Public record
Software health reportschema 0.26.0 · metrics 1.13.0 · 2026-07-22 07:44 UTC

proticom / gnosys

Persistent memory for AI agents

TypeScriptMIT★ 4 stars⑂ 0 forkssince Mar 2026View on GitHub ↗

proticom/gnosys holds a health index of 65 out of 100, placing it in the Moderate band. It scores highest on Engineering Quality (86/100) and lowest on Sustainability & Governance (42/100). It was last updated 1 day ago. A single contributor accounts for most of its recent work.

65
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

65
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

1 follower2 public repossince Feb 2015

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

80Good · 22% of overall
How it's scored
36/36Push recency — last push 1 days ago
11.1/36Commit cadence — 16/52 weeks with commits
18/18Commit volume — 500 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year500
human_commit_share0.99
days_since_last_push1
active_weeks_last_year16
How it's scored
16.2/27Ships releases — 90 version tags (no GitHub releases)
36/36Release recency — latest release 4 days ago
27/27Release cadence — a release every ~1.6 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count90
latest_release_tagv6.2.1
releases_from_tagsyes
days_since_latest_release4
mean_days_between_releases1.6
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

50Moderate · 18% of overall
How it's scored
7.7/60Stars — 4 stars
0/25Forks — 0 forks
0/15Watchers — 0 watchers
Inputs used
forks0
stars4
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonbelow_threshold

Community health

92Excellent
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (MIT)
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateyes
How it's scored
47.3/80Monthly downloads — 3,501 downloads/month across npm
0/20Registry dependents — not reported by this ecosystem
Inputs used
packagesgnosys
dependents
ecosystemsnpm
total_downloads
monthly_downloads3,501
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

42At risk · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0/22.5Commit distribution — top contributor authored 100% of commits
1.4/13.5Contributor breadth — 1 contributors
0/10OpenSSF Scorecard: Contributors — project has 0 contributing companies or organizations -- score normalized to 0
Inputs used
bus_factor1
contributors_sampled1
top_contributor_share1
How it's scored
0/46.8Issue resolution — 0% of issues closed
25.5/38.3PR acceptance — 4/6 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/28 approved changesets -- score normalized to 0
Inputs used
merged_prs4
open_issues2
closed_issues0
issue_closed_ratio0
closed_unmerged_prs2
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
2.2/25Owner reach — 1 followers of proticom
15.5/25Track record — 2 public repos, account ~11 yr old
Inputs used
followers1
owner_typeOrganization
is_verified
owner_loginproticom
public_repos2
account_age_days4,171
How it's scored
25/25Published & resolvable — 1 package(s) on npm
35/35Publish recency — latest publish 4 days ago
20/20Version history — 87 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packagesgnosys
ecosystemsnpm
any_deprecatedno
min_days_since_publish4

Engineering Quality

Are baseline engineering and documentation practices in place?

86Excellent · 20% of overall
How it's scored
24/24CI workflows — 3 workflow(s)
24/24Tests present
16/16Linter config — biome.json
0/9.6Pre-commit hooks
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 1 out of 1 merged PRs checked by a CI test -- score normalized to 10
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configno

Documentation

90Excellent
How it's scored
30/30README
25/25Documentation directory
15/15Documentation / homepage site — https://gnosys.ai
10/10Repository description
10/10Topics — 18 topics
0/10Wiki
Inputs used
topicsai, ai-agents, ai-tools, developer-tools, knowledge-management, llm, mcp, mcp-server, memory, model-context-protocol, obsidian, persistent-memory, typescript, agent-memory, claude, cursor, sqlite, grok-build
has_wikino
homepagehttps://gnosys.ai
has_readmeyes
has_docs_diryes
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

69Moderate · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
2.2/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 1 out of 1 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/28 approved changesets -- score normalized to 0
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
3/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — no data
6.8/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
2.2/7.5Vulnerabilities — 7 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate6.1
Excluded from scoring (no data or not applicable): packaging, signed_releases. Remaining weights renormalized.
How it's scored
35/35Direct dependencies free of known advisories — no direct dependency carries a known advisory
0/25Indirect dependencies free of known advisories — transitive set not separable from development and test dependencies in this scope
0/40No advisories left outstanding — no advisory carries a publication date
Inputs used
sourceosv
advisories7
affected_packages4
assessed_packages438
unassessed_packages0
affected_by_severityhigh 2, moderate 2
direct_affected_packages0
Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 438 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

74Good · 0% of overall
How it's scored
45/45Agent instructions — AGENTS.md, src/test/fixtures/ide-init/claude.md
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 84 of 99 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share0.848
agent_instruction_filesAGENTS.md, src/test/fixtures/ide-init/claude.md
agent_instruction_max_bytes4,665
How it's scored
0/18One-command bootstrap
22/22Automated tests
11/11Lint / format config — biome.json
11/11Static type checking — tsconfig.json
10/10Reproducible environment — Dockerfile, lockfile
10/10Demonstrated agent practice — 26 of the last 100 commits agent-authored or agent-credited
5/8Automated maintenance — dependency automation configured, none observed in the sampled commits
6/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 6
Inputs used
has_nixno
has_testsyes
lockfilespackage-lock.json
has_dockerfileyes
typed_languageyes
bootstrap_files
has_devcontainerno
has_linter_configyes
typecheck_configstsconfig.json
agent_commit_share0.26
toolchain_manifests
dependency_bot_commit_share0
How it's scored
45/45Type-checkable code — TypeScript (statically typed)
54.7/55Manageable file sizes — 3/537 source files over 60KB
Inputs used
primary_languageTypeScript
largest_source_bytes185,029
source_files_sampled537
oversized_source_files3
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
20/20MCP server
0/40Runnable examples
Inputs used
example_dirs
has_mcp_signalyes
api_schema_files

Key facts

4GitHub stars
1contributors
500commits, last 12 months
1days since last push
90releases
1bus factor
2open issues
npmpackage ecosystems

Data collection warnings

  • deps.dev does not index npm:gnosys@6.2.1; advisories assessed against the repository dependency graph instead

More detail

Star and fork history 4 ★ / 0 ⇿
4Stars
37Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

1223344412026-052026-062026-07
Major 1Minor 11Patch 25
OpenSSF Scorecard 6.1 / 10
6.1aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-22 07:43 UTC

10Binary-Artifactsno binaries found in the repo
3Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests1 out of 1 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/28 approved changesets -- score normalized to 0
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
6Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 6
0SASTSAST tool is not run on all commits -- score normalized to 0
10Security-Policysecurity policy file detected
n/aSigned-Releasesno releases found
9Token-Permissionsdetected GitHub workflow tokens with excessive permissions
3Vulnerabilities7 existing vulnerabilities detected
Direct dependencies 13
RegistryPackageVersion constraintManifest
npm@anthropic-ai/sdk^0.78.0package.json
npm@modelcontextprotocol/sdk^1.12.1package.json
npmcommander^13.1.0package.json
npmcsv-parse^6.1.0package.json
npmdotenv^17.3.1package.json
npmglob^13.0.6package.json
npmgray-matter^4.0.3package.json
npmjszip^3.10.1package.json
npmmammoth^1.12.0package.json
npmpdf-parse^2.4.5package.json
npmturndown^7.2.2package.json
npmulidx^2.4.1package.json
npmzod^4.3.6package.json
All dependencies 438

Full resolved dependency set from the GitHub dependency graph: 13 direct and 425 indirect (transitive) packages. The transitive closure is complete when the repository commits a lockfile.

RegistryPackageVersionRelation
npm@anthropic-ai/sdk0.78.0direct
npm@modelcontextprotocol/sdk1.29.0direct
npmcommander13.1.0direct
npmcsv-parse6.2.1direct
npmdotenv17.4.2direct
npmglob13.0.6direct
npmgray-matter4.0.3direct
npmjszip3.10.1direct
npmmammoth1.12.0direct
npmpdf-parse2.4.5direct
npmturndown7.2.4direct
npmulidx2.4.1direct
npmzod4.4.3direct
npm@babel/helper-string-parser7.29.7indirect
npm@babel/helper-validator-identifier7.29.7indirect
npm@babel/parser7.29.7indirect
npm@babel/runtime7.29.7indirect
npm@babel/types7.29.7indirect
npm@bcoe/v8-coverage1.0.2indirect
npm@biomejs/biome2.5.0indirect
npm@biomejs/cli-darwin-arm642.5.0indirect
npm@biomejs/cli-darwin-x642.5.0indirect
npm@biomejs/cli-linux-arm642.5.0indirect
npm@biomejs/cli-linux-arm64-musl2.5.0indirect
npm@biomejs/cli-linux-x642.5.0indirect
npm@biomejs/cli-linux-x64-musl2.5.0indirect
npm@biomejs/cli-win32-arm642.5.0indirect
npm@biomejs/cli-win32-x642.5.0indirect
npm@emnapi/core1.10.0indirect
npm@emnapi/runtime1.10.0indirect
npm@emnapi/wasi-threads1.2.1indirect
npm@esbuild/aix-ppc640.28.1indirect
npm@esbuild/android-arm0.28.1indirect
npm@esbuild/android-arm640.28.1indirect
npm@esbuild/android-x640.28.1indirect
npm@esbuild/darwin-arm640.28.1indirect
npm@esbuild/darwin-x640.28.1indirect
npm@esbuild/freebsd-arm640.28.1indirect
npm@esbuild/freebsd-x640.28.1indirect
npm@esbuild/linux-arm0.28.1indirect
npm@esbuild/linux-arm640.28.1indirect
npm@esbuild/linux-ia320.28.1indirect
npm@esbuild/linux-loong640.28.1indirect
npm@esbuild/linux-mips64el0.28.1indirect
npm@esbuild/linux-ppc640.28.1indirect
npm@esbuild/linux-riscv640.28.1indirect
npm@esbuild/linux-s390x0.28.1indirect
npm@esbuild/linux-x640.28.1indirect
npm@esbuild/netbsd-arm640.28.1indirect
npm@esbuild/netbsd-x640.28.1indirect
npm@esbuild/openbsd-arm640.28.1indirect
npm@esbuild/openbsd-x640.28.1indirect
npm@esbuild/openharmony-arm640.28.1indirect
npm@esbuild/sunos-x640.28.1indirect
npm@esbuild/win32-arm640.28.1indirect
npm@esbuild/win32-ia320.28.1indirect
npm@esbuild/win32-x640.28.1indirect
npm@hono/node-server1.19.14indirect
npm@huggingface/jinja0.5.9indirect
npm@huggingface/tokenizers0.1.3indirect
npm@huggingface/transformers4.2.0indirect
npm@img/colour1.1.0indirect
npm@img/sharp-darwin-arm640.34.5indirect
npm@img/sharp-darwin-x640.34.5indirect
npm@img/sharp-libvips-darwin-arm641.2.4indirect
npm@img/sharp-libvips-darwin-x641.2.4indirect
npm@img/sharp-libvips-linux-arm1.2.4indirect
npm@img/sharp-libvips-linux-arm641.2.4indirect
npm@img/sharp-libvips-linux-ppc641.2.4indirect
npm@img/sharp-libvips-linux-riscv641.2.4indirect
npm@img/sharp-libvips-linux-s390x1.2.4indirect
npm@img/sharp-libvips-linux-x641.2.4indirect
npm@img/sharp-libvips-linuxmusl-arm641.2.4indirect
npm@img/sharp-libvips-linuxmusl-x641.2.4indirect
npm@img/sharp-linux-arm0.34.5indirect
npm@img/sharp-linux-arm640.34.5indirect
npm@img/sharp-linux-ppc640.34.5indirect
npm@img/sharp-linux-riscv640.34.5indirect
npm@img/sharp-linux-s390x0.34.5indirect
npm@img/sharp-linux-x640.34.5indirect
npm@img/sharp-linuxmusl-arm640.34.5indirect
npm@img/sharp-linuxmusl-x640.34.5indirect
npm@img/sharp-wasm320.34.5indirect
npm@img/sharp-win32-arm640.34.5indirect
npm@img/sharp-win32-ia320.34.5indirect
npm@img/sharp-win32-x640.34.5indirect
npm@jridgewell/resolve-uri3.1.2indirect
npm@jridgewell/sourcemap-codec1.5.5indirect
npm@jridgewell/trace-mapping0.3.31indirect
npm@mixmark-io/domino2.2.0indirect
npm@napi-rs/canvas0.1.80indirect
npm@napi-rs/canvas-android-arm640.1.80indirect
npm@napi-rs/canvas-darwin-arm640.1.80indirect
npm@napi-rs/canvas-darwin-x640.1.80indirect
npm@napi-rs/canvas-linux-arm-gnueabihf0.1.80indirect
npm@napi-rs/canvas-linux-arm64-gnu0.1.80indirect
npm@napi-rs/canvas-linux-arm64-musl0.1.80indirect
npm@napi-rs/canvas-linux-riscv64-gnu0.1.80indirect
npm@napi-rs/canvas-linux-x64-gnu0.1.80indirect
npm@napi-rs/canvas-linux-x64-musl0.1.80indirect
npm@napi-rs/canvas-win32-x64-msvc0.1.80indirect
npm@napi-rs/wasm-runtime1.1.5indirect
npm@oxc-parser/binding-android-arm-eabi0.133.0indirect
npm@oxc-parser/binding-android-arm640.133.0indirect
npm@oxc-parser/binding-darwin-arm640.133.0indirect
npm@oxc-parser/binding-darwin-x640.133.0indirect
npm@oxc-parser/binding-freebsd-x640.133.0indirect
npm@oxc-parser/binding-linux-arm-gnueabihf0.133.0indirect
npm@oxc-parser/binding-linux-arm-musleabihf0.133.0indirect
npm@oxc-parser/binding-linux-arm64-gnu0.133.0indirect
npm@oxc-parser/binding-linux-arm64-musl0.133.0indirect
npm@oxc-parser/binding-linux-ppc64-gnu0.133.0indirect
npm@oxc-parser/binding-linux-riscv64-gnu0.133.0indirect
npm@oxc-parser/binding-linux-riscv64-musl0.133.0indirect
npm@oxc-parser/binding-linux-s390x-gnu0.133.0indirect
npm@oxc-parser/binding-linux-x64-gnu0.133.0indirect
npm@oxc-parser/binding-linux-x64-musl0.133.0indirect
npm@oxc-parser/binding-openharmony-arm640.133.0indirect
npm@oxc-parser/binding-wasm32-wasi0.133.0indirect
npm@oxc-parser/binding-win32-arm64-msvc0.133.0indirect
npm@oxc-parser/binding-win32-ia32-msvc0.133.0indirect
npm@oxc-parser/binding-win32-x64-msvc0.133.0indirect
npm@oxc-project/types0.133.0indirect
npm@oxc-resolver/binding-android-arm-eabi11.20.0indirect
npm@oxc-resolver/binding-android-arm6411.20.0indirect
npm@oxc-resolver/binding-darwin-arm6411.20.0indirect
npm@oxc-resolver/binding-darwin-x6411.20.0indirect
npm@oxc-resolver/binding-freebsd-x6411.20.0indirect
npm@oxc-resolver/binding-linux-arm-gnueabihf11.20.0indirect
npm@oxc-resolver/binding-linux-arm-musleabihf11.20.0indirect
npm@oxc-resolver/binding-linux-arm64-gnu11.20.0indirect
npm@oxc-resolver/binding-linux-arm64-musl11.20.0indirect
npm@oxc-resolver/binding-linux-ppc64-gnu11.20.0indirect
npm@oxc-resolver/binding-linux-riscv64-gnu11.20.0indirect
npm@oxc-resolver/binding-linux-riscv64-musl11.20.0indirect
npm@oxc-resolver/binding-linux-s390x-gnu11.20.0indirect
npm@oxc-resolver/binding-linux-x64-gnu11.20.0indirect
npm@oxc-resolver/binding-linux-x64-musl11.20.0indirect
npm@oxc-resolver/binding-openharmony-arm6411.20.0indirect
npm@oxc-resolver/binding-wasm32-wasi11.20.0indirect
npm@oxc-resolver/binding-win32-arm64-msvc11.20.0indirect
npm@oxc-resolver/binding-win32-x64-msvc11.20.0indirect
npm@protobufjs/aspromise1.1.2indirect
npm@protobufjs/base641.1.2indirect
npm@protobufjs/codegen2.0.5indirect
npm@protobufjs/eventemitter1.1.1indirect
npm@protobufjs/fetch1.1.1indirect
npm@protobufjs/float1.0.2indirect
npm@protobufjs/path1.1.2indirect
npm@protobufjs/pool1.1.0indirect
npm@protobufjs/utf81.1.1indirect
npm@rolldown/binding-android-arm641.0.3indirect
npm@rolldown/binding-darwin-arm641.0.3indirect
npm@rolldown/binding-darwin-x641.0.3indirect
npm@rolldown/binding-freebsd-x641.0.3indirect
npm@rolldown/binding-linux-arm-gnueabihf1.0.3indirect
npm@rolldown/binding-linux-arm64-gnu1.0.3indirect
npm@rolldown/binding-linux-arm64-musl1.0.3indirect
npm@rolldown/binding-linux-ppc64-gnu1.0.3indirect
npm@rolldown/binding-linux-s390x-gnu1.0.3indirect
npm@rolldown/binding-linux-x64-gnu1.0.3indirect
npm@rolldown/binding-linux-x64-musl1.0.3indirect
npm@rolldown/binding-openharmony-arm641.0.3indirect
npm@rolldown/binding-wasm32-wasi1.0.3indirect
npm@rolldown/binding-win32-arm64-msvc1.0.3indirect
npm@rolldown/binding-win32-x64-msvc1.0.3indirect
npm@rolldown/pluginutils1.0.1indirect
npm@standard-schema/spec1.1.0indirect
npm@tybys/wasm-util0.10.2indirect
npm@types/better-sqlite37.6.13indirect
npm@types/chai5.2.3indirect
npm@types/deep-eql4.0.2indirect
npm@types/estree1.0.9indirect
npm@types/node22.19.21indirect
npm@types/turndown5.0.6indirect
npm@vitest/coverage-v84.1.9indirect
npm@vitest/expect4.1.9indirect
npm@vitest/mocker4.1.9indirect
npm@vitest/pretty-format4.1.9indirect
npm@vitest/runner4.1.9indirect
npm@vitest/snapshot4.1.9indirect
npm@vitest/spy4.1.9indirect
npm@vitest/utils4.1.9indirect
npm@xmldom/xmldom0.8.13indirect
npmaccepts2.0.0indirect
npmadm-zip0.6.0indirect
npmajv8.20.0indirect
npmajv-formats3.0.1indirect
npmargparse1.0.10indirect
npmassertion-error2.0.1indirect
npmast-v8-to-istanbul1.0.4indirect
npmbalanced-match4.0.4indirect
npmbase64-js1.5.1indirect
npmbetter-sqlite311.10.0indirect
npmbindings1.5.0indirect
npmbl4.1.0indirect
npmbluebird3.4.7indirect
npmbody-parser2.3.0indirect
npmboolean3.2.0indirect
npmbrace-expansion5.0.7indirect
npmbuffer5.7.1indirect
npmbytes3.1.2indirect
npmcall-bind-apply-helpers1.0.2indirect
npmcall-bound1.0.4indirect
npmchai6.2.2indirect
npmchownr1.1.4indirect
npmcontent-disposition1.1.0indirect
npmcontent-type1.0.5indirect
npmcontent-type2.0.0indirect
npmconvert-source-map2.0.0indirect
npmcookie0.7.2indirect
npmcookie-signature1.2.2indirect
npmcore-util-is1.0.3indirect
npmcors2.8.6indirect
npmcross-spawn7.0.6indirect
npmdebug4.4.3indirect
npmdecompress-response6.0.0indirect
npmdeep-extend0.6.0indirect
npmdefine-data-property1.1.4indirect
npmdefine-properties1.2.1indirect
npmdepd2.0.0indirect
npmdetect-libc2.1.2indirect
npmdetect-node2.1.0indirect
npmdingbat-to-unicode1.0.1indirect
npmduck0.1.12indirect
npmdunder-proto1.0.1indirect
npmee-first1.1.1indirect
npmencodeurl2.0.0indirect
npmend-of-stream1.4.5indirect
npmes-define-property1.0.1indirect
npmes-errors1.3.0indirect
npmes-module-lexer2.1.0indirect
npmes-object-atoms1.1.2indirect
npmes6-error4.1.1indirect
npmesbuild0.28.1indirect
npmescape-html1.0.3indirect
npmescape-string-regexp4.0.0indirect
npmesprima4.0.1indirect
npmestree-walker3.0.3indirect
npmetag1.8.1indirect
npmeventsource3.0.7indirect
npmeventsource-parser3.1.0indirect
npmexpand-template2.0.3indirect
npmexpect-type1.3.0indirect
npmexpress5.2.1indirect
npmexpress-rate-limit8.5.2indirect
npmextend-shallow2.0.1indirect
npmfast-deep-equal3.1.3indirect
npmfast-uri3.1.2indirect
npmfd-package-json2.0.0indirect
npmfdir6.5.0indirect
npmfile-uri-to-path1.0.0indirect
npmfinalhandler2.1.1indirect
npmflatbuffers25.9.23indirect
npmformatly0.3.0indirect
npmforwarded0.2.0indirect
npmfresh2.0.0indirect
npmfs-constants1.0.0indirect
npmfsevents2.3.3indirect
npmfunction-bind1.1.2indirect
npmget-intrinsic1.3.0indirect
npmget-proto1.0.1indirect
npmget-tsconfig4.14.0indirect
npmgithub-from-package0.0.0indirect
npmglobal-agent3.0.0indirect
npmglobalthis1.0.4indirect
npmgopd1.2.0indirect
npmguid-typescript1.0.9indirect
npmhas-flag4.0.0indirect
npmhas-property-descriptors1.0.2indirect
npmhas-symbols1.1.0indirect
npmhasown2.0.4indirect
npmhono4.12.25indirect
npmhtml-escaper2.0.2indirect
npmhttp-errors2.0.1indirect
npmiconv-lite0.7.2indirect
npmieee7541.2.1indirect
npmimmediate3.0.6indirect
npminherits2.0.4indirect
npmini1.3.8indirect
npmip-address10.2.0indirect
npmipaddr.js1.9.1indirect
npmis-extendable0.1.1indirect
npmis-promise4.0.0indirect
npmisarray1.0.0indirect
npmisexe2.0.0indirect
npmistanbul-lib-coverage3.2.2indirect
npmistanbul-lib-report3.0.1indirect
npmistanbul-reports3.2.0indirect
npmjiti2.7.0indirect
npmjose6.2.3indirect
npmjs-tokens10.0.0indirect
npmjs-yaml3.15.0indirect
npmjson-schema-to-ts3.1.1indirect
npmjson-schema-traverse1.0.0indirect
npmjson-schema-typed8.0.2indirect
npmjson-stringify-safe5.0.1indirect
npmkind-of6.0.3indirect
npmknip6.16.1indirect
npmlayerr3.0.0indirect
npmlie3.3.0indirect
npmlightningcss1.32.0indirect
npmlightningcss-android-arm641.32.0indirect
npmlightningcss-darwin-arm641.32.0indirect
npmlightningcss-darwin-x641.32.0indirect
npmlightningcss-freebsd-x641.32.0indirect
npmlightningcss-linux-arm-gnueabihf1.32.0indirect
npmlightningcss-linux-arm64-gnu1.32.0indirect
npmlightningcss-linux-arm64-musl1.32.0indirect
npmlightningcss-linux-x64-gnu1.32.0indirect
npmlightningcss-linux-x64-musl1.32.0indirect
npmlightningcss-win32-arm64-msvc1.32.0indirect
npmlightningcss-win32-x64-msvc1.32.0indirect
npmlong5.3.2indirect
npmlop0.4.2indirect
npmlru-cache11.5.1indirect
npmmagic-string0.30.21indirect
npmmagicast0.5.3indirect
npmmake-dir4.0.0indirect
npmmatcher3.0.0indirect
npmmath-intrinsics1.1.0indirect
npmmedia-typer1.1.0indirect
npmmerge-descriptors2.0.0indirect
npmmime-db1.54.0indirect
npmmime-types3.0.2indirect
npmmimic-response3.1.0indirect
npmminimatch10.2.5indirect
npmminimist1.2.8indirect
npmminipass7.1.3indirect
npmmkdirp-classic0.5.3indirect
npmms2.1.3indirect
npmnanoid3.3.12indirect
npmnapi-build-utils2.0.0indirect
npmnegotiator1.0.0indirect
npmnode-abi3.92.0indirect
npmobject-assign4.1.1indirect
npmobject-inspect1.13.4indirect
npmobject-keys1.1.1indirect
npmobug2.1.3indirect
npmon-finished2.4.1indirect
npmonce1.4.0indirect
npmonnxruntime-common1.24.0-dev.20251116-b39e144322indirect
npmonnxruntime-common1.24.3indirect
npmonnxruntime-node1.24.3indirect
npmonnxruntime-web1.26.0-dev.20260416-b7804b056cindirect
npmoption0.2.4indirect
npmoxc-parser0.133.0indirect
npmoxc-resolver11.20.0indirect
npmpako1.0.11indirect
npmparseurl1.3.3indirect
npmpath-is-absolute1.0.1indirect
npmpath-key3.1.1indirect
npmpath-scurry2.0.2indirect
npmpath-to-regexp8.4.2indirect
npmpathe2.0.3indirect
npmpdfjs-dist5.4.296indirect
npmpicocolors1.1.1indirect
npmpicomatch4.0.4indirect
npmpkce-challenge5.0.1indirect
npmplatform1.3.6indirect
npmpostcss8.5.15indirect
npmprebuild-install7.1.3indirect
npmprocess-nextick-args2.0.1indirect
npmprotobufjs7.6.5indirect
npmproxy-addr2.0.7indirect
npmpump3.0.4indirect
npmqs6.15.2indirect
npmrange-parser1.2.1indirect
npmraw-body3.0.2indirect
npmrc1.2.8indirect
npmreadable-stream2.3.8indirect
npmreadable-stream3.6.2indirect
npmrequire-from-string2.0.2indirect
npmresolve-pkg-maps1.0.0indirect
npmroarr2.15.4indirect
npmrolldown1.0.3indirect
npmrouter2.2.0indirect
npmsafe-buffer5.1.2indirect
npmsafer-buffer2.1.2indirect
npmsection-matter1.0.0indirect
npmsemver7.8.4indirect
npmsemver-compare1.0.0indirect
npmsend1.2.1indirect
npmserialize-error7.0.1indirect
npmserve-static2.2.1indirect
npmsetimmediate1.0.5indirect
npmsetprototypeof1.2.0indirect
npmsharp0.34.5indirect
npmshebang-command2.0.0indirect
npmshebang-regex3.0.0indirect
npmside-channel1.1.1indirect
npmside-channel-list1.0.1indirect
npmside-channel-map1.0.1indirect
npmside-channel-weakmap1.0.2indirect
npmsiginfo2.0.0indirect
npmsimple-concat1.0.1indirect
npmsimple-get4.0.1indirect
npmsmol-toml1.6.1indirect
npmsource-map-js1.2.1indirect
npmsprintf-js1.0.3indirect
npmsprintf-js1.1.3indirect
npmstackback0.0.2indirect
npmstatuses2.0.2indirect
npmstd-env4.1.0indirect
npmstring_decoder1.1.1indirect
npmstrip-bom-string1.0.0indirect
npmstrip-json-comments2.0.1indirect
npmstrip-json-comments5.0.3indirect
npmsupports-color7.2.0indirect
npmtar-fs2.1.4indirect
npmtar-stream2.2.0indirect
npmtinybench2.9.0indirect
npmtinyexec1.2.4indirect
npmtinyglobby0.2.17indirect
npmtinyrainbow3.1.0indirect
npmtoidentifier1.0.1indirect
npmts-algebra2.0.0indirect
npmtslib2.8.1indirect
npmtsx4.22.4indirect
npmtunnel-agent0.6.0indirect
npmtype-fest0.13.1indirect
npmtype-is2.1.0indirect
npmtypescript5.9.3indirect
npmunbash3.0.0indirect
npmunderscore1.13.8indirect
npmundici-types6.21.0indirect
npmunpipe1.0.0indirect
npmutil-deprecate1.0.2indirect
npmvary1.1.2indirect
npmvite8.0.16indirect
npmvitest4.1.9indirect
npmwalk-up-path4.0.0indirect
npmwhich2.0.2indirect
npmwhy-is-node-running2.3.0indirect
npmwrappy1.0.2indirect
npmxmlbuilder10.1.1indirect
npmyaml2.9.0indirect
npmzod-to-json-schema3.25.2indirect
Dependency advisories 4

This repository publishes no package the index resolves, so its own dependency graph was assessed — 438 packages, which also include development and test pins that never ship: 4 carry known advisories, of which 0 are direct.

PackageVersionRelationSeverityAdvisoriesFixed in
fast-uri3.1.2indirecthigh24.1.1
sharp0.34.5indirecthigh10.35.0
@hono/node-server1.19.14indirectmoderate12.0.5
hono4.12.25indirectmoderate34.12.27

An advisory means the version recorded in the dependency graph falls inside an advisory’s affected range. Reachability is not analysed, and the graph includes development and test pins — a finding may concern tooling rather than shipped software.

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [
        "ai",
        "ai-agents",
        "ai-tools",
        "developer-tools",
        "knowledge-management",
        "llm",
        "mcp",
        "mcp-server",
        "memory",
        "model-context-protocol",
        "obsidian",
        "persistent-memory",
        "typescript",
        "agent-memory",
        "claude",
        "cursor",
        "sqlite",
        "grok-build"
      ],
      "is_fork": false,
      "size_kb": 8140,
      "has_wiki": false,
      "homepage": "https://gnosys.ai",
      "languages": {
        "Shell": 3808,
        "Dockerfile": 2998,
        "JavaScript": 230901,
        "TypeScript": 2910457
      },
      "pushed_at": "2026-07-21T04:42:53Z",
      "created_at": "2026-03-07T21:09:04Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-21T07:45:50Z",
      "description": "Persistent memory for AI agents",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "master",
      "license_spdx_raw": "MIT",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "www.proticom.com",
      "name": "Proticom - IT Intelligence",
      "type": "Organization",
      "login": "proticom",
      "company": null,
      "location": "United States of America",
      "followers": 1,
      "avatar_url": "https://avatars.githubusercontent.com/u/11068368?v=4",
      "created_at": "2015-02-19T01:08:09Z",
      "is_verified": null,
      "public_repos": 2,
      "account_age_days": 4171
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v6.2.1",
          "kind": "patch",
          "published_at": "2026-07-17T09:38:30Z"
        },
        {
          "tag": "v6.2.0",
          "kind": "minor",
          "published_at": "2026-07-15T03:19:09Z"
        },
        {
          "tag": "v6.1.0",
          "kind": "minor",
          "published_at": "2026-07-15T02:47:21Z"
        },
        {
          "tag": "v6.0.1",
          "kind": "patch",
          "published_at": "2026-07-13T03:10:51Z"
        },
        {
          "tag": "v6.0.0",
          "kind": "major",
          "published_at": "2026-07-13T02:57:23Z"
        },
        {
          "tag": "v5.17.0",
          "kind": "minor",
          "published_at": "2026-07-09T01:05:53Z"
        },
        {
          "tag": "v5.16.0",
          "kind": "minor",
          "published_at": "2026-07-05T15:08:24Z"
        },
        {
          "tag": "v5.15.3",
          "kind": "patch",
          "published_at": "2026-07-04T08:40:43Z"
        },
        {
          "tag": "v5.15.2",
          "kind": "patch",
          "published_at": "2026-07-04T08:23:37Z"
        },
        {
          "tag": "v5.15.1",
          "kind": "patch",
          "published_at": "2026-07-03T01:07:38Z"
        },
        {
          "tag": "v5.15.0",
          "kind": "minor",
          "published_at": "2026-07-03T00:59:28Z"
        },
        {
          "tag": "v5.14.0",
          "kind": "minor",
          "published_at": "2026-07-02T22:48:06Z"
        },
        {
          "tag": "v5.13.1",
          "kind": "patch",
          "published_at": "2026-07-02T21:21:57Z"
        },
        {
          "tag": "v5.13.0",
          "kind": "minor",
          "published_at": "2026-07-02T14:20:43Z"
        },
        {
          "tag": "v5.12.3",
          "kind": "patch",
          "published_at": "2026-07-02T05:38:16Z"
        },
        {
          "tag": "v5.12.2",
          "kind": "patch",
          "published_at": "2026-06-12T03:18:54Z"
        },
        {
          "tag": "v5.12.1",
          "kind": "patch",
          "published_at": "2026-06-12T00:14:00Z"
        },
        {
          "tag": "v5.11.4",
          "kind": "patch",
          "published_at": "2026-05-27T03:13:42Z"
        },
        {
          "tag": "v5.11.3",
          "kind": "patch",
          "published_at": "2026-05-27T02:48:20Z"
        },
        {
          "tag": "v5.11.2",
          "kind": "patch",
          "published_at": "2026-05-27T02:45:02Z"
        },
        {
          "tag": "v5.11.1",
          "kind": "patch",
          "published_at": "2026-05-27T02:28:15Z"
        },
        {
          "tag": "v5.11.0",
          "kind": "minor",
          "published_at": "2026-05-26T19:29:57Z"
        },
        {
          "tag": "v5.10.0",
          "kind": "minor",
          "published_at": "2026-05-24T07:07:48Z"
        },
        {
          "tag": "v5.9.5",
          "kind": "patch",
          "published_at": "2026-05-21T14:48:21Z"
        },
        {
          "tag": "v5.9.4",
          "kind": "patch",
          "published_at": "2026-05-21T02:12:05Z"
        },
        {
          "tag": "v5.9.3",
          "kind": "patch",
          "published_at": "2026-05-20T21:51:42Z"
        },
        {
          "tag": "v5.9.2",
          "kind": "patch",
          "published_at": "2026-05-19T21:40:54Z"
        },
        {
          "tag": "v5.9.1",
          "kind": "patch",
          "published_at": "2026-05-18T02:51:59Z"
        },
        {
          "tag": "v5.9.0",
          "kind": "minor",
          "published_at": "2026-05-17T23:35:41Z"
        },
        {
          "tag": "v5.8.6",
          "kind": "patch",
          "published_at": "2026-05-16T04:59:25Z"
        },
        {
          "tag": "v5.8.5",
          "kind": "patch",
          "published_at": "2026-05-16T04:53:35Z"
        },
        {
          "tag": "v5.8.4",
          "kind": "patch",
          "published_at": "2026-05-16T02:59:09Z"
        },
        {
          "tag": "v5.8.3",
          "kind": "patch",
          "published_at": "2026-05-16T00:22:06Z"
        },
        {
          "tag": "v5.8.2",
          "kind": "patch",
          "published_at": "2026-05-14T06:43:25Z"
        },
        {
          "tag": "v5.8.1",
          "kind": "patch",
          "published_at": "2026-05-14T04:44:29Z"
        },
        {
          "tag": "v5.8.0",
          "kind": "minor",
          "published_at": "2026-05-14T03:47:49Z"
        },
        {
          "tag": "v5.7.1",
          "kind": "patch",
          "published_at": "2026-05-12T23:50:57Z"
        },
        {
          "tag": "v5.7.0",
          "kind": "minor",
          "published_at": "2026-05-05T15:57:08Z"
        },
        {
          "tag": "v5.6.0",
          "kind": "minor",
          "published_at": "2026-05-05T01:20:41Z"
        },
        {
          "tag": "v5.5.0",
          "kind": "minor",
          "published_at": "2026-05-03T14:41:32Z"
        },
        {
          "tag": "v5.4.3",
          "kind": "patch",
          "published_at": "2026-05-03T02:02:28Z"
        },
        {
          "tag": "v5.4.2",
          "kind": "patch",
          "published_at": "2026-05-03T00:04:23Z"
        },
        {
          "tag": "v5.4.1",
          "kind": "patch",
          "published_at": "2026-05-01T11:25:31Z"
        },
        {
          "tag": "v5.4.0",
          "kind": "minor",
          "published_at": "2026-04-30T13:36:24Z"
        },
        {
          "tag": "v5.3.3",
          "kind": "patch",
          "published_at": "2026-04-26T05:33:21Z"
        },
        {
          "tag": "v5.3.2",
          "kind": "patch",
          "published_at": "2026-04-26T05:06:40Z"
        },
        {
          "tag": "v5.3.1",
          "kind": "patch",
          "published_at": "2026-04-26T01:38:55Z"
        },
        {
          "tag": "v5.3.0",
          "kind": "minor",
          "published_at": "2026-04-26T01:13:19Z"
        },
        {
          "tag": "v5.2.24",
          "kind": "patch",
          "published_at": "2026-04-07T03:15:55Z"
        },
        {
          "tag": "v5.2.23",
          "kind": "patch",
          "published_at": "2026-04-07T02:32:46Z"
        },
        {
          "tag": "v5.2.22",
          "kind": "patch",
          "published_at": "2026-04-06T23:15:23Z"
        },
        {
          "tag": "v5.2.21",
          "kind": "patch",
          "published_at": "2026-04-06T22:24:00Z"
        },
        {
          "tag": "v5.2.20",
          "kind": "patch",
          "published_at": "2026-04-06T01:10:25Z"
        },
        {
          "tag": "v5.2.19",
          "kind": "patch",
          "published_at": "2026-04-06T00:37:52Z"
        },
        {
          "tag": "v5.2.18",
          "kind": "patch",
          "published_at": "2026-04-05T02:01:11Z"
        },
        {
          "tag": "v5.2.17",
          "kind": "patch",
          "published_at": "2026-04-05T00:55:37Z"
        },
        {
          "tag": "v5.2.16",
          "kind": "patch",
          "published_at": "2026-04-05T00:43:56Z"
        },
        {
          "tag": "v5.2.15",
          "kind": "patch",
          "published_at": "2026-04-05T00:21:50Z"
        },
        {
          "tag": "v5.2.14",
          "kind": "patch",
          "published_at": "2026-04-04T21:10:48Z"
        },
        {
          "tag": "v5.2.13",
          "kind": "patch",
          "published_at": "2026-04-04T20:17:37Z"
        },
        {
          "tag": "v5.2.12",
          "kind": "patch",
          "published_at": "2026-04-04T19:24:03Z"
        },
        {
          "tag": "v5.2.11",
          "kind": "patch",
          "published_at": "2026-04-04T19:03:13Z"
        },
        {
          "tag": "v5.2.10",
          "kind": "patch",
          "published_at": "2026-04-04T17:07:18Z"
        },
        {
          "tag": "v5.2.9",
          "kind": "patch",
          "published_at": "2026-04-04T17:03:24Z"
        },
        {
          "tag": "v5.2.8",
          "kind": "patch",
          "published_at": "2026-04-04T16:51:42Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2026-03-15T15:55:38Z"
        },
        {
          "tag": "v3.0.1",
          "kind": "patch",
          "published_at": "2026-03-13T01:46:05Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2026-03-13T01:20:21Z"
        },
        {
          "tag": "v2.7.2",
          "kind": "patch",
          "published_at": "2026-03-12T19:15:54Z"
        },
        {
          "tag": "v2.7.1",
          "kind": "patch",
          "published_at": "2026-03-12T03:58:39Z"
        },
        {
          "tag": "v2.7.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:35:48Z"
        },
        {
          "tag": "v2.6.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:18:55Z"
        },
        {
          "tag": "v2.5.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:13:42Z"
        },
        {
          "tag": "v2.4.0",
          "kind": "minor",
          "published_at": "2026-03-12T03:01:41Z"
        },
        {
          "tag": "v2.3.0",
          "kind": "minor",
          "published_at": "2026-03-12T02:47:45Z"
        },
        {
          "tag": "v2.2.0",
          "kind": "minor",
          "published_at": "2026-03-12T02:39:29Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2026-03-12T01:52:16Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2026-03-11T22:37:00Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2026-03-11T22:27:23Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2026-03-11T19:01:07Z"
        },
        {
          "tag": "v1.3.1",
          "kind": "patch",
          "published_at": "2026-03-11T05:35:00Z"
        },
        {
          "tag": "v1.3.0",
          "kind": "minor",
          "published_at": "2026-03-11T05:32:22Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2026-03-11T04:52:01Z"
        },
        {
          "tag": "v1.1.1",
          "kind": "patch",
          "published_at": "2026-03-11T03:04:40Z"
        },
        {
          "tag": "v1.1.0",
          "kind": "minor",
          "published_at": "2026-03-10T06:15:29Z"
        },
        {
          "tag": "v0.3.3",
          "kind": "patch",
          "published_at": "2026-03-09T07:24:20Z"
        },
        {
          "tag": "v0.3.2",
          "kind": "patch",
          "published_at": "2026-03-09T05:08:55Z"
        },
        {
          "tag": "v0.3.1",
          "kind": "patch",
          "published_at": "2026-03-09T05:00:42Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2026-03-09T04:27:30Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2026-03-09T02:36:36Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "f49863150d00a4ac7f18c9e3ba735d46df6ae5e3",
          "body": "chore(security): OSS hybrid hardening",
          "is_bot": false,
          "headline": "Merge pull request #13 from proticom/chore/oss-security-hardening",
          "author_name": "edtadros",
          "author_login": "edtadros",
          "committed_at": "2026-07-21T04:38:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76cfa0d42fac44522a55e5b3e4acc5bfb44275c5",
          "body": "CI was failing npm audit --audit-level=high on optional\n@huggingface/transformers → onnxruntime-node → adm-zip <0.6.0.\nForce-fix would downgrade transformers; pin adm-zip >=0.6.0 via overrides\ninstead. npm audit is clean at high.",
          "is_bot": false,
          "headline": "fix(ci): clear high npm audit via adm-zip override",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-21T03:22:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8cb3a1589b384a3a95fb59e5e796cdd8aae5cfc6",
          "body": "…vilege)\n\nAlign gnosys with small-OSS best practice plus a few OpenClaw-inspired\nsafeguards: Dependabot + CODEOWNERS, SHA-pinned Actions, least-privilege\nworkflow permissions, a single ci-gate required check, npm deployment\nenvironment for OIDC publishes, and sanitize real machine paths from\ndocs/CLI/tests. GitHub settings (secret scanning, rulesets, etc.) are\napplied separately on the proticom/gnosys repo.",
          "is_bot": false,
          "headline": "chore(security): OSS hybrid hardening (Dependabot, CI gate, least pri…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-21T03:13:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "203c4e7e488cea66bfd9a3ad687d9d1dda309d16",
          "body": null,
          "is_bot": false,
          "headline": "6.2.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-17T09:38:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "36bf5e96223ebd234c9870214a4b3e0ccd91fb19",
          "body": "No behavior change (adversarially reviewed, ACCEPT): byte-identical\n--help surface (85,103 chars) across all 111 commands, docs/cli.md\nregenerates unchanged, 127/127 lazy imports preserved, registration\norder identical. 100 test files updated to readCliSource()\n(path-reference-only, annotated). New runtime wiring test + explicit\nsetup-lookup guard close the reviewer's two findings.",
          "is_bot": false,
          "headline": "refactor(cli): split cli.ts into per-domain registration modules",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-17T09:38:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b628800ea50adc158fcca33eb17d21dc08012cbd",
          "body": null,
          "is_bot": false,
          "headline": "6.2.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T03:19:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "494cf176e448a05d51633c5cfd758a2dfe3ea2fb",
          "body": "…nosys_toolset\n\nEvery agent session starts on core (19 tools, ~3.7k tokens vs 10.2k full)\nand can move to standard/full AND back down via the gnosys_toolset tool;\nswitching fires notifications/tools/list_changed so clients refresh.\nTier state is per agent session (per McpServer instance) — proven by\nmcp-toolset-isolation.test.ts. GNOSYS_MCP_TOOLSET still pins a start tier.",
          "is_bot": false,
          "headline": "feat(mcp): default core toolset with in-session self-escalation via g…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T03:19:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "74b1f9c0cfaafafdb013d3346c9bb8e171d11ce3",
          "body": null,
          "is_bot": false,
          "headline": "6.1.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T02:47:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb19b8818366c69cbd7eb82838c876b2847a1621",
          "body": "…t reduction)\n\n- gnosys_trace / gnosys_reflect / gnosys_traverse promoted from CLI-only\n  to MCP tools (library-layer, no shell-outs)\n- GNOSYS_MCP_TOOLSET=core|standard|full (default full): core = 18 tools\n  / ~3.6k tokens vs previous 52 tools / ~11.3k. projectRoot description\n  deduplicated; five fattest schemas trimmed (full tier now ~10.1k even\n  with 3 more tools). Budget-guard test prevents re-bloat.",
          "is_bot": false,
          "headline": "feat(mcp): trace/reflect/traverse tools + toolset tiers (context-bloa…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-15T02:47:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "12be6df4f158958b27027d16f89b4146fb318c9f",
          "body": null,
          "is_bot": false,
          "headline": "ci: run isolated setup-UI e2e suite (Docker) on every push",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T13:24:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b13f15632689874d9b0d80535b5d49d2481e5b33",
          "body": "…/Node24 ENOTEMPTY flake on .git/objects/pack",
          "is_bot": false,
          "headline": "test(helpers): retry temp-dir removal in cleanupTestEnv — fixes macOS…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T03:18:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ed2f8c597b0985488afcff831e549eaf6cf2a741",
          "body": null,
          "is_bot": false,
          "headline": "6.0.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T03:10:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "343d64d88206f140d646898b0c3a61ad847bbe56",
          "body": "….0.0 removal (knip)",
          "is_bot": false,
          "headline": "chore(deps): drop cli-highlight and marked — chat-only, orphaned by 6…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T03:10:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "364cd2ebc15f2e1716ae7425df89b71001b5629a",
          "body": null,
          "is_bot": false,
          "headline": "6.0.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T02:57:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c2f77d08ddf3ededd9ce648429db055b1f4d18ea",
          "body": "BREAKING CHANGE: llm.defaultProvider no longer defaults to 'anthropic'.\nLLM-requiring commands without a configured provider now fail with a\nclear 'run gnosys setup' error; display commands show 'not set'. Existing\nconfigs (which carry the field since v5.9.2) are unaffected.\n\nCloses the last layer of the settings-revert-to-anthropic bug family\n(deci-045/046/049). Suite: 291 files / 1,781 green; setup e2e 6/6.",
          "is_bot": false,
          "headline": "feat!: remove implicit anthropic default provider (deci-049)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T02:57:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7325018979a0121018fe3906f4ce39240fddd01a",
          "body": "…ct deps)\n\nBREAKING CHANGE: 'gnosys chat' and 'gnosys setup chat' are removed. Chat\nlives in the Gnosys apps and Gnosys Enterprise going forward; the\ngnosys-chat TUI repo is retained for Enterprise reuse. Old gnosys.json\nfiles with chat/taskModels.chat keys load fine (keys stripped, one-time\nstderr \n[…]\narning; regression test added). Drops ink + react entirely.\n\nSuite: 290 files / 1,774 tests green; isolated setup e2e 6/6; tsc clean.\nExisting-test edits flagged in-line with '// v6.0.0 chat removed'.",
          "is_bot": false,
          "headline": "feat!: remove OSS chat (gnosys chat, setup chat, chat config, ink/rea…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T02:31:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "341ea0301d6e0780d075d5f0dc8388f1086c1a43",
          "body": "…eo ingestion\n\nTool description, README table, and generated docs/mcp-tools.md aligned.",
          "is_bot": false,
          "headline": "docs: gnosys_ingest_file description reflects shipped image/audio/vid…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T01:19:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b8cdc6afa74f7f42be60d6c96b2684850809179",
          "body": "… shipped\n\nThe 'Phase 3/4 will add them' comment predated the implemented handlers\nand caused a false audit finding that the marketing site overclaims.",
          "is_bot": false,
          "headline": "docs(code): fix stale multimodalIngest header — image/audio/video ARE…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-13T00:47:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0c29ea17c237bbc869c60bd585fcad2f66a30d2",
          "body": null,
          "is_bot": false,
          "headline": "docs(security): add security@gnosys.ai private reporting address",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-10T09:52:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2db128502360687216f706049f8084913929603e",
          "body": "- e2e-setup/: expect-driven tests for gnosys init, setup wizard (render +\n  graceful Ctrl+C), setup --non-interactive, web init wizard, plus an\n  isolation audit — all inside a no-network Docker container installing\n  the npm-pack tarball as a non-root user. npm run test:e2e-setup.\n- src/test/docs-w\n[…]\ns: documented web-command flags must exist\n  in src/cli.ts (doc drift guard).\n- README: add missing gnosys_attach / gnosys_get_attachment to tool table.\n\nSuite: 1,948 tests green; e2e-setup 6/6 green.",
          "is_bot": false,
          "headline": "test(e2e): isolated Docker setup-UI test suite + docs drift guard",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T08:45:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8e2a75e55fd058b0f991365d43e7b1a3bc1f2d17",
          "body": null,
          "is_bot": false,
          "headline": "5.17.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T01:05:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "524f0ee908faa65b68a38a3146a1ab57f78f47f5",
          "body": "…HANGELOG\n\nTask 1.5 review_passed (reviewer: sonnet).",
          "is_bot": false,
          "headline": "docs(web): semantic search docs — command pages, explainer, README, C…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T00:30:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "061a620bbe087372c35f973b15bff30669783400",
          "body": "…l/--no-expansions, status vectors reporting\n\nTask 1.4 review_passed (reviewer: sonnet). web build/build-index gain embedding\nflags; web status reports vectors model/dims/count/size; init wizard tip added.",
          "is_bot": false,
          "headline": "feat(web): CLI wiring for semantic search — --embeddings/--embed-mode…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-09T00:21:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec6080c32d4c3056beee809065d445aa7fba6301",
          "body": "…xpansion with 0.5x discount\n\nTask 1.3 review_passed (reviewer: sonnet). Expansions attach only under LLM\nenrichment; loadIndex accepts v1 and v2; v1 behavior unchanged; opt-out supported.",
          "is_bot": false,
          "headline": "feat(web): concept expansion — index v2 expansions map + query-time e…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-08T23:41:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "155a12e4e18775f0bb6022fa2ed84af6ce1bb596",
          "body": "…, RRF fusion, model-mismatch fail-safe\n\nTask 1.2 review_passed (reviewer: sonnet). search() gains optional queryVector/vectors;\nabsent inputs preserve exact lexical behavior (30 existing tests untouched, 47 total green).\nstaticSearch still imports only node builtins.",
          "is_bot": false,
          "headline": "feat(web): hybrid semantic search in gnosys/web — loadVectors, cosine…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-08T23:08:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a4550a31f44ffffce1248de1678209c239b3f1a4",
          "body": "…ize, emit gnosys-vectors.json\n\nTask 1.1 review_passed (reviewer: sonnet; artifacts in run root reviews/1.1/).\nProviders: openai/voyage via fetch, local via existing embeddings pipeline.\nNo new runtime deps.",
          "is_bot": false,
          "headline": "feat(web): vector build module webVectors.ts — embed docs, int8 quant…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-08T22:34:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "66477f49bdc00044f7afe4d1111b3355bc6b8c09",
          "body": null,
          "is_bot": false,
          "headline": "5.16.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T15:08:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a62634dc0329e0670483bb0e0febd3fbcfc60a79",
          "body": null,
          "is_bot": false,
          "headline": "docs(changelog): 5.16.0 entry",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T15:07:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "112404813db20cd068934175919508a224500b93",
          "body": "Advisory wording in the tool description and generated IDE rules was\nnot enough — agents still called gnosys_add. Enforce the 2026-07-04\ndecision (deci-01KWP25KKJYP7M3YCPFRPWEEYN) server-side:\n\n- gnosys_add over MCP now returns an error unless\n  GNOSYS_ALLOW_FREEFORM_ADD=1 (genuine non-agent scripts\n[…]\nirrors the template —\n  required to keep golden tests truthful).\n- docs/mcp-tools.md regenerated; new src/test/freeform-add-gate.test.ts.\n\nCLI 'gnosys add' is unaffected. Full suite: 1897 tests green.",
          "is_bot": false,
          "headline": "feat(mcp): hard-reject freeform gnosys_add for MCP callers",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T15:00:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0719cf69803d711b397074b9c9e5eebc035fe0d1",
          "body": "Root cause of 'syncing 543 registered projects': tests spawn the CLI\nwith GNOSYS_HOME (isolating ~/.gnosys), but the project registry at\n~/.config/gnosys/projects.json only honored GNOSYS_CONFIG_DIR, so every\ntest run leaked hundreds of /var/folders temp entries into the user's\nreal registry — and '\n[…]\n from the central DB projects table\n- new regression tests in src/test/registry-temp-pollution.test.ts\n\nFull suite: 298 files / 1894 tests green; two full runs added zero\nentries to the real registry.",
          "is_bot": false,
          "headline": "fix(registry): stop test runs polluting the real project registry",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-05T14:41:29Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5793dc4a6acce08cd944a359d479ef730a50330e",
          "body": null,
          "is_bot": false,
          "headline": "5.15.3",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:40:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "966d6e676cc88cd86928ea5be3849eb6b46bb278",
          "body": "Previously bare sync used identity.agentRulesTarget — the single IDE\nrecorded at first setup — so a project that later added Claude Code, Codex,\netc. only ever refreshed the original IDE's rules; the others silently went\nstale. Default to \"all\" instead: detectAllTargets only touches rule files\nthat \n[…]\n so sync now\nkeeps every present IDE current and self-heals as IDEs are added. Matches\nthe upgrade-time 'sync registered projects' path, which already used \"all\".\nUse --target <ide> for a single file.",
          "is_bot": false,
          "headline": "fix(sync): bare 'gnosys sync' refreshes all present IDE rule files",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:38:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3ab20d1fabfd425151626149a613de1d9e9f57e1",
          "body": null,
          "is_bot": false,
          "headline": "5.15.2",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:23:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "697afbbd0c16d2d23e0b58ca9fd0826532dda356",
          "body": "Adds a 'Keeping these instructions current' section to the generated IDE\nrules so users/agents know to run gnosys sync after an upgrade to\nregenerate the block (picking up guidance changes like the add_structured\ndefault). Regenerated ide-init golden fixtures.",
          "is_bot": false,
          "headline": "feat(rules): document gnosys sync for refreshing generated instructions",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:21:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f20f76a039ce8c2a801518415d2507570d7a6750",
          "body": "@huggingface/transformers v4 does not honor HF_HOME/TRANSFORMERS_CACHE for\nits on-disk model cache (that's the Python huggingface_hub convention) — it\nuses its own `env.cacheDir`. gnosys only set those env vars, so the ~80 MB\nMiniLM model was cached into the package's node_modules/.cache (wiped on\ne\n[…]\nked module without `env` doesn't throw). Verified the\nmodel now downloads to ~/.cache/gnosys and embeds a 384-dim unit vector.\nUpdated the optional-dep mock to include `env` to mirror the real module.",
          "is_bot": false,
          "headline": "fix(embeddings): set transformers env.cacheDir so GNOSYS_CACHE_DIR works",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:13:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "24cfe91d035b83310d4d324e817f22f82b4097fe",
          "body": "… tool descriptions\n\nFull-consistency follow-up to the rulesGen change. The runtime MCP tool\ndescriptions (src/index.ts) now tell agents gnosys_add is for non-agent\ncallers and to prefer gnosys_add_structured (no server-side LLM call);\nREADME and the generated docs/mcp-tools.md reflect the same. Regenerated\nmcp-tools.md from source via npm run docs:mcp-tools.",
          "is_bot": false,
          "headline": "docs: steer agents to gnosys_add_structured across README, mcp-tools,…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T08:05:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae85a0d706420d2a075768774785cdfb5294aa41",
          "body": "The generated IDE instructions told agents to write memories with the\nfreeform gnosys_add, which makes the Gnosys server run a second, redundant\nLLM call to structure the text and introduces an external provider-key\ndependency that can fail silently (observed as an OpenRouter 401 breaking\nmemory wri\n[…]\ngs remain).\n\nFreeform gnosys_add stays in the product for non-agent callers (cron jobs,\nscripts). Only the agent-facing guidance in rulesGen changes; regenerated\nthe ide-init golden fixtures to match.",
          "is_bot": false,
          "headline": "feat(rules): instruct agents to always use gnosys_add_structured",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-04T07:59:55Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "af612d679cb879e2fef2849da0076d3cb8f8ece0",
          "body": null,
          "is_bot": false,
          "headline": "5.15.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T01:07:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6dba1afb15df2c07d711b94bc22fcf7ed3e37375",
          "body": "The v5.15 non-TTY guard exits 1 with a friendly message before a SIGINT\ncan land when stdin is piped — deterministically on CI (this broke the\nv5.15.0 publish; that tag never reached npm, same precedent as 5.12.1).\nThe tests' real invariant (no AbortError stack on interrupt) is still\nasserted via noAbortTrace. Flagged: existing test file edited — the\nguard intentionally changed the behavior these assertions pinned.",
          "is_bot": false,
          "headline": "fix(test): accept the non-TTY guard exit in setup Ctrl+C smoke tests",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T01:07:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "53f2431f1e55af61361cf5d7eaf2e9e11370315f",
          "body": null,
          "is_bot": false,
          "headline": "5.15.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T00:59:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b1e1fb50b3186e1ede90cd1620ce1e6494ecbc59",
          "body": "… + auto-repair\n\nWire chat.systemPromptPrefix and chat.toolsEnabled (documented, prompted\nfor in setup, never read) and importConcurrency (parallel LLM structuring\nin bulk imports). Remove bulkIngestionBatchSize (fossil of the removed\ngit-batch-commit design) and chat.autoSummarizeAfterTurns (featur\n[…]\norts agent health; 'gnosys upgrade'\nauto-repairs a broken agent.\n\n14 new tests across 4 new files; no existing test files edited.\n\nRefs: sprint findings 11-15 (artifacts/sprint-2026-07-02-findings.md)",
          "is_bot": false,
          "headline": "feat(config,dream): every knob works or is gone; launchd health-check…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-03T00:59:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cb37f122a65ec603fa9719f4208355ef29f625b8",
          "body": "…sprint)\n\nPriority 3 wiring-test conversion: 21 new test files / 53 tests invoking\n22 command handlers in-process against temp GNOSYS_HOME (real seeding via\nGnosysDB/GnosysStore/GnosysResolver), replacing reliance on readFileSync\nstring assertions for these paths. Existing wiring tests untouched;\ncoverage exclusion untouched (supervised decision). webAddCommand skipped\n(real HTTP fetch in happy path).",
          "is_bot": false,
          "headline": "cleanup: CLI surface — in-process invoke tests for command handlers (…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T23:44:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d2e82ccacd27d76b616be9f7215d8971d29469c",
          "body": "…int)\n\nThree trivially isomorphic stderr additions (pre-approved class):\n- ask.ts dearchiveUsedMemories: hard dearchive failure no longer\n  indistinguishable from 'no archive hits'\n- askCommand.ts + hybridSearchCommand.ts: fire-and-forget reinforceBatch\n  no longer fully silent on rejection\n\nAll other silent-failure/dead-wire findings recorded mention-only in\nartifacts/sprint-2026-07-02-findings.md (workspace root, not committed).",
          "is_bot": false,
          "headline": "cleanup: silent-failure hunt — stderr traces on swallowed errors (spr…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T23:35:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4eb8428efa561579296f36371c0f5fdf8ebc23db",
          "body": "- Priority 4 (pre-approved): non-TTY guard at entry of interactive flows\n  (runSetup, runModelsSetup, runDreamSetup, runKeysSetup) via new\n  src/lib/interactiveGuard.ts — friendly one-line error + exit 1 instead\n  of ERR_USE_AFTER_CLOSE stack when stdin is closed.\n- Priority 5 (pre-approved): gnosys\n[…]\nmoval)\n  so scheduled dream runs activate immediately; result reported in the\n  setup summary. Pure helpers + 10 new tests in\n  src/test/dream-launchctl.test.ts and src/test/interactive-guard.test.ts.",
          "is_bot": false,
          "headline": "cleanup: setup wizard + dream launchd (sprint)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T23:30:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d6363e8823be5c57517680311ace589bc503b2ec",
          "body": null,
          "is_bot": false,
          "headline": "5.14.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T22:48:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f1d6818f8f45741c1878ddad9c00ed4ce654add",
          "body": "New 'gnosys recall-hook' command: reads the hook event JSON from stdin\n(UserPromptSubmit prompt / SessionStart wildcard), recalls from the\ncentral DB, prints a <gnosys-recall> block that Claude Code adds to the\nmodel context (~120ms, always exit 0, empty stdout = no injection,\ncapped under the 10k h\n[…]\ntore deps optional for DB-only callers.\n\nReviewed by mcp-tool-reviewer (approved; docs truncation + matcher\ntightening applied).\n\nRefs: deci-01KWJBDD9BRS0N4SVQPGW1RSB2, deci-01KWJFTSK5M8JTTT4TWBWHA4NT",
          "is_bot": false,
          "headline": "feat(recall): true automatic memory injection via Claude Code hooks",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T22:48:05Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6e671385188fa36a4acb4af2db143025eb7ee735",
          "body": null,
          "is_bot": false,
          "headline": "5.13.1",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T21:21:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d0b67d28cce8c50183560bb5d169ccbf4e50f531",
          "body": "…heduled-Dream defects\n\n- gnosys://recall passed '*' to FTS5 (a syntax error, silently caught),\n  so automatic memory injection returned zero memories since the day it\n  shipped. Term-less queries now serve top active memories by\n  reinforcement/confidence/recency via db.getTopActiveMemories.\n- 'gno\n[…]\nintentional rename; annotated inline.\n\nReviewed by sqlite-migration-reviewer (no DDL; designation gate\nprecedes engine writes, single central designation value).\n\nRefs: deci-01KWGNMK9Z61V7V169M5JZYN05",
          "is_bot": false,
          "headline": "fix(recall,dream): wildcard recall was a no-op since v4.0.0; three sc…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T21:21:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e33d81346e7361a1e112865f51464e56c26cea4e",
          "body": null,
          "is_bot": false,
          "headline": "5.13.0",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T14:20:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3f31d7c0edea245f3322b26c3b0f4b61186ca67d",
          "body": "…ite-time queue, Dream health phase\n\nReindex now (re)builds the central-DB memories.embedding column that\nDB-mode hybrid/semantic search actually reads (new embedDb.ts); before\nthis nothing ever wrote it, so semantic search could never activate.\nThe semantic-leg gate (embedQuery/canRunSemantic) keys\n[…]\nd by sqlite-migration-reviewer (no DDL, trigger parity verified\nprogrammatically) and mcp-tool-reviewer (stdout-clean verified).\n\nRefs: deci-01KWGNMK9Z61V7V169M5JZYN05, deci-01KWGNSACJATA0BN84GX9DTJG2",
          "is_bot": false,
          "headline": "feat(embeddings): make semantic search work in DB mode — backfill, wr…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T14:20:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6f74da07cfdec6a018868f93889f03d0ec28c573",
          "body": null,
          "is_bot": false,
          "headline": "5.12.3",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T05:38:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e353d91ae975c31a1d6015ae353995346e2959b0",
          "body": "…rade warnings\n\nFTS5 treats space-separated terms as implicit AND, so the long\ndescriptive queries the tool docs encourage returned zero results\nunless every term matched one memory. All FTS surfaces (central-DB\nsearchFts/discoverFts — which also feed recall and federated search —\nthe per-store inde\n[…]\n\nDream Mode embedding-health check.\n\nReviewed by mcp-tool-reviewer and sqlite-migration-reviewer agents\n(no schema impact; corruption-escape semantics preserved).\n\nRef: deci-01KWGKYY7MATJ4E2AJHKZN8FD1",
          "is_bot": false,
          "headline": "fix(search): OR-fallback for multi-word FTS queries + loud hybrid-deg…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T05:38:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b135419666461f2549b97b936ec013d6610d0b31",
          "body": "…ct so projectRoot doesn't disable cross-project memory\n\nresolveForProject() — used by every MCP tool that passes projectRoot, which all\nguidance tells callers to ALWAYS do — built a resolver with ONLY the project\nstore. That silently disabled the cross-project tier system: store:\"global\" /\n\"persona\n[…]\nesent under a projectRoot, getWriteTarget('global')\nresolves, global dir auto-created, project stays default write target, personal\nfallback when no project store. Full suite: 1733 passed / 1 skipped.",
          "is_bot": false,
          "headline": "fix(resolver): load personal/global/optional tiers in resolveForProje…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-07-02T05:17:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f00b7aa1bc10b6f1d9c4d2d1045a4839af1203cf",
          "body": "Co-authored-by: edtadros <4167177+edtadros@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore: refresh lockfile (transitive dep bumps) (#11)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-24T13:11:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e6a80200138f4282c07400e5dc47f34015d8974",
          "body": null,
          "is_bot": false,
          "headline": "chore(release): 5.12.2 — production-readiness overhaul",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca7a48b1dc1ee15784e1abe3fafeaed8435aa7a4",
          "body": "… published — build failed on the type error fixed here)",
          "is_bot": false,
          "headline": "docs: move production-overhaul changelog to 5.12.2 (v5.12.1 tag never…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "138870800312c4f12a0727e951871c6cf7164c25",
          "body": "…gelog for the production overhaul\n\nProduction-readiness overhaul Phases 7+8 (final):\n\nTests (+10, new files only per house rules):\n- dream-lock-recovery.test.ts: behavioral matrix for acquireDreamLock —\n  clean acquire/release, live-pid refusal, dead-pid stale recovery, and\n  corrupt-lock-treated-a\n[…]\n corrected to\n  1700+; quick reference documents the typecheck/lint/knip gates\n\nFinal gate: tsc clean, biome 0/500 files, knip 0,\n260 test files / 1728 tests passed (baseline at overhaul start: 1700).",
          "is_bot": false,
          "headline": "test+docs: hardening regression tests, regenerated CLI/MCP docs, chan…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:12:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "84550920c5b7e57a57990d6c5e06dfbdeea791d1",
          "body": "…w, pinned Docker base, test-free dist\n\nProduction-readiness overhaul Phase 6 (packaging/Docker/DX, audit-driven):\n\n- CI: typecheck job now also runs biome lint and knip (both were configured\n  but never enforced — knip added as devDependency, scripts 'lint' existed,\n  new 'knip' + 'typecheck' scrip\n[…]\nated\nto builder, postinstall offline + fail-safe, publish tarball excludes\ntests/sourcemaps (572KB packed).\n\nGates: tsc clean (tests still typechecked), biome 0, knip 0,\n258 files / 1718 tests passed.",
          "is_bot": false,
          "headline": "chore(packaging): CI lint+knip gates, publish-config build in workflo…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T03:05:52Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4c41e0fe4d26486b38df3656788b80ae88e49ade",
          "body": "…r path\n\nProduction-readiness overhaul Phase 5:\n\n- withContextRelease (the wrapper every tool passes through) now provides a\n  last-resort error envelope: 19 of 52 tools had no catch at all, so a\n  thrown error reached the SDK as a raw JSON-RPC error with no\n  corruption-recovery guidance. Escaped t\n[…]\n\ncommented graceful degradation (FTS fallbacks, best-effort fs ops, lock\ncleanup); CLI exit-code convention (errors -> 1) already consistent.\n\nGates: tsc clean, biome 0, 258 files / 1718 tests passed.",
          "is_bot": false,
          "headline": "feat(observability): central MCP error envelope + CLI parseAsync erro…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:57:07Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "282bc34f8c6263d40e5e502bef3c958ff11c1d1b",
          "body": "…arch release\n\nProduction-readiness overhaul Phase 4 (measured-first):\n\n- GnosysDB.prep(): prepared-statement cache keyed by SQL for fixed-SQL hot\n  paths (insertMemory, getMemory, searchFts, discoverFts, scoped/category\n  lists). Cache invalidated on reopen()/close() so recovery re-prepares on\n  th\n[…]\ndominates,\n  prepare cost negligible), CLI startup (~110ms, v5.9.1 lazy-load already\n  optimal), embedding batching (batches of 32 in place).\n\nGates: tsc clean, biome 0, 258 files / 1717 tests passed.",
          "is_bot": false,
          "headline": "perf(db): prepared-statement cache + lean list projection + scoped-se…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:50:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d2b9e8c4366d807010dcf8d593131f8ebb3d6a7c",
          "body": "…d verified local copies\n\nProduction-readiness overhaul Phase 3 batch D. publishMasterSnapshot,\nacceptClientSnapshot and compareSnapshotVersion were fully implemented in\nthe 5.12.0 sync work but had no production caller: masters never published\nsnapshots, so reachable clients opened the live gnosys.\n[…]\n read\n(source 'snapshot', accepted manifest recorded), refresh on newer seq.\n\nknip is now at ZERO findings (wire-or-kill list fully resolved).\nGates: tsc clean, biome 0, 258 files / 1717 tests passed.",
          "is_bot": false,
          "headline": "feat(sync): complete v13 snapshot flow — masters publish, clients rea…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:34:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "295d002fa12197a28b30043ef941f1be466e7025",
          "body": "… dream crash-safety, cleanup --rules\n\nProduction-readiness overhaul Phase 3 batches A/B/C/E (audit-driven):\n\nMCP server (3A):\n- regTool now wraps every tool handler in withContextRelease(): contexts\n  opened via resolveToolContext are tracked per-call (AsyncLocalStorage)\n  and released when the han\n[…]\nwires the orphaned removeRulesBlock:\n  strips GNOSYS blocks from CLAUDE.md/.cursor/.codex rules files.\n  New cleanup-rules.test.ts (4 tests).\n\nGates: tsc clean, biome 0, 257 files / 1712 tests passed.",
          "is_bot": false,
          "headline": "fix(reliability): central MCP context release, withRecovery coverage,…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:27:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "299653ea45d4460baf184eaebf919577fc85fc50",
          "body": "…mmand, strip relic casts\n\nProduction-readiness overhaul Phase 2 (type & lint hardening):\n\n- Enable noUnusedLocals, noImplicitOverride, noFallthroughCasesInSwitch\n  (publish config inherits); noUncheckedIndexedAccess (562 errs),\n  exactOptionalPropertyTypes (138), noPropertyAccessFromIndexSignature \n[…]\nmoryFrontmatter already declares the fields)\n- Strip stale eslint-disable comments from 18 files (biome-only project)\n\nGates: tsc clean with new flags, biome 0 warnings, 255 files / 1704 tests passed.",
          "is_bot": false,
          "headline": "chore: enable stricter tsconfig flags, delete v5.4.2 legacy models co…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T02:07:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "46d2840a7530887c9743f5c8298f1aef65f6aed2",
          "body": "… to lint-zero\n\nProduction-readiness overhaul Phase 1 (loose ends sweep):\n\n- Fix DbMemory literals missing v5.12 attachment fields (clientReadOverlay +\n  syncClientRead fixture) — restores the red CI typecheck job on master\n- Wire 'gnosys read <id>' through the client read overlay so pending offline\n[…]\nupdated under approved standing policy (annotated inline):\n  read-command-handler (overlay wiring), 5 parseInt-radix markers\n\nGates: tsc --noEmit clean, biome 0 warnings, 255 test files / 1704 passed.",
          "is_bot": false,
          "headline": "fix: restore tsc-clean master, wire read-overlay gap, purge dead code…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T01:53:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cc019dd4aa63e1d92e45438970b27a77560d7cd6",
          "body": "- Version 5.12.1 for the menu improvements and setup flow refinements (global default path made first-class and obvious in both providers and routing screens).\n- Updated CHANGELOG with 5.12.1 section.\n- Follows user feedback on the 'What would you like to do?' menu and providers flow.\n- All prior Option B coverage work, test fixes, and previous 5.12.0 changes remain in the history.",
          "is_bot": false,
          "headline": "chore(release): bump to 5.12.1 with task routing / providers UX polish",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T00:14:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1b7a68e38c30ad381a55a9499868b7f5adbf491e",
          "body": "- Added explicit 'Edit tasks — set the same provider + model for all tasks (simple global default)' option.\n- Clarified reset option: 'to the current default (the one shown in the main setup summary)'.\n- Added explicit print of what the current default provider/model is before the reset confirmation\n[…]\n 'change all to one provider' a first-class, clearly labeled option in the 'What would you like to do?' menu, and explains the 'Default' in reset.\n\nMatches user request exactly for the routing screen.",
          "is_bot": false,
          "headline": "fix(setup): improve task routing menu verbiage per user feedback",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-12T00:11:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e8c5370227103d5734188d0f7d35f85a90b902e1",
          "body": "…for everything' as first choice in task routing\n\n- In providers detail (after selecting a provider with a key): new prominent action 'Use this provider as default for everything + pick model' (defaults to this choice when you have a key).\n- In dedicated task routing: first option is now the simple \n[…]\nflow: 'once I pick the provider it should allow me to choose to make it a default' and 'within task routing one option should be set one model for everything'.\n\nAll Option B coverage tests still pass.",
          "is_bot": false,
          "headline": "fix(setup): make global default easy from providers + add 'one model …",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T05:49:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8b657ee66ef756b848729f1e5ef8895115f1f095",
          "body": "…0 release (combine v5.12 attachments + sync tables from feat; keep updated asserts)",
          "is_bot": false,
          "headline": "merge: resolve conflicts in db.ts and migration matrix test for 5.12.…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T04:43:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f742c384244caa073c5345c8f642be388a33529",
          "body": "…s for subcommand wiring (fixes CI for 5.12.0)\n\n- Updated assertions to match actual code in cli.ts for .command('show'), descriptions, and dynamic imports.\n- This was one of the Option B coverage additions for ungrouped machine commands.\n- All other Option B tests/docs/UPG changes already committed in prior steps.",
          "is_bot": false,
          "headline": "fix(test): correct machine-show-command-handler.test.ts source string…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T04:40:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15a0d9f4696c53973380e94cde995dc4b4895629",
          "body": "…ers/remote-doctor (5.12.0)",
          "is_bot": false,
          "headline": "chore(release): include Option B docs and tests for setup-keys/provid…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:42:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad59e968d229a8ada7db466e1916b03ef9be12e1",
          "body": "…ntralize/machine-show ungrouped, enhanced platform docs, UPG polish note in upgrade, Docker/Tailscale validation steps)",
          "is_bot": false,
          "headline": "chore(release): finalize 5.12.0 Option B loose ends (new tests for ce…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:41:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad97ff537cb4b265d8a7afade4bc575b3cc7542f",
          "body": "…rvised edits)\n\n- v595 test now properly isolates legacy meta heal path (mock readMachineConfig for v5.11+ machine.json precedence).\n- list handler test pruned outdated source-grep expectations after logging + clientReadResolve changes (kept as minimal wiring guard).\n\n(Phase 2 fix per approved plan; only new/supervised test edits.)",
          "is_bot": false,
          "headline": "test: update machine-id self-heal and list-command wiring tests (supe…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:01:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5441febcd9d7ab43bdd83f7b66f363b7ab35f83f",
          "body": "…t foundation on feat/network-mcp)\n\nSee gnosys-network-mcp-build-plan.md for version decision context and semver memory road-01KSX3PPPBJ99YGGBPP8TTQQ0R.",
          "is_bot": false,
          "headline": "chore(release): bump to 5.12.0 (setup overhaul + network MCP transpor…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T03:01:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "300f4cf4dd79cdfe3d01e2506213888c7128f700",
          "body": "…hs + supporting test/doc updates\n\n- New openrouterTiers.ts with :free models and recommended tiers for setup wizard.\n- New taskRoutingEditor.ts (comma-list per-task provider+model assignment).\n- New providerGlyphs.ts for terminal brand marks in setup UI.\n- Updates to routing, modelValidation, confi\n[…]\n into existing setup keys/models flows and key vault.\n\n(implements remaining pieces of the setup overhaul on feat/network-mcp; see gnosys-network-mcp-build-plan.md and gnosys-command-coverage-plan.md)",
          "is_bot": false,
          "headline": "feat(setup): add OpenRouter tiers, task routing editor, provider glyp…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-10T02:56:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ea5407474d8274b40195fd7a0d8929da3885c9e5",
          "body": "Adds 14 unit tests for key management UI covering:\n- listProviders with all 11 providers (cloud/local/custom)\n- Multi-location key detection (env/keychain/.env independently scanned)\n- copyToKeychain flow (success, validation failure, already-in-keychain)\n- deleteKey flow (dotenv-only, keychain-only\n[…]\nper to distinguish env vars from secure store\nfor accurate multi-location detection in tests.\n\nTask 5 of setup-keys-table-redesign plan (14 tests pass)\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "test(setup): add comprehensive setupKeys test coverage",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T02:19:36Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "bbc9719b29a80908575aa3de8c8f2104f9b3adeb",
          "body": "Integrates setupKeys.ts into the CLI and setup routing:\n- setup.ts routes section=\"keys\" to runKeysSetup()\n- cli.ts adds \"gnosys setup keys\" subcommand via Commander\n- Manual verification: table displays and exits on 'q'\n\nTask 4 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): wire gnosys setup keys command to CLI",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T02:11:04Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "adb5b3c6a03f8df9b5d4dbabb1d03ba85478778f",
          "body": "Adds full interactive key management UI to setupKeys.ts:\n- Provider detail view showing key status, storage location, and masked value\n- Copy to Keychain: validate, confirm with env precedence warning, migrate from .env\n- Update key: hidden input, validate, choose destination (Keychain/.env/manual)\n\n[…]\nently for complete visibility.\nExtended writeApiKey with global scope support for GNOSYS_GLOBAL_*_KEY naming.\n\nTask 3 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): implement provider detail view and key actions",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T02:07:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "cbcd3c7bf0dcee979b4f7a995a21cba84230b041",
          "body": "Implements provider list discovery and formatted table rendering for key management.\nLists all cloud providers (anthropic, openrouter, openai, xai, google, cohere,\nmistral, groq), local providers (ollama, lmstudio), and custom with key status\ndetection via detectKeyLocation.\n\n- Interactive loop with\n[…]\ny: Keychain, .env, Env Var (NAME), or —\n- Exported setup helpers (askInput, printInfo, printStatus) for reuse\n\nTask 2 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): add setupKeys.ts with provider table UI",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T01:56:10Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a4318ba3383021b55742de92f8c97b10594dfa2a",
          "body": "Implements tier-first precedence detection (global → provider → legacy → generic)\nwith env → keychain → .env checks within each tier. Returns key location, service\nname, env var name, and masked value for display.\n\n- Keychain service names use actual env var format (GNOSYS_GLOBAL_*_KEY)\n- Handles lo\n[…]\nllama, lmstudio) as no-key-needed\n- 16 tests covering keychain, precedence, legacy, generic, and dotenv tiers\n\nTask 1 of setup-keys-table-redesign plan\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): add detectKeyLocation helper for key management UI",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-04T01:51:48Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "397629a6dae4c2c696963e5805b1fd73539b2d47",
          "body": "Tier-4 generic fallback was gated to custom only; readFirstInChain and\nlistStoredKeySlots now honor GNOSYS_LLM_API_KEY after legacy env vars.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(keys): apply GNOSYS_LLM_API_KEY fallback for all providers",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-03T23:50:34Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "1954f3ba20cf539f01faddf76bc17969b83528e4",
          "body": "Remove per-task key strategy from setup models routing and drop the\ntask tier from apiKeyLookupChain. Task routing collects one shared\nGNOSYS_GLOBAL_<PROVIDER>_KEY per provider; lookup is global → provider\n→ legacy → generic.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "refactor(keys): global-only API key scoping",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-03T23:44:54Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "00b2ebe57ac834826c3fa2cb7700ef5be747622a",
          "body": "Split interactive setup into default-only vs task-routing branches so\nper-task assignment never writes llm.defaultProvider or provider model.\nAdd per-task model/key/validate loop, in-memory keys until validation,\nvalidateTaskCombo, key-destination prompt, and regression tests.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): redesign setup models routing and key flow",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-03T02:42:27Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "48ca922ef6d79a9bd7a5da68c7fa01a812862bd6",
          "body": "Wire always-on master ingest sweeps via MCP startup hook, macOS launchd\nand Linux systemd timers, and doctor/timer CLI with quiet JSON modes.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): add v13 ingest automation (Gap A)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T23:01:56Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "669e5f8d84cf45af2ae3fd9c0117541e3c75ed9c",
          "body": "Codex Gap B review: gnosys_federated_search and --federated CLI paths\nopened the local DB on client-role machines instead of master/snapshot.\nWrap all federated entry points with resolveClientRead / resolveToolContext\nand release handles in finally blocks.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(sync): route federated search through client read context",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T22:55:25Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "d8b5a0b4dce20bafe1c5342cf74fd9796820d30a",
          "body": "Clients on the staging role now read through openClientReadContext:\nmaster when reachable, accepted snapshot when offline, with pending-adds\nmerged and receipt-filtered. MCP discover/search/list/read/recall and\nmatching CLI commands share the same path and close snapshot handles per call.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): wire v13 client read path with overlay and receipts",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T15:25:25Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "c5823141ec19fc953bb4ac68e878d7562b7c895f",
          "body": "When the user disables automatic master backups, show the design-exact\ndecline prompt and require typing BACKUP_RISK_PHRASE before continuing.\nAdds renderBackupDeclineAckPrompt() and explicit test coverage for the\nv13 backup acknowledgement requirement.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(setup): v13 master backup decline typed acknowledgement",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:40:46Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "6aebb98c85f2c86dd5ce9f534e4004c472d0bffd",
          "body": "Co-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "test(sync): ingest sweep integration test; v13 MCP remote status",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:25:37Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "eb068b5b61965f96f3cba68983a76debc9cfa260",
          "body": "Master path rejects network mounts; unknown paths need LOCAL DISK ONLY ack.\nClient wizard opens Tailscale guide with inline fallback. Adds\ngnosys setup remote doctor and v13 status output.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): local-disk check, Tailscale guide, sync doctor, v13 status",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:25:21Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9297f95e4411e58f89c4bac92ffe5102487a8b21",
          "body": "Hide snapshot reads when master is unreachable; surface waiting/failed\ncounts and pending-add overlay via getV13SyncStatus.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): client reachability, offline snapshot rule, status lines",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "a01d744256febed9064a01f49b2a023337f705d9",
          "body": "Process staged JSON into gnosys.db with ULID dedup, read-back verify,\nreceipt files, and lease epoch checks before each batch.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): master ingest sweep with single-writer lock",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "464789d40beee6e679547ffcba7df5f77dc1fa25",
          "body": "Epoch-fenced master.json, SQLite backup snapshots with manifest,\nclient snapshot copy with checksum verify, and local ingest lock.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): master lease marker and snapshot publication (v13)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "111649982c8809e79a8cb5efd0504897659b5f59",
          "body": "Atomic tmp+rename, checksum validation, read-back verify, quarantine\nfailed/, presence-based clone detection, and ledger-ordered queue.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): add hardened v13 JSON staging for client writes",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T14:24:48Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "3d3564399170c7e150935e5be5fe2c97ab0e1ddb",
          "body": "Schema v5 adds staging ledger, processed ULIDs, pending-adds overlay,\nand snapshot manifest tables with migration from older versions.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(db): add v13 multi-machine sync schema and accessors",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:37:03Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "e29c77aa3c28fb508910c9edc9183fc2909586d4",
          "body": "Centralize master-unreachable, waiting-to-sync, failed-to-sync, and\noffline overlay copy for CLI/MCP panels per MMS design v13.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(sync): add v13 multi-machine sync status message helpers",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:31:59Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "0be5c24a8fdba84f2ee2138b5f36c340956de786",
          "body": "Add explanation gate, master vs client paths, backup and duplicate-risk\nacknowledgements, presence-based clone detection, master.json marker, and\npre-master-backup rename. Persist master/client role in machine.json.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(remote): rewrite multi-machine setup wizard for v13 flows",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:29:52Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "841870188efa8b645166694a205ce7e57e1857fc",
          "body": "Settings panel row 4 uses getConfiguredRemotePath and displays\n\"NA (single-machine only)\" when no master is configured (v13 MMS design).\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(setup): show NA for unconfigured multi-machine sync in summary",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-06-02T06:08:08Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "d0392b3ede85f1d60a95476868cad8cb859cc749",
          "body": "Add an inline attachment path that stores small binary assets (logos,\ndiagrams, screenshots) as bytes in the memory row's new attachment_data\nBLOB column, alongside attachment_mime / attachment_name. Because remote\nsync copies whole rows via insertMemory() (the same rail the embedding\nBLOB already u\n[…]\nt <id>.\n- tests: new attachments-inline.test.ts incl. machine-to-machine row copy;\n  required-field/schema-version growth applied to existing fixtures.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "feat(attachments): store small files inline in the memory row (DB blob)",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-31T14:25:12Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "67f3fa9a773edc56e893eac861048030843317bb",
          "body": "Use runtime-only typing for the optional transformers import so tsc and CI\njobs without the package installed still build. Update shell-injection test\nto assert execFile usage in statusCommand after the status refactor.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(build): compile when optional @huggingface/transformers is absent",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-30T18:07:12Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "19dcf783e8d546c6b4ec67980d46bbd515906bdf",
          "body": "…stall\n\nStream the npm install with stderr piped through a line filter that drops\nonly the known-harmless prebuild-install and boolean deprecation warnings\nfrom optional native deps. Other npm output still passes through live.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(upgrade): filter benign npm deprecation warnings during global in…",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-30T18:07:12Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "275d36bd2adc1678cc9c7a5b9fdd4f65a8ca193e",
          "body": "Phantom \"connected machines\" appeared after a host rename because the\nregistry (the `machines` key in central gnosys_meta) was keyed solely by\nos.hostname(): a renamed machine started recording under its new name and\norphaned the old entry forever, with nothing to prune it.\n\n- New src/lib/machineReg\n[…]\ne current machine) for viewing/removing stale entries.\n\nTests: src/test/machine-registry.test.ts and a rename-trail case in\nv511-machineConfig.test.ts.\n\nCo-authored-by: Cursor <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "fix(machine): self-heal connected-machines registry on hostname rename",
          "author_name": "Edward Tadros (Proticom)",
          "author_login": "edtadros",
          "committed_at": "2026-05-30T17:18:44Z",
          "body_truncated": true,
          "is_coding_agent": true
        }
      ],
      "releases_count": 90,
      "commits_last_year": 500,
      "latest_release_at": "2026-07-17T09:38:30Z",
      "latest_release_tag": "v6.2.1",
      "releases_from_tags": true,
      "days_since_last_push": 1,
      "active_weeks_last_year": 16,
      "days_since_latest_release": 4,
      "mean_days_between_releases": 1.6
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 100,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "gnosys",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "gnosys",
            "memory",
            "llm",
            "mcp",
            "knowledge",
            "persistent-memory",
            "agent",
            "ai",
            "ai-memory",
            "claude",
            "cursor",
            "obsidian",
            "sqlite",
            "semantic-search",
            "hybrid-search",
            "embeddings",
            "chatbot",
            "serverless",
            "knowledge-base",
            "model-context-protocol",
            "agent-memory"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/gnosys",
          "is_deprecated": false,
          "latest_version": "6.2.1",
          "repository_url": "https://github.com/proticom/gnosys",
          "versions_count": 87,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 3501,
          "first_published_at": "2026-03-23T04:44:39.729000Z",
          "latest_published_at": "2026-07-17T09:42:48.588000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 4
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 4,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [
          {
            "date": "2026-05-12",
            "count": 1
          },
          {
            "date": "2026-05-30",
            "count": 1
          },
          {
            "date": "2026-07-16",
            "count": 1
          },
          {
            "date": "2026-07-21",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 4,
        "total_stars": 4
      },
      "open_issues_and_prs": 11
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": true,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 185029,
      "source_files_sampled": 537,
      "oversized_source_files": 3,
      "agent_instruction_files": [
        "AGENTS.md",
        "src/test/fixtures/ide-init/claude.md"
      ],
      "agent_instruction_max_bytes": 4665
    },
    "dependencies": {
      "manifests": [
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "fast-uri",
            "direct": false,
            "version": "3.1.2",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-4c8g-83qw-93j6",
              "GHSA-v2hh-gcrm-f6hx"
            ],
            "fixed_version": "4.1.1",
            "advisory_count": 2,
            "oldest_advisory_days": 0
          },
          {
            "name": "sharp",
            "direct": false,
            "version": "0.34.5",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.3,
            "advisory_ids": [
              "GHSA-f88m-g3jw-g9cj"
            ],
            "fixed_version": "0.35.0",
            "advisory_count": 1,
            "oldest_advisory_days": 0
          },
          {
            "name": "@hono/node-server",
            "direct": false,
            "version": "1.19.14",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.9,
            "advisory_ids": [
              "GHSA-frvp-7c67-39w9"
            ],
            "fixed_version": "2.0.5",
            "advisory_count": 1,
            "oldest_advisory_days": 0
          },
          {
            "name": "hono",
            "direct": false,
            "version": "4.12.25",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 6.5,
            "advisory_ids": [
              "GHSA-hvrm-45r6-mjfj",
              "GHSA-w62v-xxxg-mg59",
              "GHSA-xgm2-5f3f-mvvc"
            ],
            "fixed_version": "4.12.27",
            "advisory_count": 3,
            "oldest_advisory_days": 0
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "high": 2,
          "moderate": 2
        },
        "advisory_count": 7,
        "affected_count": 4,
        "assessed_count": 438,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@anthropic-ai/sdk",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.78.0"
        },
        {
          "name": "@modelcontextprotocol/sdk",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.12.1"
        },
        {
          "name": "commander",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.1.0"
        },
        {
          "name": "csv-parse",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.1.0"
        },
        {
          "name": "dotenv",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^17.3.1"
        },
        {
          "name": "glob",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.0.6"
        },
        {
          "name": "gray-matter",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.3"
        },
        {
          "name": "jszip",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.10.1"
        },
        {
          "name": "mammoth",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.12.0"
        },
        {
          "name": "pdf-parse",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.5"
        },
        {
          "name": "turndown",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.2.2"
        },
        {
          "name": "ulidx",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.4.1"
        },
        {
          "name": "zod",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.3.6"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "@anthropic-ai/sdk",
            "direct": true,
            "version": "0.78.0",
            "ecosystem": "npm"
          },
          {
            "name": "@modelcontextprotocol/sdk",
            "direct": true,
            "version": "1.29.0",
            "ecosystem": "npm"
          },
          {
            "name": "commander",
            "direct": true,
            "version": "13.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "csv-parse",
            "direct": true,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "dotenv",
            "direct": true,
            "version": "17.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": true,
            "version": "13.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "gray-matter",
            "direct": true,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "jszip",
            "direct": true,
            "version": "3.10.1",
            "ecosystem": "npm"
          },
          {
            "name": "mammoth",
            "direct": true,
            "version": "1.12.0",
            "ecosystem": "npm"
          },
          {
            "name": "pdf-parse",
            "direct": true,
            "version": "2.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "turndown",
            "direct": true,
            "version": "7.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "ulidx",
            "direct": true,
            "version": "2.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "zod",
            "direct": true,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-string-parser",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-identifier",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/runtime",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.29.7",
            "ecosystem": "npm"
          },
          {
            "name": "@bcoe/v8-coverage",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/biome",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-darwin-arm64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-darwin-x64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-arm64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-arm64-musl",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-x64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-linux-x64-musl",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-win32-arm64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@biomejs/cli-win32-x64",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/core",
            "direct": false,
            "version": "1.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/runtime",
            "direct": false,
            "version": "1.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/wasi-threads",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/aix-ppc64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ia32",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-loong64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-mips64el",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ppc64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-riscv64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-s390x",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/netbsd-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/netbsd-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openbsd-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openbsd-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openharmony-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/sunos-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-arm64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-ia32",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-x64",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@hono/node-server",
            "direct": false,
            "version": "1.19.14",
            "ecosystem": "npm"
          },
          {
            "name": "@huggingface/jinja",
            "direct": false,
            "version": "0.5.9",
            "ecosystem": "npm"
          },
          {
            "name": "@huggingface/tokenizers",
            "direct": false,
            "version": "0.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "@huggingface/transformers",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@img/colour",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-darwin-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-darwin-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-darwin-arm64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-darwin-x64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-arm",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-arm64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-ppc64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-riscv64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-s390x",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linux-x64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linuxmusl-arm64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-libvips-linuxmusl-x64",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-arm",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-ppc64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-riscv64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-s390x",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linux-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linuxmusl-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-linuxmusl-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-wasm32",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-win32-arm64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-win32-ia32",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@img/sharp-win32-x64",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/resolve-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/sourcemap-codec",
            "direct": false,
            "version": "1.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/trace-mapping",
            "direct": false,
            "version": "0.3.31",
            "ecosystem": "npm"
          },
          {
            "name": "@mixmark-io/domino",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-android-arm64",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-darwin-arm64",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-darwin-x64",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-arm-gnueabihf",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-arm64-gnu",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-arm64-musl",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-riscv64-gnu",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-x64-gnu",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-linux-x64-musl",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/canvas-win32-x64-msvc",
            "direct": false,
            "version": "0.1.80",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/wasm-runtime",
            "direct": false,
            "version": "1.1.5",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-android-arm-eabi",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-android-arm64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-darwin-arm64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-darwin-x64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-freebsd-x64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm-musleabihf",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-arm64-musl",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-riscv64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-riscv64-musl",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-s390x-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-x64-gnu",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-linux-x64-musl",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-openharmony-arm64",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-wasm32-wasi",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-win32-arm64-msvc",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-win32-ia32-msvc",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-parser/binding-win32-x64-msvc",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-project/types",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-android-arm-eabi",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-android-arm64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-darwin-arm64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-darwin-x64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-freebsd-x64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm-musleabihf",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-arm64-musl",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-riscv64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-riscv64-musl",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-s390x-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-x64-gnu",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-linux-x64-musl",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-openharmony-arm64",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-wasm32-wasi",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-win32-arm64-msvc",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-resolver/binding-win32-x64-msvc",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/aspromise",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/base64",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/codegen",
            "direct": false,
            "version": "2.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/eventemitter",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/fetch",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/float",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/path",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/pool",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@protobufjs/utf8",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-android-arm64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-arm64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-x64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-freebsd-x64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-musl",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-s390x-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-gnu",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-musl",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-openharmony-arm64",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-wasm32-wasi",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-arm64-msvc",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-x64-msvc",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/pluginutils",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@standard-schema/spec",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tybys/wasm-util",
            "direct": false,
            "version": "0.10.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/better-sqlite3",
            "direct": false,
            "version": "7.6.13",
            "ecosystem": "npm"
          },
          {
            "name": "@types/chai",
            "direct": false,
            "version": "5.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/deep-eql",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/estree",
            "direct": false,
            "version": "1.0.9",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "22.19.21",
            "ecosystem": "npm"
          },
          {
            "name": "@types/turndown",
            "direct": false,
            "version": "5.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/coverage-v8",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/expect",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/mocker",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/pretty-format",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/runner",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/snapshot",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/spy",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/utils",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "@xmldom/xmldom",
            "direct": false,
            "version": "0.8.13",
            "ecosystem": "npm"
          },
          {
            "name": "accepts",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "adm-zip",
            "direct": false,
            "version": "0.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "ajv",
            "direct": false,
            "version": "8.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "ajv-formats",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "argparse",
            "direct": false,
            "version": "1.0.10",
            "ecosystem": "npm"
          },
          {
            "name": "assertion-error",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ast-v8-to-istanbul",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "base64-js",
            "direct": false,
            "version": "1.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "better-sqlite3",
            "direct": false,
            "version": "11.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "bindings",
            "direct": false,
            "version": "1.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "bl",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "bluebird",
            "direct": false,
            "version": "3.4.7",
            "ecosystem": "npm"
          },
          {
            "name": "body-parser",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "boolean",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "5.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "buffer",
            "direct": false,
            "version": "5.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "bytes",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "call-bind-apply-helpers",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "call-bound",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "chai",
            "direct": false,
            "version": "6.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "chownr",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "content-disposition",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "content-type",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "content-type",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "convert-source-map",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cookie",
            "direct": false,
            "version": "0.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "cookie-signature",
            "direct": false,
            "version": "1.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "core-util-is",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "cors",
            "direct": false,
            "version": "2.8.6",
            "ecosystem": "npm"
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "decompress-response",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "deep-extend",
            "direct": false,
            "version": "0.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "define-data-property",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "define-properties",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "depd",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "detect-libc",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "detect-node",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "dingbat-to-unicode",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "duck",
            "direct": false,
            "version": "0.1.12",
            "ecosystem": "npm"
          },
          {
            "name": "dunder-proto",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ee-first",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "encodeurl",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "end-of-stream",
            "direct": false,
            "version": "1.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "es-define-property",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "es-errors",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "es-module-lexer",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "es-object-atoms",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "es6-error",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "esbuild",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "escape-html",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "escape-string-regexp",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "esprima",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "estree-walker",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "etag",
            "direct": false,
            "version": "1.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "eventsource",
            "direct": false,
            "version": "3.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "eventsource-parser",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "expand-template",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "expect-type",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "express",
            "direct": false,
            "version": "5.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "express-rate-limit",
            "direct": false,
            "version": "8.5.2",
            "ecosystem": "npm"
          },
          {
            "name": "extend-shallow",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "fast-deep-equal",
            "direct": false,
            "version": "3.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "fast-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "fd-package-json",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fdir",
            "direct": false,
            "version": "6.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "file-uri-to-path",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "finalhandler",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "flatbuffers",
            "direct": false,
            "version": "25.9.23",
            "ecosystem": "npm"
          },
          {
            "name": "formatly",
            "direct": false,
            "version": "0.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "forwarded",
            "direct": false,
            "version": "0.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "fresh",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs-constants",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fsevents",
            "direct": false,
            "version": "2.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "function-bind",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "get-intrinsic",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-proto",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "get-tsconfig",
            "direct": false,
            "version": "4.14.0",
            "ecosystem": "npm"
          },
          {
            "name": "github-from-package",
            "direct": false,
            "version": "0.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "global-agent",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "globalthis",
            "direct": false,
            "version": "1.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "gopd",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "guid-typescript",
            "direct": false,
            "version": "1.0.9",
            "ecosystem": "npm"
          },
          {
            "name": "has-flag",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "has-property-descriptors",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "has-symbols",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "hasown",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "hono",
            "direct": false,
            "version": "4.12.25",
            "ecosystem": "npm"
          },
          {
            "name": "html-escaper",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "http-errors",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "iconv-lite",
            "direct": false,
            "version": "0.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "ieee754",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "immediate",
            "direct": false,
            "version": "3.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "inherits",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "ini",
            "direct": false,
            "version": "1.3.8",
            "ecosystem": "npm"
          },
          {
            "name": "ip-address",
            "direct": false,
            "version": "10.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "ipaddr.js",
            "direct": false,
            "version": "1.9.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-extendable",
            "direct": false,
            "version": "0.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-promise",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isarray",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-coverage",
            "direct": false,
            "version": "3.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-lib-report",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "istanbul-reports",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "jiti",
            "direct": false,
            "version": "2.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "jose",
            "direct": false,
            "version": "6.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "js-tokens",
            "direct": false,
            "version": "10.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "js-yaml",
            "direct": false,
            "version": "3.15.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-to-ts",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-traverse",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-schema-typed",
            "direct": false,
            "version": "8.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "json-stringify-safe",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "kind-of",
            "direct": false,
            "version": "6.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "knip",
            "direct": false,
            "version": "6.16.1",
            "ecosystem": "npm"
          },
          {
            "name": "layerr",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "lie",
            "direct": false,
            "version": "3.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-android-arm64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-arm64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-x64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-freebsd-x64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-gnu",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-musl",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-gnu",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-musl",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-arm64-msvc",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-x64-msvc",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "long",
            "direct": false,
            "version": "5.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "lop",
            "direct": false,
            "version": "0.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "11.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "magic-string",
            "direct": false,
            "version": "0.30.21",
            "ecosystem": "npm"
          },
          {
            "name": "magicast",
            "direct": false,
            "version": "0.5.3",
            "ecosystem": "npm"
          },
          {
            "name": "make-dir",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "matcher",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "math-intrinsics",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "media-typer",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "merge-descriptors",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "mime-db",
            "direct": false,
            "version": "1.54.0",
            "ecosystem": "npm"
          },
          {
            "name": "mime-types",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-response",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "10.2.5",
            "ecosystem": "npm"
          },
          {
            "name": "minimist",
            "direct": false,
            "version": "1.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": false,
            "version": "7.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "mkdirp-classic",
            "direct": false,
            "version": "0.5.3",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "nanoid",
            "direct": false,
            "version": "3.3.12",
            "ecosystem": "npm"
          },
          {
            "name": "napi-build-utils",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "negotiator",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-abi",
            "direct": false,
            "version": "3.92.0",
            "ecosystem": "npm"
          },
          {
            "name": "object-assign",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "object-inspect",
            "direct": false,
            "version": "1.13.4",
            "ecosystem": "npm"
          },
          {
            "name": "object-keys",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "obug",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "on-finished",
            "direct": false,
            "version": "2.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "once",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-common",
            "direct": false,
            "version": "1.24.0-dev.20251116-b39e144322",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-common",
            "direct": false,
            "version": "1.24.3",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-node",
            "direct": false,
            "version": "1.24.3",
            "ecosystem": "npm"
          },
          {
            "name": "onnxruntime-web",
            "direct": false,
            "version": "1.26.0-dev.20260416-b7804b056c",
            "ecosystem": "npm"
          },
          {
            "name": "option",
            "direct": false,
            "version": "0.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "oxc-parser",
            "direct": false,
            "version": "0.133.0",
            "ecosystem": "npm"
          },
          {
            "name": "oxc-resolver",
            "direct": false,
            "version": "11.20.0",
            "ecosystem": "npm"
          },
          {
            "name": "pako",
            "direct": false,
            "version": "1.0.11",
            "ecosystem": "npm"
          },
          {
            "name": "parseurl",
            "direct": false,
            "version": "1.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "path-is-absolute",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-key",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-scurry",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "path-to-regexp",
            "direct": false,
            "version": "8.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "pathe",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "pdfjs-dist",
            "direct": false,
            "version": "5.4.296",
            "ecosystem": "npm"
          },
          {
            "name": "picocolors",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "pkce-challenge",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "platform",
            "direct": false,
            "version": "1.3.6",
            "ecosystem": "npm"
          },
          {
            "name": "postcss",
            "direct": false,
            "version": "8.5.15",
            "ecosystem": "npm"
          },
          {
            "name": "prebuild-install",
            "direct": false,
            "version": "7.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "process-nextick-args",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "protobufjs",
            "direct": false,
            "version": "7.6.5",
            "ecosystem": "npm"
          },
          {
            "name": "proxy-addr",
            "direct": false,
            "version": "2.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "pump",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "qs",
            "direct": false,
            "version": "6.15.2",
            "ecosystem": "npm"
          },
          {
            "name": "range-parser",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "raw-body",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "rc",
            "direct": false,
            "version": "1.2.8",
            "ecosystem": "npm"
          },
          {
            "name": "readable-stream",
            "direct": false,
            "version": "2.3.8",
            "ecosystem": "npm"
          },
          {
            "name": "readable-stream",
            "direct": false,
            "version": "3.6.2",
            "ecosystem": "npm"
          },
          {
            "name": "require-from-string",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "resolve-pkg-maps",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "roarr",
            "direct": false,
            "version": "2.15.4",
            "ecosystem": "npm"
          },
          {
            "name": "rolldown",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "router",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "safe-buffer",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "safer-buffer",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "section-matter",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.8.4",
            "ecosystem": "npm"
          },
          {
            "name": "semver-compare",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "send",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "serialize-error",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "serve-static",
            "direct": false,
            "version": "2.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "setimmediate",
            "direct": false,
            "version": "1.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "setprototypeof",
            "direct": false,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "sharp",
            "direct": false,
            "version": "0.34.5",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-command",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-list",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-map",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "side-channel-weakmap",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "siginfo",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "simple-concat",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "simple-get",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "smol-toml",
            "direct": false,
            "version": "1.6.1",
            "ecosystem": "npm"
          },
          {
            "name": "source-map-js",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "sprintf-js",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "sprintf-js",
            "direct": false,
            "version": "1.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "stackback",
            "direct": false,
            "version": "0.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "statuses",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "std-env",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "string_decoder",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-bom-string",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": false,
            "version": "5.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "supports-color",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "tar-fs",
            "direct": false,
            "version": "2.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "tar-stream",
            "direct": false,
            "version": "2.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinybench",
            "direct": false,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinyexec",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "tinyglobby",
            "direct": false,
            "version": "0.2.17",
            "ecosystem": "npm"
          },
          {
            "name": "tinyrainbow",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "toidentifier",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ts-algebra",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "tslib",
            "direct": false,
            "version": "2.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "tsx",
            "direct": false,
            "version": "4.22.4",
            "ecosystem": "npm"
          },
          {
            "name": "tunnel-agent",
            "direct": false,
            "version": "0.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "type-fest",
            "direct": false,
            "version": "0.13.1",
            "ecosystem": "npm"
          },
          {
            "name": "type-is",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "5.9.3",
            "ecosystem": "npm"
          },
          {
            "name": "unbash",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "underscore",
            "direct": false,
            "version": "1.13.8",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "6.21.0",
            "ecosystem": "npm"
          },
          {
            "name": "unpipe",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "util-deprecate",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "vary",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "vite",
            "direct": false,
            "version": "8.0.16",
            "ecosystem": "npm"
          },
          {
            "name": "vitest",
            "direct": false,
            "version": "4.1.9",
            "ecosystem": "npm"
          },
          {
            "name": "walk-up-path",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "why-is-node-running",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrappy",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "xmlbuilder",
            "direct": false,
            "version": "10.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "yaml",
            "direct": false,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "zod-to-json-schema",
            "direct": false,
            "version": "3.25.2",
            "ecosystem": "npm"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 438,
        "direct_count": 13,
        "indirect_count": 425
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 9,
        "merged_prs": 4,
        "open_issues": 2,
        "closed_ratio": 0,
        "closed_issues": 0,
        "closed_unmerged_prs": 2
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "edtadros",
          "commits": 498,
          "avatar_url": "https://avatars.githubusercontent.com/u/4167177?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "lockfile-refresh.yml",
        "publish.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        "biome.json"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "package-lock.json"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 3,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/28 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 6,
            "reason": "dependency not pinned by hash detected -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 9,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 3,
            "reason": "7 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "f49863150d00a4ac7f18c9e3ba735d46df6ae5e3",
        "ran_at": "2026-07-22T07:43:54Z",
        "aggregate_score": 6.1,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-21T04:39:03Z",
      "oldest_open_prs": [
        {
          "number": 12,
          "created_at": "2026-07-06T07:28:46Z",
          "last_comment_at": "2026-07-21T04:43:13Z",
          "last_comment_author": "edtadros"
        },
        {
          "number": 14,
          "created_at": "2026-07-21T04:39:02Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 15,
          "created_at": "2026-07-21T04:39:11Z",
          "last_comment_at": "2026-07-21T04:39:49Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 16,
          "created_at": "2026-07-21T04:39:45Z",
          "last_comment_at": "2026-07-21T04:40:27Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 17,
          "created_at": "2026-07-21T04:39:51Z",
          "last_comment_at": "2026-07-21T04:40:34Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 18,
          "created_at": "2026-07-21T04:40:04Z",
          "last_comment_at": "2026-07-21T04:41:31Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 19,
          "created_at": "2026-07-21T04:40:14Z",
          "last_comment_at": "2026-07-21T04:41:04Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 20,
          "created_at": "2026-07-21T04:40:19Z",
          "last_comment_at": "2026-07-21T04:40:51Z",
          "last_comment_author": "socket-security"
        },
        {
          "number": 21,
          "created_at": "2026-07-21T04:40:26Z",
          "last_comment_at": "2026-07-21T04:41:15Z",
          "last_comment_author": "socket-security"
        }
      ],
      "last_merged_pr_at": "2026-07-21T04:38:10Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 5,
          "created_at": "2026-05-03T15:52:45Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 9,
          "created_at": "2026-05-30T17:16:41Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/proticom/gnosys",
    "host": "github.com",
    "name": "gnosys",
    "owner": "proticom"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 65,
      "inputs": {
        "security": 69,
        "vitality": 80,
        "community": 50,
        "governance": 42,
        "engineering": 86
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 80,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "commits_last_year": 500,
              "human_commit_share": 0.99,
              "days_since_last_push": 1,
              "active_weeks_last_year": 16
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 1 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 1
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "16/52 weeks with commits",
                "points": 11.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 16
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "500 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 500
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 88,
            "inputs": {
              "releases_count": 90,
              "latest_release_tag": "v6.2.1",
              "releases_from_tags": true,
              "days_since_latest_release": 4,
              "mean_days_between_releases": 1.6
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "90 version tags (no GitHub releases)",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "version_tags_no_releases",
                    "params": {
                      "count": 90
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~1.6 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 1.6
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 50,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 8,
            "inputs": {
              "forks": 0,
              "stars": 4,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "below_threshold"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "4 stars",
                "points": 7.7,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 59,
            "inputs": {
              "packages": [
                "gnosys"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 3501
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "3,501 downloads/month across npm",
                "points": 47.3,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 3501,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 42,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 10,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "critical",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 26,
            "inputs": {
              "merged_prs": 4,
              "open_issues": 2,
              "closed_issues": 0,
              "issue_closed_ratio": 0,
              "closed_unmerged_prs": 2
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "0% of issues closed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 0
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "4/6 decided PRs merged",
                "points": 25.5,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 4,
                      "decided": 6
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 48,
            "inputs": {
              "followers": 1,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "proticom",
              "public_repos": 2,
              "account_age_days": 4171
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "1 followers of proticom",
                "points": 2.2,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 1,
                      "login": "proticom"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "2 public repos, account ~11 yr old",
                "points": 15.5,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 2
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 11
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "gnosys"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 4
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 4 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "87 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 87
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "excellent",
        "name": "Engineering Quality",
        "value": 86,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "3 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": "biome.json",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "biome.json"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "ai",
                "ai-agents",
                "ai-tools",
                "developer-tools",
                "knowledge-management",
                "llm",
                "mcp",
                "mcp-server",
                "memory",
                "model-context-protocol",
                "obsidian",
                "persistent-memory",
                "typescript",
                "agent-memory",
                "claude",
                "cursor",
                "sqlite",
                "grok-build"
              ],
              "has_wiki": false,
              "homepage": "https://gnosys.ai",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://gnosys.ai",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "18 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 18
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 69,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "moderate",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 61,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 6.1
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "1 out of 1 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/28 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 6.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "7 existing vulnerabilities detected",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 438 resolved dependencies against OSV. This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories",
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 438
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 7,
              "affected_packages": 4,
              "assessed_packages": 438,
              "unassessed_packages": 0,
              "affected_by_severity": "high 2, moderate 2",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 438,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 1
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 74,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.848,
              "agent_instruction_files": [
                "AGENTS.md",
                "src/test/fixtures/ide-init/claude.md"
              ],
              "agent_instruction_max_bytes": 4665
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "AGENTS.md, src/test/fixtures/ide-init/claude.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "AGENTS.md, src/test/fixtures/ide-init/claude.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "84 of 99 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 84,
                      "sampled": 99
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "package-lock.json"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "tsconfig.json"
              ],
              "agent_commit_share": 0.26,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": "biome.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "biome.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "26 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 26,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "dependency automation configured, none observed in the sampled commits",
                "points": 5,
                "status": "partial",
                "details": [
                  {
                    "code": "dependency_bot_config_only",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 185029,
              "source_files_sampled": 537,
              "oversized_source_files": 3
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "3/537 source files over 60KB",
                "points": 54.7,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 537,
                      "oversized": 3
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "critical",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 20,
            "inputs": {
              "example_dirs": [],
              "has_mcp_signal": true,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "deps.dev does not index npm:gnosys@6.2.1; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T07:44:00.637773Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/p/proticom/gnosys.svg",
  "full_name": "proticom/gnosys",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.26.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsnpm.