Public record
Software health reportschema 0.27.0 · metrics 1.13.0 · 2026-07-27 01:12 UTC

toon-format / spec

Official specification for Token-Oriented Object Notation (TOON)

JavaScriptMIT★ 320 stars⑂ 35 forkssince Nov 2025View on GitHub ↗

toon-format/spec holds a health index of 64 out of 100, placing it in the Moderate band. It scores highest on Vitality (85/100) and lowest on Security (40/100). It was last updated today. A single contributor accounts for most of its recent work.

64
overall / 100
Moderate

Software health index

Metrics are grouped into weighted categories on one standardized 1–100 scale. Overall starts as their weighted mean; when public evidence triggers the High-Risk Jurisdiction Policy, the rating is adjusted and receives an At risk ceiling of 49. AI Readiness sits outside the overall score.

64
Excellent85-100Exemplary; meets essentially all checked criteria
Good70-84Healthy; minor gaps
Moderate50-69Acceptable with notable gaps; review recommended
At risk30-49Significant weaknesses; adoption warrants caution
Critical1-29Severe problems (abandoned, single-maintainer, no hygiene)
VitalityCommunity &AdoptionSustainability &GovernanceEngineeringQualitySecurityAI Readiness

Score profile

Each axis is a category. The shape matters more than the average — a healthy subject fills the whole shape, while a spike-and-crater profile means strength in one dimension is masking risk in another.

Ownership

TOONOrganization
441 followers12 public repossince Oct 2025

This repository is backed by an organization — shared, accountable stewardship that can outlive any single maintainer.

Package ecosystems

RegistryPackageVersionDownloads / moVersionsLast publishTags
npm@toon-format/spec4.1.01,020220 days agotoonformatspecificationllmtoken-efficiencydata-format

Metrics by category

Vitality

Is the project alive — is code being written and are releases shipping?

85Excellent · 22% of overall
How it's scored
36/36Push recency — last push 0 days ago
11.1/36Commit cadence — 16/52 weeks with commits
18/18Commit volume — 183 commits in the last year
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Inputs used
commits_last_year183
human_commit_share1
days_since_last_push0
active_weeks_last_year16

Release discipline

100Excellent
How it's scored
27/27Ships releases — 21 releases published
36/36Release recency — latest release 0 days ago
27/27Release cadence — a release every ~25.9 days
0/10OpenSSF Scorecard: Signed-Releases — no data
Inputs used
releases_count21
latest_release_tagv4.1.0
releases_from_tagsno
days_since_latest_release0
mean_days_between_releases25.9
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.

Community & Adoption

Does the project have users, downloads, attention, and a welcoming setup for contributors?

68Moderate · 18% of overall
How it's scored
40.6/60Stars — 320 stars
12.8/25Forks — 35 forks
5.3/15Watchers — 10 watchers
Inputs used
forks35
stars320
watchers10
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

Community health

92Excellent
How it's scored
22.5/22.5README
22.5/22.5License — recognized license (MIT)
18/18CONTRIBUTING guide
13.5/13.5Code of conduct
0/7.2Issue template
6.3/6.3PR template
Inputs used
has_readmeyes
has_licenseyes
has_contributingyes
has_issue_templateno
has_code_of_conductyes
has_pull_request_templateyes
How it's scored
40.1/80Monthly downloads — 1,020 downloads/month across npm
0/20Registry dependents — not reported by this ecosystem
Inputs used
packages@toon-format/spec
dependents
ecosystemsnpm
total_downloads
monthly_downloads1,020
Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.

Sustainability & Governance

Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?

55Moderate · 24% of overall
How it's scored
9/54Bus factor — 1 contributor(s) cover half of all commits
0.4/22.5Commit distribution — top contributor authored 98% of commits
5.4/13.5Contributor breadth — 4 contributors
3/10OpenSSF Scorecard: Contributors — project has 1 contributing companies or organizations -- score normalized to 3
Inputs used
bus_factor1
contributors_sampled4
top_contributor_share0.984
How it's scored
44.1/46.8Issue resolution — 94% of issues closed
13.9/38.3PR acceptance — 4/11 decided PRs merged
0/15OpenSSF Scorecard: Code-Review — Found 0/30 approved changesets -- score normalized to 0
Inputs used
merged_prs4
open_issues2
closed_issues34
issue_closed_ratio0.944
closed_unmerged_prs7
How it's scored
30/30Ownership backing — organization-owned
0/20Verified domain
19/25Owner reach — 441 followers of toon-format
9.6/25Track record — 12 public repos, account ~0 yr old
Inputs used
followers441
owner_typeOrganization
is_verified
owner_logintoon-format
public_repos12
account_age_days268
How it's scored
25/25Published & resolvable — 1 package(s) on npm
35/35Publish recency — latest publish 0 days ago
20/20Version history — 22 published versions
20/20Not deprecated — active, not deprecated or yanked
Inputs used
packages@toon-format/spec
ecosystemsnpm
any_deprecatedno
min_days_since_publish0

Engineering Quality

Are baseline engineering and documentation practices in place?

68Moderate · 20% of overall
How it's scored
24/24CI workflows — 2 workflow(s)
24/24Tests present
16/16Linter config — eslint.config.mjs
0/9.6Pre-commit hooks
0/6.4.editorconfig
0/20OpenSSF Scorecard: CI-Tests — no data
Inputs used
has_ciyes
has_testsyes
has_editorconfigno
has_linter_configyes
has_precommit_configno
Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.

Documentation

50Moderate
How it's scored
30/30README
0/25Documentation directory
0/15Documentation / homepage site
10/10Repository description
0/10Topics
10/10Wiki
Inputs used
topics
has_wikiyes
homepage
has_readmeyes
has_docs_dirno
has_descriptionyes

Security

Are visible security and supply-chain practices strong, without unresolved high-risk jurisdiction exposure?

40At risk · 16% of overall
How it's scored
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
0/2.5CI-Tests — no data
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
0.8/2.5Contributors — project has 1 contributing companies or organizations -- score normalized to 3
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5License — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — no data
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — no SAST tool detected
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — no data
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
7.5/7.5Vulnerabilities — 0 existing vulnerabilities detected
Inputs used
sourceopenssf_scorecard
checks_evaluated15
scorecard_versionv5.5.0
checks_inconclusive3
scorecard_aggregate4
Excluded from scoring (no data or not applicable): ci_tests, packaging, signed_releases. Remaining weights renormalized.

AI Readiness

How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score.

43At risk · 0% of overall
How it's scored
0/45Agent instructions — no CLAUDE.md / AGENTS.md / editor rules
0/15Machine-readable docs (llms.txt)
40/40Legible commit history — 100 of 100 human commits state their intent (structured subject or explanatory body)
Inputs used
has_llms_txtno
legible_history_share1
agent_instruction_files
agent_instruction_max_bytes
How it's scored
0/18One-command bootstrap
22/22Automated tests
11/11Lint / format config — eslint.config.mjs
0/11Static type checking
10/10Reproducible environment — lockfile
0/10Demonstrated agent practice — no agent-authored commits among the last 100
0/8Automated maintenance — no automated dependency updates observed
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Inputs used
has_nixno
has_testsyes
lockfilespnpm-lock.yaml
has_dockerfileno
typed_languageno
bootstrap_files
has_devcontainerno
has_linter_configyes
typecheck_configs
agent_commit_share0
toolchain_manifests
dependency_bot_commit_share0
How it's scored
0/45Type-checkable code — JavaScript without a type-check config
55/55Manageable file sizes — 0/1 source files over 60KB
Inputs used
primary_languageJavaScript
largest_source_bytes169
source_files_sampled1
oversized_source_files0
How it's scored
0/40API schema (OpenAPI/GraphQL/proto)
0/20MCP server
40/40Runnable examples — examples
Inputs used
example_dirsexamples
has_mcp_signalno
api_schema_files

Key facts

320GitHub stars
4contributors
183commits, last 12 months
0days since last push
21releases
1bus factor
2open issues
npmpackage ecosystems

Data collection warnings

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository
  • deps.dev does not index npm:@toon-format/spec@4.1.0; advisories assessed against the repository dependency graph instead

More detail

Star and fork history 0 ★ / 35 ⇿
0Stars
35Forks
14Releases

When each star and fork was added, collected from GitHub and bucketed by day. Cumulative growth sits directly above the daily additions it is made of, so the two read against each other: steady organic accretion looks nothing like an abrupt, short-lived burst. Where that difference is measurable, it is reported as growth authenticity.

01325383542025-112026-022026-06
Major 2Minor 6Patch 6
OpenSSF Scorecard 4.0 / 10
4.0aggregate

Independent, tool-agnostic security assessment from the open-source OpenSSF Scorecard. Each check rewards a security practice, not a specific vendor's tool. Checks Scorecard could not determine are marked n/a and excluded from the security score (never counted as zero).Scorecard v5.5.0 · 2026-07-27 01:12 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
n/aCI-Testsno pull request found
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
3Contributorsproject has 1 contributing companies or organizations -- score normalized to 3
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
n/aPackagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTno SAST tool detected
0Security-Policysecurity policy file not detected
n/aSigned-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
10Vulnerabilities0 existing vulnerabilities detected
All dependencies not collected

The resolved dependency set could not be collected for this report: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Raw JSON report machine-readable
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 369,
      "has_wiki": true,
      "homepage": null,
      "languages": {
        "JavaScript": 169
      },
      "pushed_at": "2026-07-26T13:02:21Z",
      "created_at": "2025-11-02T16:30:33Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-26T13:02:26Z",
      "description": "Official specification for Token-Oriented Object Notation (TOON)",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "JavaScript",
      "significant_languages": [
        "JavaScript"
      ]
    },
    "owner": {
      "blog": "https://toonformat.dev",
      "name": "TOON",
      "type": "Organization",
      "login": "toon-format",
      "company": null,
      "location": null,
      "followers": 441,
      "avatar_url": "https://avatars.githubusercontent.com/u/241380424?v=4",
      "created_at": "2025-10-31T22:47:23Z",
      "is_verified": null,
      "public_repos": 12,
      "account_age_days": 268
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v4.1.0",
          "kind": "minor",
          "published_at": "2026-07-26T09:17:33Z"
        },
        {
          "tag": "v4.0.0",
          "kind": "major",
          "published_at": "2026-07-22T20:11:31Z"
        },
        {
          "tag": "v3.3.2",
          "kind": "patch",
          "published_at": "2026-07-18T05:27:00Z"
        },
        {
          "tag": "v3.3.1",
          "kind": "patch",
          "published_at": "2026-07-18T04:57:27Z"
        },
        {
          "tag": "v3.3.0",
          "kind": "minor",
          "published_at": "2026-05-21T08:05:22Z"
        },
        {
          "tag": "v3.2.0",
          "kind": "minor",
          "published_at": "2026-05-20T09:20:06Z"
        },
        {
          "tag": "v3.1.0",
          "kind": "minor",
          "published_at": "2026-05-18T13:08:16Z"
        },
        {
          "tag": "v3.0.3",
          "kind": "patch",
          "published_at": "2026-02-23T09:26:43Z"
        },
        {
          "tag": "v3.0.2",
          "kind": "patch",
          "published_at": "2026-02-22T18:04:31Z"
        },
        {
          "tag": "v3.0.1",
          "kind": "patch",
          "published_at": "2025-12-05T13:10:39Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2025-11-24T16:31:48Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2025-11-24T07:28:50Z"
        },
        {
          "tag": "v2.0.1",
          "kind": "patch",
          "published_at": "2025-11-21T07:57:56Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2025-11-10T16:14:22Z"
        },
        {
          "tag": "v1.5.2",
          "kind": "patch",
          "published_at": "2025-11-10T09:23:36Z"
        },
        {
          "tag": "v1.5.1",
          "kind": "patch",
          "published_at": "2025-11-10T09:18:55Z"
        },
        {
          "tag": "v1.5.0",
          "kind": "minor",
          "published_at": "2025-11-10T08:36:18Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2025-11-05T18:01:10Z"
        },
        {
          "tag": "v1.3.3",
          "kind": "patch",
          "published_at": "2025-11-03T07:12:57Z"
        },
        {
          "tag": "v1.3.2",
          "kind": "patch",
          "published_at": "2025-11-02T21:58:57Z"
        },
        {
          "tag": "v1.3.1",
          "kind": "patch",
          "published_at": "2025-11-02T20:48:54Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "f272fb75b124e2fe5b2a7bc0963e5c25eec20f15",
          "body": null,
          "is_bot": false,
          "headline": "docs: tighten readmes and fix the stale comment note in the PR template",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-26T13:02:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "be5c1495987aad5a3f54636d8179139cd824c7bb",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v4.1.0",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-26T09:17:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb271403feff6b8386a157bd036ba4cd38d9191e",
          "body": null,
          "is_bot": false,
          "headline": "chore: upgrade dependencies",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-26T07:52:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18a14ab037d6daeb1b182c5ba29eb87c2e49fb5a",
          "body": null,
          "is_bot": false,
          "headline": "docs: stamp the v4.1 release date as 2026-07-26",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-26T07:50:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "82f43e2ae4aab2438f1476de42be0bd14e2afc6a",
          "body": null,
          "is_bot": false,
          "headline": "docs: drop the heading-anchor exemption from the terminology rules",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T22:00:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84e356a2590656b787f5901813a9a7d37dc524e6",
          "body": null,
          "is_bot": false,
          "headline": "docs(contributing): clarify test fixture naming and note usage",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:53:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7526c66743a00fadd72f1b2dcf0809f7f173ecdd",
          "body": null,
          "is_bot": false,
          "headline": "docs: record the fixture prose conventions",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:48:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae2a348f184a3e1dc4d9486442f3c2df028b9c88",
          "body": null,
          "is_bot": false,
          "headline": "docs: trim the changelog and fold the migration guide into it",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:48:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d3ef70394c5f13f7ef6c8f2dddad7c505338d761",
          "body": null,
          "is_bot": false,
          "headline": "test: sweep fixture names and notes onto the canonical terminology",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:45:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c1b7ae96797034d808795de760c412eef718f001",
          "body": null,
          "is_bot": false,
          "headline": "docs: let fixture prose follow the spec's terminology",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:45:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "242e3aa866cc3931f01f47dd89c7f21de374602f",
          "body": null,
          "is_bot": false,
          "headline": "docs(context): remove deprecated indentSize definition",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:18:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a77c4d5d83cec4348cc7a302a03944b1f7798084",
          "body": null,
          "is_bot": false,
          "headline": "docs: record the v4.1 compatibility note and follow-up spec changes",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:15:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "550e656f606e57e9da1fe44a391c7d6b33c5b07d",
          "body": null,
          "is_bot": false,
          "headline": "test: correct fixture names and notes that misstated the rule under test",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:15:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7e2636a66740d7fb7269c8d6eff8e294a16f435e",
          "body": "…aced scalar lines",
          "is_bot": false,
          "headline": "test: cover non-ASCII keys, literal UTF-8 in quoted tokens, and mispl…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:15:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "716d25eaf3fd63bd94834c4366a41c0ad1efe966",
          "body": "…void-terms",
          "is_bot": false,
          "headline": "docs(context): define scope, token, and indentSize, and drop unused a…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:03:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0f9c1efb07ba71f73b9971bec5671e3b47003516",
          "body": "…pendix",
          "is_bot": false,
          "headline": "docs(spec): cut duplicated normative text and retire the changelog ap…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:02:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d88f4b4a887b3ba5ab6a69db53a7cfb89169cc16",
          "body": "…rrect two misdirected pointers",
          "is_bot": false,
          "headline": "fix(spec): make a misplaced scalar line an error in both modes and co…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T21:02:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b0cd26da824b43d40a8c36051d71e7bceccb303",
          "body": "…le changes as MINOR",
          "is_bot": false,
          "headline": "docs(versioning): admit encoder-side tightening and encoder-unreachab…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T20:58:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0a6f5484ce2a850ccf0da22741cc3c97e04e71c7",
          "body": null,
          "is_bot": false,
          "headline": "docs: record the v4.1 release",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T19:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3107da90f407767a3307acf305439b52445744f4",
          "body": null,
          "is_bot": false,
          "headline": "docs: align supporting documents with spec v4.1",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T19:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e89870f4bedddf529982a8a7053c4f2dacf9bed2",
          "body": null,
          "is_bot": false,
          "headline": "test: add v4.1 conformance fixtures",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T19:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fc349b43dac97f479027320dac297e1b802634ab",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): close normative gaps and cut duplicated rules for v4.1",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T19:18:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c95ec3065207dbd50838e87a7441dc49e2d05557",
          "body": null,
          "is_bot": false,
          "headline": "docs: use canonical `tabular form` in the RFC checklist",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T09:06:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3c0d4750cff11e2724a99cc2bdb83d0b8dc66dff",
          "body": null,
          "is_bot": false,
          "headline": "docs: trim spec README to one conversion and a form index",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T08:50:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "45cbfbd71b1e424ff1b289ee06bf07b36b7d6897",
          "body": null,
          "is_bot": false,
          "headline": "docs(spec): pull `§9` form headings onto one naming system",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T08:48:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "96788825054a19404af24b82e8f979464689631d",
          "body": null,
          "is_bot": false,
          "headline": "docs: add `CONTEXT.md` terminology glossary",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-25T08:48:41Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6b8e74ca3c68fba76e10c20e38ee8135a9ca097d",
          "body": "…ch example",
          "is_bot": false,
          "headline": "docs(examples): replace stray `Alice` with `Ada` in the length mismat…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-24T21:12:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "044276acde361012d007b10064073d144f9df67a",
          "body": null,
          "is_bot": false,
          "headline": "docs(examples): name files by feature and trim redundant conversions",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-24T21:05:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9bf02dc4dc8d92493c9cd74c8a544119869470d8",
          "body": null,
          "is_bot": false,
          "headline": "docs: showcase v4 tabular forms in the serialization examples",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-24T20:34:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eabb71ef6c5bccaa8865986f843416a7192e1afe",
          "body": null,
          "is_bot": false,
          "headline": "docs(examples): add nested field group and keyed tabular conversions",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-24T20:34:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84d391a239cc4349fe07a13d16a06ce1cf4ebd26",
          "body": null,
          "is_bot": false,
          "headline": "docs: stamp `SPEC` and `README` for the v4.0 release",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-24T20:31:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c770bbed11381824eaea6f01878358f2bd6c0fab",
          "body": null,
          "is_bot": false,
          "headline": "docs: stamp `CHANGELOG` and `MIGRATION` for the v4.0 release",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T20:39:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c31beab79abf62f2bac16449ff1ce901d0b42ccd",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v4.0.0",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T20:11:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "423da72c988f13567fbc3d0e15d7c67929cb14ce",
          "body": null,
          "is_bot": false,
          "headline": "ci: drop redundant NPM_TOKEN (publishing via OIDC)",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T20:03:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "06fe4295fff221ec51cdcc1a793452f57583f07d",
          "body": null,
          "is_bot": false,
          "headline": "test(fixtures): cover leading-plus tokens in inline arrays",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T19:49:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b289ea6840720ddd13e9b3842e3d5909ded0645d",
          "body": null,
          "is_bot": false,
          "headline": "docs(tests): classify non-strict fixtures by requirement level",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T18:45:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6be7c6ebbd4ebaa2bddcc0d9a7a262e7c18b1f0f",
          "body": "…yless header positions",
          "is_bot": false,
          "headline": "test(fixtures): cover array-span boundaries, CRLF terminators, and ke…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T18:45:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cecb711f4cad14bd9bd2b8500eb08c5dfa69f6a7",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): deduplicate cross-section rules and align terminology",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T18:45:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e8acbc272b379f2fd3ce549d0f4e035026d8d9aa",
          "body": "…and line-terminator normative gaps",
          "is_bot": false,
          "headline": "fix(spec): close depth-model, blank-line, key-order, keyless-header, …",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T18:45:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0bb5a04d4ad6594cdbd49e67e28fd79ed64188f6",
          "body": "…on headings",
          "is_bot": false,
          "headline": "fix(spec): use the Ada and Bob example pair and title-case introducti…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T09:08:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "389cdd99ac97d3e933f81dc2bd2755b1485da75e",
          "body": "…ver inner array counts",
          "is_bot": false,
          "headline": "test(fixtures): align example names, section citations, and notes; co…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T09:07:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "509d675373d52fe8b7b82a9e3cc9b4661d3261e3",
          "body": "…d non-strict LWW coverage",
          "is_bot": false,
          "headline": "test(fixtures): over-indented orphan lines, trailing root content, an…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T07:53:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "092aad05a956646f84df96bbf42df0bd9e2b7cad",
          "body": "…ines",
          "is_bot": false,
          "headline": "fix(spec): forbid silent discard of over-indented and trailing root l…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-22T07:53:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "116c71b454299e3f611c046a913ee1fbe430f3a3",
          "body": "…sted field groups",
          "is_bot": false,
          "headline": "test(fixtures): keep the §9.4 nested-values case non-uniform under ne…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T20:12:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5986789f6004b03f216d72ca51854d0e9d2653a9",
          "body": null,
          "is_bot": false,
          "headline": "test(fixtures): keyed tabular encode, decode, and error coverage",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T18:12:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c29ae2662832b8914ec46367db6aea96461f9fb8",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): keyed tabular form for objects per RFC #57",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T18:12:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "09cb2a0c239f5995a6c93ab523fce3420cf26f7f",
          "body": null,
          "is_bot": false,
          "headline": "test(fixtures): nested field group encode, decode, and error coverage",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T11:00:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37613264229f27d6a5d773b4dea0256e1f2ebaf4",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): nested field groups in tabular headers per RFC #46",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T11:00:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3b57984e3fef4897f1901a53847b14eb223a91ad",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): enumerate non-root scalar lines in the §14.2 checklist",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "df675975e84749d7bbf1790f966c16e5cc0e1008",
          "body": "…badge",
          "is_bot": false,
          "headline": "docs(spec): backtick inline regexes, add version declaration, update …",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8f3e1d11eeaf35afae893777982936e16e84388e",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): quote leading-plus numeric-like strings per §7.2",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ebea164ba1518b831c71ae4766a18da8be1224c",
          "body": "…nput",
          "is_bot": false,
          "headline": "feat(spec): require strict decoders to reject ill-formed UTF-8 byte i…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "10cc9ab5ff2d3e5e1b1947f9ea9bd96c08bafae0",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): permit erroring as an out-of-range number policy",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "630d6226d8bf2e3db45bd1e3470b898a85ceeff4",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): accept bare bracket pair as an empty inner-array list item",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d80c4f5383beb3ef203bf82b4779616a1bb95c80",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): classify a length-less bracket segment as a malformed header",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7eb342ebb9a11b7642ae9e43b6a863ee82247de6",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): pin strict acceptance of unquoted required-quote values",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "86c2a70b032d11cba3c8c7213879b58ec0dc21b3",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): define the decoder unquoted-key token rule in §7.4",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff191b371a86a59629c5da00b39bf54bff4fcd19",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): make indentation depth jumps a strict-mode error",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:15:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9f3f9a16f50c1ce742d59a75413f65bbd26418b3",
          "body": null,
          "is_bot": false,
          "headline": "fix(spec): fix token trimming to U+0020 only and promote it to MUST",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:14:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4b56f9805e99e4a95b796c06c5a77ac5297a60b2",
          "body": "…cate",
          "is_bot": false,
          "headline": "fix(spec): exempt tabular key reordering from the §2 round-trip predi…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:14:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "deca2e6fc1e80783399f0cb2693e4f94fbf782e9",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): define the normative decoder number grammar in §4",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T10:14:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7ec1f2fc853686054d5768935bebf33275cebad3",
          "body": "…ation",
          "is_bot": false,
          "headline": "feat(spec)!: add full-line comment lines and normative line classific…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T09:22:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "89462e4efbd61546c60117515d6bcbd762725156",
          "body": null,
          "is_bot": false,
          "headline": "chore(fixtures)!: rename fixture option indent to indentSize per §13",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T07:03:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "58f64c6f5c6a20e65717ef929cf3999a071ce091",
          "body": null,
          "is_bot": false,
          "headline": "chore(fixtures)!: normalize fixture baselines to spec 4.0",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T07:02:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cf60deec64aa576a7ff4a0b65cdb6183b023213e",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): make prototype-key handling normative in §15",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T06:59:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ebb240f03d555f952f83402fc7162c59e1469cb0",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec)!: remove key folding and path expansion",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-21T06:57:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "87146b38292d5b71c04b5fcb9496c20fe1647b05",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v3.3.2",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-18T05:26:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a8b5f13b3d8c6787fdf6c947fe265fd1f51781f8",
          "body": "…rray header",
          "is_bot": false,
          "headline": "test(fixtures): pin quoted key containing a colon opening an inline a…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-18T05:23:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "68479a8cb9958fdb55f09bb22b17ba7ddea6af30",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v3.3.1",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-18T04:57:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aab5f6ed6d15c4951ba075b2d5482240380ef3bb",
          "body": null,
          "is_bot": false,
          "headline": "chore: upgrade dependencies",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-18T04:56:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "885cc9587d6dfac7f6eeab461bc546ad1e32a436",
          "body": "…otes",
          "is_bot": false,
          "headline": "chore(fixtures): correct misattributed citations and drop restating n…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-16T08:26:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "046f8a3ce8e9f8d7aad7a31047a65188eb699140",
          "body": "…ture metadata",
          "is_bot": false,
          "headline": "chore(fixtures): describe dedent as the row terminator in tabular fix…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-16T07:58:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a21cf34f33f8e3067f0a083b117a791c61e44157",
          "body": "… per §6",
          "is_bot": false,
          "headline": "test(fixtures): pin unquoted bracket-colon values as key-value decode…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-16T07:11:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eb1a4dca14e54bbcba6c87a135a1c4090502680f",
          "body": null,
          "is_bot": false,
          "headline": "test(fixtures): pin quoted-content opacity for headers and rows",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-15T21:18:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "71953036ad4f0c5331bfe5825b2f4b6b6fd5d942",
          "body": "…rkers",
          "is_bot": false,
          "headline": "test(fixtures): pin escaped-quoted-key decode and malformed length ma…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-15T16:30:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8518f0128cd4d332108683d3c99b4e93d9d1dc8",
          "body": null,
          "is_bot": false,
          "headline": "docs: add out-of-scope knowledge base for triage",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-07-15T14:21:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f55b93ac489f297ff597d95e4c19ae84675eaeb7",
          "body": null,
          "is_bot": false,
          "headline": "ci: update GitHub Actions to latest versions",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-06-12T15:56:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "07161ccc84242a5571f14d33504fc0b4b84da0b2",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v3.3.0",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-21T08:05:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "952488dbc24ddd431726c48317b0658c40c2cb07",
          "body": "Apply 12-agent cross-review polish on Phase 1 + Phase 2 (commits 640e7dd, 9cabd8a) and bump release metadata.\n\n§2 number form\n- consolidate canonical-decimal sub-clause to n = 0 or 1e-6 <= |n| < 1e21\n- reference RFC 8259 §6 for exponent form; recommend lowercase `e` and explicit sign\n- rewrite §2:19\n[…]\nllet\n\nRelease\n- CHANGELOG: tighten v3.3 entry to implementer-facing changes (4 Added + 5 Changed); date 2026-05-21\n- SPEC metadata: bump 3.2 → 3.3\n- tests/README: interval notation aligned with §2:189",
          "is_bot": false,
          "headline": "chore(spec): finalize v3.3 from verification swarm",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-21T08:02:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9cabd8a0a1eeeeb181fb2e2c41a2e6dfce95e6cb",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): add F.5 Java and round out v3.3 portability fixes",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-20T16:12:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "640e7dd2dc3f3469fc4fb57831103001822b463a",
          "body": null,
          "is_bot": false,
          "headline": "feat(spec): scope §2 canonical numbers and add v3.3 portability fixes",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-20T15:23:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9c34402ebc96208ca0d869759e5eb864b6d72c67",
          "body": "eslint --fix:\n- README.md: jsonc/object-curly-spacing in the JSON example\n- SPEC.md: drop trailing blank line at EOF\n\nThese pre-existed v3.2 release commit; npm publish was not affected.",
          "is_bot": false,
          "headline": "chore: fix post-release lint nits",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-20T09:23:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3fcecbda350fcf4c2e993544232f2310a29dc94d",
          "body": null,
          "is_bot": false,
          "headline": "chore: release v3.2.0",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-20T09:19:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0e2b84143b181aad6f2453f3098ccc14f6068c2",
          "body": null,
          "is_bot": false,
          "headline": "chore: reset version",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-20T09:19:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d57d0a1a79803c9c6a335a05917efebeca50876",
          "body": "§6: reword the \"delimiter MUST be used\" clause to make decoder-side\nsplitting explicit and rule out interpreting non-active delimiter\ncharacters in row content as structural.\n\n§9.4: clarify that nested array items sit at depth +1 relative to the\nhyphen line (i.e. +2 from the outer header), and that tabular form is\nunavailable in this position.\n\nBumps publication date to 2026-05-20.",
          "is_bot": false,
          "headline": "chore(spec): clarify §6 splitting semantics and §9.4 depth phrasing",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-20T08:46:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8646e34cfe48a9edf44bbc793e303a4cc98fae0b",
          "body": "Adds a strict-mode fixture for `items[2] {a,b}:` — the bracket-to-fields\nmirror of the existing bracket-to-colon whitespace rule.",
          "is_bot": false,
          "headline": "test(fixtures): cover whitespace gap before fields segment (§6)",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-20T05:46:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8441edeca3973db2e2ec3b7dc6ce267ba57581ee",
          "body": null,
          "is_bot": false,
          "headline": "chore(spec): final v3.2 audit polish",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T14:25:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39847c7d36c259e7d0afe04621ca8f23ce9ba3cf",
          "body": null,
          "is_bot": false,
          "headline": "fix(docs): repair table break and ambiguous §-refs in v3.2 changelog",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T12:51:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f0a5b8129e90004a94adfaf1a85959a5943ec119",
          "body": "…tion",
          "is_bot": false,
          "headline": "chore(spec): v3.2 audit polish – §17 cut, §14 collapse, §19/20 reloca…",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T12:43:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e68571a6525d61ffa2a517d9ef7eb743bd0c8355",
          "body": "Verification swarm (codex + Opus) flagged ceremony and prose drift in\nthe v3.2 polish commits. Cuts:\n\n- §6 ABNF note: drop defensive cross-referencing about delimiter\n  equality; one sentence pointing to the same-delimiter rule above.\n- §6 prose: collapse the strict/non-strict paragraph; same rule, \n[…]\nmd: trim key-folding-non-identifier and\n  missing-colon entries; the spec holds the mechanics.\n- CHANGELOG: consolidate the v3.2 §6 bullets and shorten the\n  precedence-rule \"Fixed\" entry to one line.",
          "is_bot": false,
          "headline": "chore(spec): trim v3.2 polish for signal density",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T09:04:56Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "035c3d1612e6d8c9bf0e0d230f6ae754397dff6e",
          "body": null,
          "is_bot": false,
          "headline": "docs(changelog): trim v3.2 entries for Keep-a-Changelog terseness",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T08:57:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b0c29efb27f4d8d46bc7076c3655b7df7cc9a5d3",
          "body": "Decode strict errors (validation-errors.json):\n- Array header missing colon.\n- Inline primitive array length mismatch (too few).\n- List items length mismatch (too few).\n- Bracket length with leading zeros ([03]).\n- Whitespace between ] and the colon (v3.2 *SP drop).\n- Nested duplicate sibling keys.\n\n[…]\nmit \\ for U+005C).\n\nEncode objects (objects.json):\n- Add \"minSpecVersion\": \"3.1\" to the two \\uXXXX key-escape tests in a\n  file whose top-level version is \"1.4\"; resolves file-vs-test version\n  drift.",
          "is_bot": false,
          "headline": "test(fixtures): expand v3.2 conformance coverage",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T08:52:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b7de7e5549b279a8a842f54ba2186c3292127ca8",
          "body": "- VERSIONING.md: add a paragraph distinguishing the MAJOR.MINOR spec\n  version from the MAJOR.MINOR.PATCH SemVer used for published npm\n  artifacts; PATCH releases are packaging/editorial-only.\n- tests/README.md: replace the fixture template's \"3.1\" with a\n  <spec-version> placeholder and add a sent\n[…]\nough quoted because the\n  segments fail the unquoted-key regex, not because of folding logic).\n- Add examples/valid/key-folding-non-identifier.json so the .toon\n  example has a verifiable JSON source.",
          "is_bot": false,
          "headline": "docs: align supporting docs with v3.2",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T08:50:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9bfa3d593d89724c48402e386ba246cbea638d69",
          "body": "NITs (editorial):\n- §6: clarify that the \"one space after colon\" rule is encoder-scoped;\n  decoder whitespace tolerance lives in §12.\n- §7.1 escape table: rephrase Supplementary row to distinguish scalar\n  values from UTF-8 byte sequences and clarify surrogate-pair handling.\n- §7.1 supplementary-cod\n[…]\neyond §1–§16. SPEC.md §1.1 and Appendix C\n  updated accordingly; the [ISO8601] reference is now cited inline\n  at §3 host-type normalization.\n\nCHANGELOG updated to reflect the additional v3.2 changes.",
          "is_bot": false,
          "headline": "chore(spec): v3.2 NITs, header tightenings, §19 removal",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T08:50:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9188200c016a486998fbf3d08ac3738f46d31b41",
          "body": "Apply findings from the dual-stack (Codex + Opus) verification swarm:\n\n- VERSIONING.md: clarify that strict-mode-only tightening is non-breaking\n  (Non-Breaking Changes + carve-out in Conformance Changes). v3.2 adds\n  new strict-mode errors (§6, §14.2, §14.6) under this policy.\n- SPEC.md §8: simplif\n[…]\nsts/fixtures/encode/arrays-objects.json: add encode fixture for\n  arrays containing {} (uses §9.4 expanded list, not tabular).\n\nLint passes; all 22 fixture files validate against fixtures.schema.json.",
          "is_bot": false,
          "headline": "chore(spec): v3.2 verification-swarm follow-ups",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T05:54:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "60df48399003a8f8dda565ef2d0b5ba442657f92",
          "body": "Apply audit findings from the dual-stack (Codex + Opus) review:\n\n- Bump version to 3.2 across SPEC.md, README.md, package.json, VERSIONING.md.\n- §8 / §14.6: define duplicate sibling keys (strict error / non-strict LWW).\n- §9.3: exclude empty objects {} from tabular detection.\n- §14.2: header delimit\n[…]\nple.\n- package.json: add examples/ to files whitelist.\n- CHANGELOG.md: rewritten implementer-focused; drop editorial noise from\n  v3.2 entry and trim notational/informative bullets from older entries.",
          "is_bot": false,
          "headline": "chore(spec): finalize v3.2 release prep",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T05:35:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "87b8848b31def8abab6c8e1e58741d67b7cb0c37",
          "body": null,
          "is_bot": false,
          "headline": "chore: add changelog entry for v3.2",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-19T04:51:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b4313673fce6dbea4e68d479052152127669e2cd",
          "body": "Resolves contradictions and stale references that two prior audit rounds\nmissed. Two parallel codex + Opus swarms (pushed v3.1.0 cluster and\nunpushed v3.2 delta) surfaced 12 findings, deduped and triaged.\n\nNormative fixes:\n- §14.2: align bullet with §6 (strict-mode MUST error; non-strict MAY\n  fall \n[…]\nn is in root-form.json under §5, which is the\n  topical home.\n\nNo runtime regressions; all changes are spec-text-vs-spec-text or\nspec-vs-fixture alignment. Reference implementations remain conformant.",
          "is_bot": false,
          "headline": "fix(spec): round-3 audit fixes for v3.2 normative coherence",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-18T17:18:19Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "41a5c6bd5a6f2c129c249b53561c0a49fdf0383b",
          "body": "Companion to the SPEC.md normative cleanup. Removes duplication\nacross README/CHANGELOG/CONTRIBUTING/VERSIONING/examples-README and\nfixes a stale cross-reference. Total ~140 lines deleted.\n\nREADME.md:\n- Drop \"What is TOON?\" empty callout.\n- Drop \"Reference Implementation\" + \"Community Implementation\n[…]\nquestions.\n\nMissed from the fixtures commit:\n- decode/delimiters.json: remove the \"parses primitive arrays with\n  comma delimiter\" case; byte-identical to decode/arrays-primitive\n  .json's first case.",
          "is_bot": false,
          "headline": "docs: trim non-spec docs and examples README for v3.2",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-18T15:55:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b9f0de2c73fbd71e9e7e2306c138f17cd0055e7b",
          "body": "Adds coverage for cases the spec mandates but no fixture exercised,\nfixes one fixture that used invalid TOON syntax, and aligns the §6\nfall-through fixtures with the v3.2 strict/non-strict split.\n\nCoverage additions:\n- encode/objects: \\uXXXX escape for control characters in quoted keys\n  (U+0004 and\n[…]\nield description to \"earliest TOON spec\n  version at which the behavior tested by this fixture was\n  finalized\". Documents the 1.4/1.5/3.1 drift as authentic\n  provenance rather than an inconsistency.",
          "is_bot": false,
          "headline": "test(fixtures): close v3.1 coverage gaps and align with v3.2 spec",
          "author_name": "Johann Schopplich",
          "author_login": "johannschopplich",
          "committed_at": "2026-05-18T15:50:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        }
      ],
      "releases_count": 21,
      "commits_last_year": 183,
      "latest_release_at": "2026-07-26T09:17:33Z",
      "latest_release_tag": "v4.1.0",
      "releases_from_tags": false,
      "days_since_last_push": 0,
      "active_weeks_last_year": 16,
      "days_since_latest_release": 0,
      "mean_days_between_releases": 25.9
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 87,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "@toon-format/spec",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "toon",
            "format",
            "specification",
            "llm",
            "token-efficiency",
            "data-format"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@toon-format/spec",
          "is_deprecated": false,
          "latest_version": "4.1.0",
          "repository_url": "https://github.com/toon-format/spec",
          "versions_count": 22,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 1020,
          "first_published_at": "2025-11-02T17:13:24.982000Z",
          "latest_published_at": "2026-07-26T09:17:44.505000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 0
        }
      ]
    },
    "popularity": {
      "forks": 35,
      "stars": 320,
      "watchers": 10,
      "fork_history": {
        "days": [
          {
            "date": "2025-11-04",
            "count": 1
          },
          {
            "date": "2025-11-05",
            "count": 1
          },
          {
            "date": "2025-11-07",
            "count": 2
          },
          {
            "date": "2025-11-14",
            "count": 1
          },
          {
            "date": "2025-11-15",
            "count": 1
          },
          {
            "date": "2025-11-16",
            "count": 4
          },
          {
            "date": "2025-11-17",
            "count": 4
          },
          {
            "date": "2025-11-20",
            "count": 1
          },
          {
            "date": "2025-11-22",
            "count": 1
          },
          {
            "date": "2025-11-26",
            "count": 1
          },
          {
            "date": "2025-11-30",
            "count": 1
          },
          {
            "date": "2025-12-07",
            "count": 2
          },
          {
            "date": "2025-12-15",
            "count": 1
          },
          {
            "date": "2026-01-05",
            "count": 1
          },
          {
            "date": "2026-01-07",
            "count": 1
          },
          {
            "date": "2026-01-11",
            "count": 1
          },
          {
            "date": "2026-01-22",
            "count": 1
          },
          {
            "date": "2026-02-12",
            "count": 1
          },
          {
            "date": "2026-03-14",
            "count": 1
          },
          {
            "date": "2026-03-23",
            "count": 1
          },
          {
            "date": "2026-04-09",
            "count": 1
          },
          {
            "date": "2026-04-23",
            "count": 1
          },
          {
            "date": "2026-05-09",
            "count": 1
          },
          {
            "date": "2026-05-17",
            "count": 1
          },
          {
            "date": "2026-05-21",
            "count": 1
          },
          {
            "date": "2026-05-25",
            "count": 1
          },
          {
            "date": "2026-06-16",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 35,
        "total_forks": 35
      },
      "star_history": null,
      "open_issues_and_prs": 4
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [],
      "largest_source_bytes": 169,
      "source_files_sampled": 1,
      "oversized_source_files": 0,
      "agent_instruction_files": [],
      "agent_instruction_max_bytes": null
    },
    "dependencies": {
      "manifests": [
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 2,
        "merged_prs": 4,
        "open_issues": 2,
        "closed_ratio": 0.944,
        "closed_issues": 34,
        "closed_unmerged_prs": 7
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "johannschopplich",
          "commits": 180,
          "avatar_url": "https://avatars.githubusercontent.com/u/27850750?v=4"
        },
        {
          "type": "User",
          "login": "metalshark",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/146708?v=4"
        },
        {
          "type": "User",
          "login": "benJephunneh",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/7783464?v=4"
        },
        {
          "type": "User",
          "login": "milanjaros",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/455194?v=4"
        }
      ],
      "contributors_sampled": 4,
      "top_contributor_share": 0.984
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "release.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [
        "eslint.config.mjs"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": null,
            "reason": "no pull request found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 3,
            "reason": "project has 1 contributing companies or organizations -- score normalized to 3",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "no SAST tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 10,
            "reason": "0 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "f272fb75b124e2fe5b2a7bc0963e5c25eec20f15",
        "ran_at": "2026-07-27T01:12:21Z",
        "aggregate_score": 4,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-26T13:02:55Z",
      "oldest_open_prs": [
        {
          "number": 33,
          "created_at": "2026-02-12T15:48:09Z",
          "last_comment_at": null,
          "last_comment_author": null
        },
        {
          "number": 47,
          "created_at": "2026-04-23T17:43:17Z",
          "last_comment_at": "2026-07-15T09:51:03Z",
          "last_comment_author": "johannschopplich"
        }
      ],
      "last_merged_pr_at": "2026-05-18T11:27:42Z",
      "ci_last_conclusion": "SUCCESS",
      "oldest_open_issues": [
        {
          "number": 48,
          "created_at": "2026-04-23T17:44:22Z",
          "last_comment_at": "2026-07-15T09:50:26Z",
          "last_comment_author": "johannschopplich"
        },
        {
          "number": 58,
          "created_at": "2026-07-22T20:42:18Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/toon-format/spec",
    "host": "github.com",
    "name": "spec",
    "owner": "toon-format"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 64,
      "inputs": {
        "security": 40,
        "vitality": 85,
        "community": 68,
        "governance": 55,
        "engineering": 68
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 85,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "commits_last_year": 183,
              "human_commit_share": 1,
              "days_since_last_push": 0,
              "active_weeks_last_year": 16
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "16/52 weeks with commits",
                "points": 11.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 16
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "183 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 183
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 21,
              "latest_release_tag": "v4.1.0",
              "releases_from_tags": false,
              "days_since_latest_release": 0,
              "mean_days_between_releases": 25.9
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "21 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 21
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 0 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~25.9 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 25.9
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 0,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 0 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 68,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "moderate",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 59,
            "inputs": {
              "forks": 35,
              "stars": 320,
              "watchers": 10,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "320 stars",
                "points": 40.6,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 320
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "35 forks",
                "points": 12.8,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 35
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "10 watchers",
                "points": 5.3,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 50,
            "inputs": {
              "packages": [
                "@toon-format/spec"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 1020
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "1,020 downloads/month across npm",
                "points": 40.1,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 1020,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 55,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 18,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 4,
              "top_contributor_share": 0.984
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 98% of commits",
                "points": 0.4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 98
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "4 contributors",
                "points": 5.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "moderate",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 58,
            "inputs": {
              "merged_prs": 4,
              "open_issues": 2,
              "closed_issues": 34,
              "issue_closed_ratio": 0.944,
              "closed_unmerged_prs": 7
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "94% of issues closed",
                "points": 44.1,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 94
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "4/11 decided PRs merged",
                "points": 13.9,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 4,
                      "decided": 11
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 59,
            "inputs": {
              "followers": 441,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "toon-format",
              "public_repos": 12,
              "account_age_days": 268
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "441 followers of toon-format",
                "points": 19,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 441,
                      "login": "toon-format"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "12 public repos, account ~0 yr old",
                "points": 9.6,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 12
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "@toon-format/spec"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 0
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 0 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 0
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "22 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 22
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 68,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: CI-Tests. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_ci_tests"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 80,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "2 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 2
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": "eslint.config.mjs",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "eslint.config.mjs"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "topics": [],
              "has_wiki": true,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "at_risk",
        "name": "Security",
        "value": 40,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): CI-Tests, Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "ci_tests",
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 40,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 15,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 3,
              "scorecard_aggregate": 4
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "no pull request found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 1 contributing companies or organizations -- score normalized to 3",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "no SAST tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "0 existing vulnerabilities detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 4
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "at_risk",
        "name": "AI Readiness",
        "value": 43,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "at_risk",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [],
              "agent_instruction_max_bytes": null
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "no CLAUDE.md / AGENTS.md / editor rules",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_instructions",
                    "params": {}
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "100 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 100,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "at_risk",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 43,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": false,
              "typed_language": false,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [],
              "agent_commit_share": 0,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": "eslint.config.mjs",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "eslint.config.mjs"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "moderate",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "primary_language": "JavaScript",
              "largest_source_bytes": 169,
              "source_files_sampled": 1,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "JavaScript without a type-check config",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_typecheck_config_language",
                    "params": {
                      "language": "JavaScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/1 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 1,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
    "deps.dev does not index npm:@toon-format/spec@4.1.0; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-27T01:12:27.942826Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/t/toon-format/spec.svg",
  "full_name": "toon-format/spec",
  "license_state": "standard",
  "license_spdx": "MIT"
}

Scores are signals, not warranties. They reflect publicly visible practices on GitHub — not a code audit, and not a security guarantee.

Missing data is excluded and weights renormalized, never scored as zero. Methodology is versioned and open: metrics v1.13.0, schema v0.27.0 — full methodology · metrics wiki.

How one result sits in the wider record: aggregate statisticsnpm.