          "headline": "BAP-21019: Switch to PSR-12 coding standard except explicit constants…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-06-19T08:14:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "da0577d25f8c6dc7da99bbde936e7181939df2ad",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-04-14T11:35:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b4cf2b50f947c2171f6d8252c8bd7f63160242b",
          "body": "- updated dependencies list with licenses\r\n- updated changelogs and generated incompatibilities files",
          "is_bot": false,
          "headline": "BB-22318: 5.1.0 LTS",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-04-04T11:40:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "70f081902c70b0be12debd9b4164bda928589004",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-03-29T21:59:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "df1db0f14f58b651789e71622443c36e2bcd098e",
          "body": null,
          "is_bot": false,
          "headline": "CRM-9406: Zendesk integration syncs no more than 1000 items (#35155)",
          "author_name": "Dmytro Syrvachov",
          "author_login": "dsyrvachov",
          "committed_at": "2023-03-29T11:54:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "82fb6f74a8604a330e2e4bc12de63a485052fe66",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-03-20T22:59:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d7dd6a8031d4cc92f572f6bfad527fac7903241",
          "body": null,
          "is_bot": false,
          "headline": "Refactor unit tests in ZendeskBundle (#35103)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-03-19T21:50:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "658343abd7ce91f8404637df24414811f22d8380",
          "body": null,
          "is_bot": false,
          "headline": "Refactor exception expectations in unit tests (#35097)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-03-18T15:29:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b63ce4b4c54699882ca049710493791497fd24a1",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-03-13T23:07:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "73923a66e3690fb17818a02834ccbc0ae66dfb46",
          "body": "- add getSettings() method to Oro\\Bundle\\ConfigBundle\\DependencyInjection\\SettingsBuilder that simplifies loading of system settings into DIC in DI extension\r\n- refactor loading of system settings into DIC in DI extensions\r\n- add strict type to DI extensions\r\n- refactor unit tests for DI extensions",
          "is_bot": false,
          "headline": "BAP-21930: Refactor DI extensions for bundles (#35041)",
          "author_name": "Vova Soroka",
          "author_login": "vsoroka",
          "committed_at": "2023-03-11T15:06:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4fbfe76ea2f4c1d8fe33d8b3fecb78bb80fb733d",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-03-06T23:00:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9c1bee047bf8b47e7a020a4ed476860648363662",
          "body": "…NGELOG-*.md files",
          "is_bot": false,
          "headline": "BB-22198: Release preparation activities - Generate UPGRADE-*.md, CHA…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-03-04T11:50:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c19cf2923d5271884d5b34373f6c6c78639f3f6f",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-03-03T23:00:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "635bf3be523126bd7e242640f990c5299fe1f229",
          "body": "The approach to expanding entities has been changed, instead of generating additional fields and associations, the new approach uses PHP magic methods to access.\r\nImplementation:\r\n      -  ExtendEntityTrait\r\n      -  ExtendEntityInterface\r\n      -  EntityFieldExtensionInterface\r\n      -  ExtendedEnt\n[…]\nter/CHANGELOG.md#510-unreleased).\r\n\r\nCo-authored-by: Andrii Yatsenko [ayatsenko@oroinc.com](mailto:ayatsenko@oroinc.com)\r\nCo-authored-by: Victor Tihonchuk [victor@oroinc.com](mailto:victor@oroinc.com)",
          "is_bot": false,
          "headline": "BAP-21474: Extended Entities Without Code Generation (#33445)",
          "author_name": "timofiyprisyazhnyuk",
          "author_login": "timofiyprisyazhnyuk",
          "committed_at": "2023-03-03T09:11:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f51fe2f65955fe19a9bd4ac9112a25c853ed2003",
          "body": null,
          "is_bot": false,
          "headline": "Merge remote-tracking branch 'remotes/dev/master'",
          "author_name": "CI bot",
          "author_login": null,
          "committed_at": "2023-02-02T23:13:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "962dec10d597f6d5f6b0752a1041c847bc47f4b2",
          "body": "…GELOG-.md files (#34770)",
          "is_bot": false,
          "headline": "BB-22198: Release preparation activities - Generate UPGRADE-.md, CHAN…",
          "author_name": "Andrii Yatsenko",
          "author_login": "anyt",
          "committed_at": "2023-02-01T19:43:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 3,
      "commits_last_year": 29,
      "latest_release_at": "2014-12-02T12:31:28Z",
      "latest_release_tag": "1.1.1",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 14,
      "days_since_latest_release": 4251,
      "mean_days_between_releases": 54.9
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 50,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "oro/crm-zendesk",
          "exists": true,
          "license": "OSL-3.0",
          "keywords": [
            "integration",
            "Zendesk",
            "ORO"
          ],
          "ecosystem": "packagist",
          "matches_repo": true,
          "registry_url": "https://packagist.org/packages/oro/crm-zendesk",
          "is_deprecated": false,
          "latest_version": "7.0.3",
          "repository_url": "https://github.com/oroinc/OroCRMZendeskBundle",
          "versions_count": 125,
          "total_downloads": 296654,
          "dependents_count": 4,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": 6850,
          "first_published_at": null,
          "latest_published_at": "2026-06-10T17:52:16Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 43
        }
      ]
    },
    "popularity": {
      "forks": 6,
      "stars": 6,
      "watchers": 40,
      "fork_history": {
        "days": [
          {
            "date": "2014-10-16",
            "count": 1
          },
          {
            "date": "2016-06-06",
            "count": 1
          },
          {
            "date": "2017-02-03",
            "count": 1
          },
          {
            "date": "2017-09-03",
            "count": 1
          },
          {
            "date": "2017-09-16",
            "count": 1
          },
          {
            "date": "2018-08-13",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 6,
        "total_forks": 6
      },
      "star_history": null,
      "open_issues_and_prs": 1
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [],
      "largest_source_bytes": 41268,
      "source_files_sampled": 198,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "composer.json"
      ],
      "advisories": {
        "error": "No resolved dependencies carried a version and a supported ecosystem",
        "scope": "repository_graph",
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 1,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "packagist"
      ],
      "dependencies": [
        {
          "name": "oro/crm",
          "manifest": "composer.json",
          "ecosystem": "packagist",
          "version_constraint": "7.0.*"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "oro/crm",
            "direct": true,
            "version": null,
            "ecosystem": "packagist"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 1,
        "direct_count": 1,
        "indirect_count": 0
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 0,
        "open_issues": 1,
        "closed_ratio": 0.5,
        "closed_issues": 1,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 4,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "ignat-s",
          "commits": 80,
          "avatar_url": "https://avatars.githubusercontent.com/u/335396?v=4"
        },
        {
          "type": "User",
          "login": "vsoroka",
          "commits": 59,
          "avatar_url": "https://avatars.githubusercontent.com/u/4763952?v=4"
        },
        {
          "type": "User",
          "login": "orocrmdeployer",
          "commits": 57,
          "avatar_url": "https://avatars.githubusercontent.com/u/4609435?v=4"
        },
        {
          "type": "User",
          "login": "anyt",
          "commits": 48,
          "avatar_url": "https://avatars.githubusercontent.com/u/5183991?v=4"
        },
        {
          "type": "User",
          "login": "rgrebenchuk",
          "commits": 28,
          "avatar_url": "https://avatars.githubusercontent.com/u/3358411?v=4"
        },
        {
          "type": "User",
          "login": "alexandr-parkhomenko",
          "commits": 18,
          "avatar_url": "https://avatars.githubusercontent.com/u/6198444?v=4"
        },
        {
          "type": "User",
          "login": "mbessolov",
          "commits": 14,
          "avatar_url": "https://avatars.githubusercontent.com/u/2725121?v=4"
        },
        {
          "type": "User",
          "login": "dxops",
          "commits": 14,
          "avatar_url": "https://avatars.githubusercontent.com/u/1804871?v=4"
        },
        {
          "type": "User",
          "login": "mccar",
          "commits": 10,
          "avatar_url": "https://avatars.githubusercontent.com/u/165562?v=4"
        },
        {
          "type": "User",
          "login": "webevt",
          "commits": 10,
          "avatar_url": "https://avatars.githubusercontent.com/u/3187691?v=4"
        }
      ],
      "contributors_sampled": 57,
      "top_contributor_share": 0.17
    },
    "quality_signals": {
      "has_ci": false,
      "has_tests": true,
      "ci_workflows": [],
      "has_docs_dir": false,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 13 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": null,
            "reason": "no workflows found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 9,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 6,
            "reason": "8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": null,
            "reason": "no dependencies found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": null,
            "reason": "No tokens found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "b925a16d1b4546fe9faacfb1c13ab3b25265063f",
        "ran_at": "2026-07-23T21:12:30Z",
        "aggregate_score": 4,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-23T21:05:47Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": null,
      "ci_last_conclusion": null,
      "oldest_open_issues": [
        {
          "number": 1,
          "created_at": "2015-05-01T09:48:19Z",
          "last_comment_at": "2016-11-25T14:06:32Z",
          "last_comment_author": "dlab-anton"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/oroinc/OroCRMZendeskBundle",
    "host": "github.com",
    "name": "OroCRMZendeskBundle",
    "owner": "oroinc"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 52,
      "inputs": {
        "security": 40,
        "vitality": 60,
        "community": 40,
        "governance": 72,
        "engineering": 40
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "moderate",
        "name": "Vitality",
        "value": 60,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 65,
            "inputs": {
              "commits_last_year": 29,
              "human_commit_share": 1,
              "days_since_last_push": 0,
              "active_weeks_last_year": 14
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "14/52 weeks with commits",
                "points": 9.7,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 14
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "29 commits in the last year",
                "points": 13.3,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 29
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "moderate",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 52,
            "inputs": {
              "releases_count": 3,
              "latest_release_tag": "1.1.1",
              "releases_from_tags": false,
              "days_since_latest_release": 4251,
              "mean_days_between_releases": 54.9
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "3 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4251 days ago",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4251
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~54.9 days",
                "points": 19.8,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 54.9
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 0,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 0 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 40,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 26,
            "inputs": {
              "forks": 6,
              "stars": 6,
              "watchers": 40,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "6 stars",
                "points": 11.3,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "6 forks",
                "points": 5.8,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 6
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "40 watchers",
                "points": 8.8,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 40
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "at_risk",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 44,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file present, not a recognized license",
                "points": 16.9,
                "status": "partial",
                "details": [
                  {
                    "code": "license_custom",
                    "params": {}
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": null,
            "notes": [],
            "value": 56,
            "inputs": {
              "packages": [
                "oro/crm-zendesk"
              ],
              "dependents": 4,
              "ecosystems": "packagist",
              "total_downloads": 296654,
              "monthly_downloads": 6850
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "6,850 downloads/month across packagist",
                "points": 51.1,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 6850,
                      "ecosystems": "packagist"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "4 packages depend on it",
                "points": 4.7,
                "status": "partial",
                "details": [
                  {
                    "code": "registry_dependents",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "good",
        "name": "Sustainability & Governance",
        "value": 72,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "excellent",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "bus_factor": 4,
              "contributors_sampled": 57,
              "top_contributor_share": 0.17
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "4 contributor(s) cover half of all commits",
                "points": 43.2,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 17% of commits",
                "points": 18.7,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 17
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "57 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 57
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 13 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "at_risk",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): PR acceptance. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "pr_acceptance"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 38,
            "inputs": {
              "merged_prs": 0,
              "open_issues": 1,
              "closed_issues": 1,
              "issue_closed_ratio": 0.5,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "50% of issues closed",
                "points": 23.4,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 50
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "no decided pull requests or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_decided_prs_or_data",
                    "params": {}
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 70,
            "inputs": {
              "followers": 121,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "oroinc",
              "public_repos": 104,
              "account_age_days": 4846
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "121 followers of oroinc",
                "points": 15,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 121,
                      "login": "oroinc"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "104 public repos, account ~13 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 104
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 13
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "oro/crm-zendesk"
              ],
              "ecosystems": "packagist",
              "any_deprecated": false,
              "min_days_since_publish": 43
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on packagist",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "packagist"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 43 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 43
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "125 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 125
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "at_risk",
        "name": "Engineering Quality",
        "value": 40,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "at_risk",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 30,
            "inputs": {
              "has_ci": false,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": "https://www.zendesk.com/",
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://www.zendesk.com/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 40,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection, CI-Tests, Dangerous-Workflow, Packaging, Pinned-Dependencies, Signed-Releases, Token-Permissions. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection",
                    "ci_tests",
                    "dangerous_workflow",
                    "packaging",
                    "pinned_dependencies",
                    "signed_releases",
                    "token_permissions"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 40,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 11,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 7,
              "scorecard_aggregate": 4
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 13 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no workflows found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "8 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 6",
                "points": 4.5,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "no dependencies found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "No tokens found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 9
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "critical",
        "name": "AI Readiness",
        "value": 29,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "critical",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 22,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.42,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "42 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 22.4,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 42,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "critical",
            "name": "Verify loop (build / test / typecheck)",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Pinned-Dependencies. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_pinned_dependencies"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 24,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "no dependencies found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "moderate",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "primary_language": "PHP",
              "largest_source_bytes": 41268,
              "source_files_sampled": 198,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "PHP without a type-check config",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_typecheck_config_language",
                    "params": {
                      "language": "PHP"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/198 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 198,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "No resolved dependencies carried a version and a supported ecosystem"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-23T21:12:47.255023Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/o/oroinc/OroCRMZendeskBundle.svg",
  "full_name": "oroinc/OroCRMZendeskBundle",
  "license_state": "custom",
  "license_spdx": null
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsPackagist.