Публічний реєстр
Звіт про здоров'я програмного забезпеченнясхема 0.27.0 · метрики 1.13.0 · 2026-07-25 00:20 UTC

DeBrosDAO / orama

A robust, decentralized peer-to-peer network built in Go, providing distributed SQL database, key-value storage, pub/sub messaging, and resilient peer management. Designed for applications needing reliable, scalable, and secure data sharing without centralized infrastructure.

Go · TypeScriptAGPL-3.0★ 11 зірок⑂ 3 форкиз вер. 2025 р.Переглянути на GitHub ↗

DeBrosDAO/orama має індекс здоров’я 62 зі 100, що відповідає смузі «Помірний». Найвищий показник — Vitality (86/100), найнижчий — Sustainability & Governance (49/100). Останнє оновлення було 11 днів тому. Більшість нещодавньої роботи виконує один учасник.

62
загалом / 100
Помірний

Індекс здоров'я програмного забезпечення

Метрики згруповано у зважені категорії на шкалі 1–100. Загальна оцінка починається як їхнє середнє; коли публічні дані активують Політику юрисдикцій високого ризику, рейтинг коригується й отримує верхню межу 49 («Під ризиком»). Готовність до ШІ не входить до індексу.

62
Відмінний85-100Зразковий; відповідає практично всім перевіреним критеріям
Добрий70-84Здоровий; незначні прогалини
Помірний50-69Прийнятний, але з помітними прогалинами; рекомендовано перевірку
У зоні ризику30-49Суттєві слабкі місця; впровадження потребує обережності
Критичний1-29Серйозні проблеми (покинутий, єдиний мейнтейнер, без базової гігієни)
ЖиттєздатністьСпільнота тавпровадженняСталість таврядуванняІнженернаякістьБезпекаГотовність доШІ

Профіль оцінок

Кожна вісь — окрема категорія. Форма важить більше, ніж середнє: здоровий об'єкт заповнює всю фігуру, тоді як профіль із піками та провалами означає, що сила в одному вимірі маскує ризик в іншому.

Власність

DeBros DAOОрганізація
6 підписників9 публічних репозиторіївз бер. 2026 р.

За цим репозиторієм стоїть організація — спільна, підзвітна опіка, здатна пережити будь-якого окремого мейнтейнера.

Пакетні екосистеми

РеєстрПакетВерсіяЗавантажень / місВерсіїОстання публікаціяТеги
Gogithub.com/DeBrosOfficial/networkвказує на інший репозиторій — не оцінюєтьсяv0.122.74-16720 днів тому
npm@debros/oramaвказує на інший репозиторій — не оцінюється0.122.80-nightly1 2881818 днів томуdebrosnetworksdktypescriptdatabaserqlitepubsubwebsocketcacheolricipfsstoragewasmserverlessdistributedgatewayvaultsecretsshamirencryptionguardian

Метрики за категоріями

Життєздатність

Чи живий проєкт — чи пишеться код і чи виходять релізи?

86Відмінний · 22% загального індексу
Як обчислюється оцінка
28.8/36Свіжість push — останній push 11 дн. тому
27/36Ритм комітів — 39/52 тижнів із комітами
18/18Обсяг комітів — 1 253 комітів за останній рік
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
Використані вхідні дані
commits_last_year1 253
human_commit_share1
days_since_last_push11
active_weeks_last_year39
Як обчислюється оцінка
27/27Випускає релізи — опубліковано 100 релізів
36/36Свіжість релізів — останній реліз 18 дн. тому
27/27Ритм релізів — реліз кожні ~2,3 дн.
0/10OpenSSF Scorecard: Signed-Releases — Project has not signed or included provenance with any releases.
Використані вхідні дані
releases_count100
latest_release_tagv0.122.80-nightly
releases_from_tagsні
days_since_latest_release18
mean_days_between_releases2,3

Спільнота та впровадження

Чи має проєкт користувачів, завантаження, увагу та влаштовані умови для контриб’юторів?

53Помірний · 18% загального індексу
Як обчислюється оцінка
16.2/60Зірки — 11 зірок
2.5/25Форки — 3 форків
0/15Спостерігачі — 1 спостерігачів
Використані вхідні дані
forks3
stars11
watchers1
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Як обчислюється оцінка
22.5/22.5README
22.5/22.5Ліцензія — визнана ліцензія (AGPL-3.0)
18/18Настанови CONTRIBUTING
13.5/13.5Кодекс поведінки
0/7.2Шаблон issue
6.3/6.3Шаблон PR
Використані вхідні дані
has_readmeтак
has_licenseтак
has_contributingтак
has_issue_templateні
has_code_of_conductтак
has_pull_request_templateтак

Сталість та врядування

Чи переживе проєкт своїх людей — бас-фактор, реактивність, хто за ним стоїть і як супроводжуються пакети?

49У зоні ризику · 24% загального індексу
Як обчислюється оцінка
9/54Бас-фактор — на 1 контриб’ютор(ів) припадає половина всіх комітів
1.4/22.5Розподіл комітів — головний контриб’ютор — автор 94% комітів
4.1/13.5Широта контриб’юторів — 3 контриб’юторів
0/10OpenSSF Scorecard: Contributors — project has 0 contributing companies or organizations -- score normalized to 0
Використані вхідні дані
bus_factor1
contributors_sampled3
top_contributor_share0,94
Як обчислюється оцінка
45.4/46.8Вирішення issue — закрито 97% issue
35.7/38.3Прийняття PR — злито 56/60 вирішених PR
15/15OpenSSF Scorecard: Code-Review — all changesets reviewed
Використані вхідні дані
merged_prs56
open_issues1
closed_issues34
issue_closed_ratio0,971
closed_unmerged_prs4

Власність та опіка

44У зоні ризику
Як обчислюється оцінка
30/30Підтримка власника — у власності організації
0/20Верифікований домен
6.1/25Охоплення власника — 6 підписників у DeBrosDAO
8.1/25Послужний список — 9 публічних репозиторіїв, вік облікового запису ~0 р.
Використані вхідні дані
followers6
owner_typeOrganization
is_verified
owner_loginDeBrosDAO
public_repos9
account_age_days143

Інженерна якість

Чи наявні базові інженерні практики та документація?

63Помірний · 20% загального індексу
Як обчислюється оцінка
24/24Процеси CI — 5 процес(ів) CI
24/24Наявні тести
0/16Конфігурація лінтера
0/9.6Pre-commit-хуки
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 3 out of 3 merged PRs checked by a CI test -- score normalized to 10
Використані вхідні дані
has_ciтак
has_testsтак
has_editorconfigні
has_linter_configні
has_precommit_configні

Документація

55Помірний
Як обчислюється оцінка
30/30README
0/25Каталог документації
15/15Сайт документації / домашня сторінка — https://orama.network
10/10Опис репозиторію
0/10Теми
0/10Wiki
Використані вхідні дані
topics
has_wikiні
homepagehttps://orama.network
has_readmeтак
has_docs_dirні
has_descriptionтак

Безпека

Чи міцні видимі практики безпеки й ланцюга постачання, без непослабленої пов’язаності з юрисдикціями високого ризику?

58Помірний · 16% загального індексу

Стан безпеки

47У зоні ризику
Як обчислюється оцінка
6/7.5Binary-Artifacts — binaries present in source code
0.8/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 3 out of 3 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
7.5/7.5Code-Review — all changesets reviewed
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Ліцензія — license file detected
7.5/7.5Maintained — 30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 192 existing vulnerabilities detected
Використані вхідні дані
sourceopenssf_scorecard
checks_evaluated18
scorecard_versionv5.5.0
checks_inconclusive0
scorecard_aggregate4,7
Як обчислюється оцінка
35/35Прямі залежності без відомих сповіщень — жодна пряма залежність не має відомих сповіщень
25/25Непрямі залежності без відомих сповіщень — жодна непряма залежність не має відомих сповіщень
0/40Немає задавнених сповіщень — жодне сповіщення не має дати публікації
Використані вхідні дані
sourceosv
advisories0
affected_packages0
assessed_packages3
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Виключено з оцінювання (немає даних або не застосовно): Немає задавнених сповіщень. Залишкові ваги перенормовано. Звірено з runtime-замиканням залежностей npm:@debros/orama@0.122.80-nightly — тим, що тягне за собою встановлення опублікованого пакета, — 3 пакетів. Досяжність не аналізується.

Готовність до ШІ

Наскільки репозиторій оснащений для розробки та супроводу за участі ШІ-агентів? Незалежний, експериментальний бейдж — вага 0.0, тож він подається окремо і не впливає на загальний індекс здоров'я.

71Добрий · 0% загального індексу
Як обчислюється оцінка
45/45Інструкції для агентів — .github/copilot-instructions.md, AGENTS.md, CLAUDE.md
0/15Машиночитана документація (llms.txt)
40/40Читабельна історія комітів — намір зазначено у 98 з 100 людських комітів (структурований заголовок або пояснювальний текст)
Використані вхідні дані
has_llms_txtні
legible_history_share0,98
agent_instruction_files.github/copilot-instructions.md, AGENTS.md, CLAUDE.md
agent_instruction_max_bytes536
Як обчислюється оцінка
18/18Розгортання однією командою — Makefile, core/Makefile, os/Makefile
22/22Автоматизовані тести
0/11Конфігурація лінтера / форматера
11/11Статична перевірка типів — sdk/tsconfig.json, website/tsconfig.json
10/10Відтворюване середовище — lockfile
0/10Підтверджена практика роботи з агентами — серед останніх 100 комітів немає створених агентом
0/8Автоматизоване супроводження — автоматичних оновлень залежностей не виявлено
0/10OpenSSF Scorecard: Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
Використані вхідні дані
has_nixні
has_testsтак
lockfilesgo.sum, package-lock.json, pnpm-lock.yaml
has_dockerfileні
typed_languageтак
bootstrap_filesMakefile, core/Makefile, os/Makefile
has_devcontainerні
has_linter_configні
typecheck_configssdk/tsconfig.json, website/tsconfig.json
agent_commit_share0
toolchain_manifestscore/go.mod, core/testdata/apps/go-api/go.mod, os/agent/go.mod, website/invest-api/go.mod
dependency_bot_commit_share0
Як обчислюється оцінка
45/45Типізований код — Go (статично типізована)
54.9/55Керовані розміри файлів — 3/1 146 файлів вихідного коду понад 60 КБ
Використані вхідні дані
primary_languageGo
largest_source_bytes97 691
source_files_sampled1 146
oversized_source_files3
Як обчислюється оцінка
0/40Схема API (OpenAPI/GraphQL/proto)
0/20Сервер MCP
40/40Придатні до запуску приклади — examples
Використані вхідні дані
example_dirsexamples
has_mcp_signalні
api_schema_files

Ключові факти

11зірок GitHub
3контриб'юторів
1 253комітів за останні 12 місяців
11днів від останнього пушу
100релізів
1бас-фактор
1відкритих issue
Go, npmпакетних екосистем

Попередження щодо збору даних

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • go package 'github.com/DeBrosOfficial/network' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring
  • npm package '@debros/orama' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring
  • Could not fetch go package 'github.com/DeBrosOfficial/orama-os/agent' from its registry
  • Could not fetch go package 'github.com/debros/orama-website/invest-api' from its registry
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Докладніше

Історія зірок і форків 0 ★ / 3 ⇿
0Зірки
3Форки
92Релізи

Коли додано кожну зірку й форк — зібрано з GitHub і згруповано за днями. Кумулятивне зростання розміщено просто над денними додаваннями, з яких воно складається, тож їх видно одне проти одного: рівномірне органічне накопичення виглядає зовсім інакше, ніж різкий короткочасний сплеск. Там, де цю різницю можна виміряти, її подано як автентичність росту.

12233312025-112026-032026-06
Мажорні 0Мінорні 3Патчі 7
OpenSSF Scorecard 4.7 / 10
4.7сукупно

Незалежна, не прив'язана до інструментів оцінка безпеки від відкритого проєкту OpenSSF Scorecard. Кожна перевірка винагороджує практику безпеки, а не інструмент конкретного постачальника. Перевірки, які Scorecard не зміг визначити, позначено н/д і виключено з оцінки безпеки (вони ніколи не зараховуються як нуль).Scorecard v5.5.0 · 2026-07-25 00:19 UTC

8Binary-Artifactsbinaries present in source code
1Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests3 out of 3 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
10Code-Reviewall changesets reviewed
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities192 existing vulnerabilities detected
Прямі залежності 72
РеєстрПакетОбмеження версіїМаніфест
Gogithub.com/charmbracelet/bubblesv0.20.0core/go.mod
Gogithub.com/charmbracelet/bubbleteav1.2.4core/go.mod
Gogithub.com/charmbracelet/lipglossv1.0.0core/go.mod
Gogithub.com/coredns/caddyv1.1.4core/go.mod
Gogithub.com/coredns/corednsv1.12.1core/go.mod
Gogithub.com/ethereum/go-ethereumv1.13.14core/go.mod
Gogithub.com/go-chi/chi/v5v5.2.3core/go.mod
Gogithub.com/google/uuidv1.6.0core/go.mod
Gogithub.com/gorilla/websocketv1.5.4-0.20250319132907-e064f32e3674core/go.mod
Gogithub.com/libp2p/go-libp2pv0.41.1core/go.mod
Gogithub.com/libp2p/go-libp2p-pubsubv0.14.2core/go.mod
Gogithub.com/mackerelio/go-osstatv0.2.6core/go.mod
Gogithub.com/mattn/go-sqlite3v1.14.32core/go.mod
Gogithub.com/mdp/qrterminal/v3v3.2.1core/go.mod
Gogithub.com/miekg/dnsv1.1.70core/go.mod
Gogithub.com/multiformats/go-multiaddrv0.16.0core/go.mod
Gogithub.com/olric-data/olricv0.7.0core/go.mod
Gogithub.com/pion/interceptorv0.1.40core/go.mod
Gogithub.com/pion/rtcpv1.2.15core/go.mod
Gogithub.com/pion/turn/v4v4.0.2core/go.mod
Gogithub.com/pion/webrtc/v4v4.1.2core/go.mod
Gogithub.com/rqlite/gorqlitev0.0.0-20250609141355-ac86a4a1c9a8core/go.mod
Gogithub.com/sideshow/apns2v0.25.0core/go.mod
Gogithub.com/spf13/cobrav1.10.2core/go.mod
Gogithub.com/stretchr/testifyv1.11.1core/go.mod
Gogithub.com/tetratelabs/wazerov1.11.0core/go.mod
Gogo.uber.org/zapv1.27.0core/go.mod
Gogolang.org/x/cryptov0.47.0core/go.mod
Gogolang.org/x/netv0.49.0core/go.mod
Gogolang.org/x/syncv0.19.0core/go.mod
Gogopkg.in/yaml.v2v2.4.0core/go.mod
Gogopkg.in/yaml.v3v3.0.1core/go.mod
npm@noble/ciphers^0.5.3sdk/package.json
npm@noble/hashes^1.4.0sdk/package.json
npmisomorphic-ws^5.0.0sdk/package.json
npm@gsap/react^2.1.2website/package.json
npm@mdx-js/react^3.1.1website/package.json
npm@radix-ui/react-accordion^1.2.12website/package.json
npm@radix-ui/react-dialog^1.1.15website/package.json
npm@radix-ui/react-dropdown-menu^2.1.16website/package.json
npm@radix-ui/react-navigation-menu^1.2.14website/package.json
npm@radix-ui/react-slot^1.2.4website/package.json
npm@radix-ui/react-tabs^1.1.13website/package.json
npm@radix-ui/react-tooltip^1.2.8website/package.json
npm@react-three/drei^10.7.7website/package.json
npm@react-three/fiber^9.5.0website/package.json
npm@solana/wallet-adapter-base^0.9.27website/package.json
npm@solana/wallet-adapter-react^0.15.39website/package.json
npm@solana/wallet-adapter-react-ui^0.9.39website/package.json
npm@solana/wallet-adapter-wallets^0.19.37website/package.json
npm@solana/web3.js^1.98.4website/package.json
npmclass-variance-authority^0.7.0website/package.json
npmclsx^2.1.0website/package.json
npmethers^6.16.0website/package.json
npmgsap^3.14.2website/package.json
npmlightweight-charts^5.1.0website/package.json
npmlucide-react^0.511.0website/package.json
npmmermaid^11.12.3website/package.json
npmreact^19.1.0website/package.json
npmreact-dom^19.1.0website/package.json
npmreact-router^7.6.1website/package.json
npmrehype-slug^6.0.0website/package.json
npmremark-gfm^4.0.1website/package.json
npmshiki^4.0.0website/package.json
npmtailwind-merge^3.3.0website/package.json
npmthree^0.183.2website/package.json
Gogolang.org/x/cryptov0.48.0os/agent/go.mod
Gogithub.com/ethereum/go-ethereumv1.15.11website/invest-api/go.mod
Gogithub.com/golang-jwt/jwt/v5v5.2.2website/invest-api/go.mod
Gogithub.com/joho/godotenvv1.5.1website/invest-api/go.mod
Gogithub.com/mattn/go-sqlite3v1.14.37website/invest-api/go.mod
Gogithub.com/mr-tron/base58v1.2.0website/invest-api/go.mod
Усі залежності не зібрано

Не вдалося зібрати розв'язаний набір залежностей для цього звіту: GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

Сповіщення про залежності 0

Встановлення npm:@debros/orama@0.122.80-nightly тягне 3 пакетів, прямих і транзитивних: 0 мають відомі сповіщення, з них 0 — прямі залежності.

Жодне відоме сповіщення не стосується оцінених залежностей.

Сповіщення означає, що версія, записана в графі залежностей, потрапляє в уражений діапазон. Досяжність не аналізується, а граф містить піниї розробки й тестування — знахідка може стосуватися інструментів, а не поставленого коду.

Звіт у форматі JSON машиночитний
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 1862984,
      "has_wiki": false,
      "homepage": "https://orama.network",
      "languages": {
        "Go": 6205732,
        "CSS": 6174,
        "MDX": 266774,
        "Zig": 291592,
        "HTML": 2219,
        "Shell": 42836,
        "PLpgSQL": 51839,
        "Makefile": 10298,
        "TypeScript": 988196
      },
      "pushed_at": "2026-07-13T12:20:17Z",
      "created_at": "2025-09-17T13:50:34Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-04T17:47:32Z",
      "description": "A robust, decentralized peer-to-peer network built in Go, providing distributed SQL database, key-value storage, pub/sub messaging, and resilient peer management. Designed for applications needing reliable, scalable, and secure data sharing without centralized infrastructure.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "AGPL-3.0",
      "default_branch": "main",
      "license_spdx_raw": "AGPL-3.0",
      "primary_language": "Go",
      "significant_languages": [
        "Go",
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "https://debros.io",
      "name": "DeBros DAO",
      "type": "Organization",
      "login": "DeBrosDAO",
      "company": null,
      "location": null,
      "followers": 6,
      "avatar_url": "https://avatars.githubusercontent.com/u/265243004?v=4",
      "created_at": "2026-03-03T09:57:18Z",
      "is_verified": null,
      "public_repos": 9,
      "account_age_days": 143
    },
    "license": {
      "state": "standard",
      "spdx_id": "AGPL-3.0",
      "raw_spdx": "AGPL-3.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.122.80-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-06T19:18:45Z"
        },
        {
          "tag": "v0.122.79-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-06T18:24:01Z"
        },
        {
          "tag": "v0.122.78-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-06T08:53:41Z"
        },
        {
          "tag": "v0.122.77-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-04T20:56:49Z"
        },
        {
          "tag": "v0.122.74",
          "kind": "patch",
          "published_at": "2026-07-04T17:54:31Z"
        },
        {
          "tag": "v0.122.74-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-04T17:46:56Z"
        },
        {
          "tag": "v0.122.73-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-04T17:31:57Z"
        },
        {
          "tag": "v0.122.68",
          "kind": "patch",
          "published_at": "2026-07-02T10:52:01Z"
        },
        {
          "tag": "v0.122.60-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-16T15:48:27Z"
        },
        {
          "tag": "v0.122.59-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T19:01:22Z"
        },
        {
          "tag": "v0.122.58-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T11:49:36Z"
        },
        {
          "tag": "v0.122.57-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T10:57:55Z"
        },
        {
          "tag": "v0.122.56-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T08:23:27Z"
        },
        {
          "tag": "v0.122.55-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T05:08:43Z"
        },
        {
          "tag": "v0.122.54-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-13T06:28:00Z"
        },
        {
          "tag": "v0.122.51-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-12T13:51:06Z"
        },
        {
          "tag": "v0.122.50-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-12T07:16:34Z"
        },
        {
          "tag": "v0.122.49-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-12T05:08:23Z"
        },
        {
          "tag": "v0.122.47",
          "kind": "patch",
          "published_at": "2026-06-11T14:43:48Z"
        },
        {
          "tag": "v0.122.47-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-11T08:50:04Z"
        },
        {
          "tag": "v0.122.46-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-11T07:10:37Z"
        },
        {
          "tag": "v0.122.45-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-11T05:03:56Z"
        },
        {
          "tag": "v0.122.44-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-10T09:17:30Z"
        },
        {
          "tag": "v0.122.43-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-09T13:01:48Z"
        },
        {
          "tag": "v0.122.42-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-09T10:05:42Z"
        },
        {
          "tag": "v0.122.41-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-09T06:29:08Z"
        },
        {
          "tag": "v0.122.40-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-04T07:12:57Z"
        },
        {
          "tag": "v0.122.39-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-02T12:11:00Z"
        },
        {
          "tag": "v0.122.38-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-01T07:17:19Z"
        },
        {
          "tag": "v0.122.37-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-30T16:31:22Z"
        },
        {
          "tag": "v0.122.36-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-30T11:45:53Z"
        },
        {
          "tag": "v0.122.35-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-29T09:13:25Z"
        },
        {
          "tag": "v0.122.34-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-28T06:59:46Z"
        },
        {
          "tag": "v0.122.33-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-25T07:29:49Z"
        },
        {
          "tag": "v0.122.32-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-25T06:39:09Z"
        },
        {
          "tag": "v0.122.31-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-24T18:01:49Z"
        },
        {
          "tag": "v0.122.30-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-24T16:43:33Z"
        },
        {
          "tag": "v0.122.29-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-23T09:53:57Z"
        },
        {
          "tag": "v0.122.28-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-21T12:57:56Z"
        },
        {
          "tag": "v0.122.27-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-19T15:23:25Z"
        },
        {
          "tag": "v0.122.26-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-18T07:46:45Z"
        },
        {
          "tag": "v0.122.25-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-16T12:47:14Z"
        },
        {
          "tag": "v0.122.24-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T10:40:41Z"
        },
        {
          "tag": "v0.122.23-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T09:00:21Z"
        },
        {
          "tag": "v0.122.22-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T07:44:26Z"
        },
        {
          "tag": "v0.122.21-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T06:05:39Z"
        },
        {
          "tag": "v0.122.20-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T04:07:22Z"
        },
        {
          "tag": "v0.122.19-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T14:57:50Z"
        },
        {
          "tag": "v0.122.18-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T11:33:49Z"
        },
        {
          "tag": "v0.122.17-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T09:20:35Z"
        },
        {
          "tag": "v0.122.16-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T08:55:30Z"
        },
        {
          "tag": "v0.122.15-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T08:49:05Z"
        },
        {
          "tag": "v0.122.14-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T07:53:06Z"
        },
        {
          "tag": "v0.122.13-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T04:50:59Z"
        },
        {
          "tag": "v0.122.12-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-13T12:42:09Z"
        },
        {
          "tag": "v0.122.11-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T08:10:21Z"
        },
        {
          "tag": "v0.122.10",
          "kind": "patch",
          "published_at": "2026-05-12T07:19:12Z"
        },
        {
          "tag": "v0.122.9",
          "kind": "patch",
          "published_at": "2026-05-12T07:02:15Z"
        },
        {
          "tag": "v0.122.9-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:55:09Z"
        },
        {
          "tag": "v0.122.8-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:49:43Z"
        },
        {
          "tag": "v0.122.7-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:43:03Z"
        },
        {
          "tag": "v0.122.6-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:37:41Z"
        },
        {
          "tag": "v0.122.5-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:33:08Z"
        },
        {
          "tag": "v0.122.4-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:30:37Z"
        },
        {
          "tag": "v0.122.3-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:20:14Z"
        },
        {
          "tag": "v0.122.2-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-07T04:34:40Z"
        },
        {
          "tag": "v0.122.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-05T09:37:21Z"
        },
        {
          "tag": "v0.120.0",
          "kind": "minor",
          "published_at": "2026-03-26T16:45:02Z"
        },
        {
          "tag": "v0.115.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-03-24T13:02:54Z"
        },
        {
          "tag": "v0.112.6-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-24T07:18:57Z"
        },
        {
          "tag": "v0.112.1-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-22T09:44:53Z"
        },
        {
          "tag": "v0.111.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-21T06:50:43Z"
        },
        {
          "tag": "v0.107.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-16T08:35:22Z"
        },
        {
          "tag": "v0.102.5-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-12T07:56:44Z"
        },
        {
          "tag": "v0.102.2-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-11T13:16:46Z"
        },
        {
          "tag": "v0.102.1-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-11T09:30:36Z"
        },
        {
          "tag": "v0.101.6-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-11T04:48:53Z"
        },
        {
          "tag": "v0.101.3-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-09T14:01:29Z"
        },
        {
          "tag": "v0.101.2-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-09T13:43:50Z"
        },
        {
          "tag": "v0.90.0",
          "kind": "minor",
          "published_at": "2026-01-20T08:20:03Z"
        },
        {
          "tag": "v0.90.0-nigthly",
          "kind": "prerelease",
          "published_at": "2026-01-20T08:19:40Z"
        },
        {
          "tag": "v0.82.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-01-05T18:03:47Z"
        },
        {
          "tag": "v0.72.3",
          "kind": "patch",
          "published_at": "2025-12-15T13:08:05Z"
        },
        {
          "tag": "v0.72.2",
          "kind": "patch",
          "published_at": "2025-12-09T05:31:09Z"
        },
        {
          "tag": "v0.72.1-nightly",
          "kind": "prerelease",
          "published_at": "2025-12-09T05:26:36Z"
        },
        {
          "tag": "v0.72.0",
          "kind": "minor",
          "published_at": "2025-11-28T20:32:39Z"
        },
        {
          "tag": "v0.72.0-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-28T20:30:58Z"
        },
        {
          "tag": "v0.69.23",
          "kind": "patch",
          "published_at": "2025-11-26T14:17:33Z"
        },
        {
          "tag": "v0.69.22-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:34:24Z"
        },
        {
          "tag": "v0.69.21-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:22:16Z"
        },
        {
          "tag": "v0.69.20-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:13:03Z"
        },
        {
          "tag": "v0.69.19-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:04:45Z"
        },
        {
          "tag": "v0.69.18-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-21T12:02:22Z"
        },
        {
          "tag": "v0.69.13",
          "kind": "patch",
          "published_at": "2025-11-14T07:05:17Z"
        },
        {
          "tag": "v0.69.13-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-14T07:01:15Z"
        },
        {
          "tag": "v0.69.12-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-14T05:16:44Z"
        },
        {
          "tag": "v0.69.10-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-13T05:24:20Z"
        },
        {
          "tag": "v0.69.9-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-12T07:17:36Z"
        },
        {
          "tag": "v0.69.5-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-11T15:11:49Z"
        },
        {
          "tag": "v0.69.4-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-11T14:26:35Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "4a538ca07ad8c2980b8af94fe26f2e1c96961509",
          "body": "Nightly",
          "is_bot": false,
          "headline": "Merge pull request #96 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:47:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5e5d479968cdb0096697e5347da38948bb9b712d",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.74",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:42:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e477a761ab6b2949b91b27d0f4e0c781ac1873b",
          "body": "…gers SDK + APT publish",
          "is_bot": false,
          "headline": "ci(release): use RELEASE_PAT for GoReleaser so the release event trig…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:42:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "444546f8f12678760feb798ec95839c6ecc56336",
          "body": "Nightly",
          "is_bot": false,
          "headline": "Merge pull request #95 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:36:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0aac3b0b73251fee6ee805a03667fa41d53c2498",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.73",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:28:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "004639d3d28e0405b93ba07ef4c1330f7fd95ed2",
          "body": "- Add `revoked_at` column to `api_keys` table for soft-revocation\n- Add `keys` CLI command group for creating, listing, and revoking keys\n- Switch vault builder to `zig build-exe` to avoid host runner link errors\n- Bump version to 0.122.72",
          "is_bot": false,
          "headline": "feat(core): implement scoped API key management",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:25:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1bb294260f7df09ffd7b18ab86a69777ffbef07d",
          "body": "Nightly",
          "is_bot": false,
          "headline": "Merge pull request #94 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-02T10:49:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "881594d3b0e66d09eba302c05d005f54759ff2c8",
          "body": "- Add pre-flight check to resolve and validate the leader's raft address\n- Implement leader-only config reset by replacing raft.db with a single-node peers.json\n- Update follower recovery to perform a full state wipe, ensuring clean re-joins\n- Add base64 encoding for SSH commands to prevent shell-quoting issues",
          "is_bot": false,
          "headline": "feat(recover): implement robust rqlite raft cluster recovery",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-02T10:48:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "93556ab786ee89ee611daaebb5ee0dfb96d9a121",
          "body": "…ety)\n\nIncident 2026-06-24: scheduled IPFS GC (0.122.67) deleted the WASM of 14 active\nfunctions that were never durably pinned (old uploadWASM only warn-logged pin\nfailures). 0.122.68 fixed the deploy path (pin-everywhere + hard-fail); this\nadds the missing piece for EXISTING functions:\n\n- Registry\n[…]\n naturally staggers it and the cluster dedups pins.\n\nSo GC can never again reclaim function WASM. (The currently-deleted 14 still need\nan AnChat re-deploy — their bytes are gone; tracked on bug #137.)",
          "is_bot": false,
          "headline": "fix(serverless): startup backfill to re-pin all function WASM (GC-saf…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-24T09:16:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "12ece71b87e47cd96878c30e1bd8ddc3c5b53f4c",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.68",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-24T05:51:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dc7abbcc51a77d3ed598151d49ce1991d4412b29",
          "body": "…none-reads\n\nThree anchat-priority fixes for delivery-critical paths.\n\n#137 — rarely-invoked function WASM cold-fetch timed out (15s) → INVOKE_FAILED\nwith no retryable flag:\n- uploadWASM now pins WASM on EVERY cluster peer (replication=-1) so no gateway\n  node is ever cold, and HARD-FAILS the deploy\n[…]\nward compatible (empty freshness = prior behavior).\nVerified live on devnet: rqlite v8.43.0 signals a violation as HTTP 200 +\n{\"error\":\"stale read\"}; /status is reachable unauthenticated for the gate.",
          "is_bot": false,
          "headline": "fix(serverless,rqlite): reliable WASM cold-fetch + bounded-staleness …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-24T05:51:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6a134248bda29ab478fad5b95fcd6f182f643b3d",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.67",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-23T06:59:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a0e0ef071df51b19fb4b087b8231974a9941cde6",
          "body": "The IPFS daemon runs without --enable-gc and nothing scheduled `ipfs repo\ngc`, so unpinned blocks were never reclaimed — unpin freed zero disk.\nDatastore.StorageMax was also the unconfigured kubo default of 10GB on\nevery node regardless of disk size.\n\n- Add orama-ipfs-gc.service (one-shot `ipfs repo\n[…]\nly via InitializeRepo (runs in Phase2c post-reexec, so it\n  lands on the same upgrade).\n\nUnblocks AnChat attachment-storage design (change-136): retention-based\nunpin now actually reclaims node space.",
          "is_bot": false,
          "headline": "feat(ipfs): scheduled repo GC + disk-aware StorageMax",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-23T06:59:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b74f92b1a008ee8a0beed58bf7fea1235f845063",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.66",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T16:08:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "deb94c071c73515ac243ae2e7c493d40109edd4a",
          "body": "…ence (#858)\n\nThe shared ntfy push tier runs an independent instance per node with NO\ncross-node shared state, so a publish and a long-lived subscriber that\nround-robin DNS sends to different instances never meet (measured live: 5/5\nsame-node, 0/5 cross-node). The gateway fan-out compensates for the\n[…]\nlicates (the fan-out still reaches that node). Contained to the DNS layer —\nno changes to the :443/Caddy/ntfy data path. Unit-tested: lowest-IP pick,\nfailover+prune, no-healthy-ns safety, idempotency.",
          "is_bot": false,
          "headline": "fix(push): pin push.<domain> to one healthy nameserver for ntfy coher…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T16:08:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "81b727467e88ccf12493bdd4a2954e123571fde7",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.65",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T13:30:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e44a22a3b46d598d994629e93da104acf8b0350",
          "body": "…(#981)\n\nLive verification on anchat-test caught two real bugs the sqlite3 unit tests\nmissed:\n\n1. Eviction ordered by SQLite rowid (insertion order) was WRONG: when an\n   existing account RE-registers its token (a CONFLICT/UPDATE), its row keeps its\n   original low rowid, so 'DELETE ... rowid < keep\n[…]\ntest seeding pre-existing duplicates + re-registering.\n\n2. The token_fp backfill raced migration 033 at gateway startup ('no such\n   column') and failed permanently. Retry until the migration applies.",
          "is_bot": false,
          "headline": "fix(push): evict by id (recency), not rowid; retry token_fp backfill …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T13:30:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7280adef2fc431035a1966994fd2e6bf5c9808ec",
          "body": "The fanout's hub->target scp/ssh used the forwarded agent, which offers ALL\nnode keys; once the offered count exceeds the target sshd's MaxAuthTries\n(default 6) the connection is rejected with 'too many authentication failures',\nso fanout to most nodes failed. Stage each target's key on the hub and connect\nwith '-i <key> -o IdentitiesOnly=yes' (one key, like the working direct path);\nkeys are chmod 600 and removed when the fanout ends. Restores fast one-upload +\ncluster-distribution deploys.",
          "is_bot": false,
          "headline": "fix(cli): stage per-target keys on hub for fanout (avoid MaxAuthTries)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T12:34:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84654f81769cf4d48082d77a205960954b07a0e6",
          "body": "extractOnNode removed the uploaded tarball with 'rm -f' immediately after\nextraction — including on the hub. The fanout step then scp'd that now-deleted\narchive from the hub to every other node, so every fanout deploy failed\n('scp: stat local ...: No such file') and fell back to slow per-node direct\nuploads. Keep the archive on the hub until the fanout completes, then remove it.\nRestores one-upload + cluster-distribution deploys.",
          "is_bot": false,
          "headline": "fix(cli): keep archive on hub during fanout push",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:29:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18f8f2dd2eeaad089bde2c8fc4bd2edd55872bba",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.64",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:25:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ab1841babbe9707b835062c09baf134ec5ff6be0",
          "body": "…#898 review)\n\nCode-review MEDIUM: a warmer goroutine completing AFTER its pool was torn down\n(Invalidate on redeploy / LRU-evict / Close) sent its instance into a detached\nchannel that nothing drains -> the wazero instance was never Closed (a slow\nresource leak recurring on every redeploy/eviction;\n[…]\nnt invocation's singleton identity. And a reactor pool MISS (cold\nfallback) now records its instantiate duration into the bugboard #27 slow-invoke\ndiagnostic instead of mis-reporting instantiate_ms=0.",
          "is_bot": false,
          "headline": "fix(serverless): close reactor instances warmed after pool teardown (…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:16:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0371c973186bba3755f269645227066751861e45",
          "body": "…rt (#898)\n\nEvery stateless invocation re-instantiates the module, running TinyGo's\n_start/_initialize runtime init on the request's critical path (~550ms for\ncomplex functions). Add a reactor-mode path: a function built -buildmode=c-shared\nthat exports handle(ptr,len)->packed is served from a per-m\n[…]\nml reactor:true (build flag) + the handle export. Per-call\nidentity rides ctx (WithInvocationContext); the reactor contract requires init()\nto be identity-independent (do per-caller work in handle()).",
          "is_bot": false,
          "headline": "feat(serverless): reactor-mode pre-warm pool — remove ~550ms cold-sta…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:10:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "08cf4185615f8dc1b87e9efc8bb8886fe5b076a1",
          "body": "…ilds)\n\nThe stale 0.14.0 pin does not compile vault-guardian: 0.14.0 fails with\n'expected 32 array elements' on src/main.zig and 0.16.0 fails with\n'GeneralPurposeAllocator' removed. 0.15.2 cross-compiles cleanly to\nx86_64-linux-musl (verified). This unblocks a full-stack 'orama node rollout'\nfrom a fresh checkout (AnChat #1230/#1233).",
          "is_bot": false,
          "headline": "fix(vault): pin zig toolchain to 0.15.2 (the version that actually bu…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T06:47:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fe43c712cb4ca00134513b031d7b627fa1651bcf",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.63",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T06:42:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9b59cd6c3e40894cc53fb4bddce8e87c397698b7",
          "body": "When a device registers a (device_id, token) under user W, evict any OTHER\npush_devices row in the same namespace carrying the SAME physical token, so one\nAPNs/VoIP token maps to a single active owner. Fixes the cross-account leak\nwhere a second account on one device coexisted on the same physical t\n[…]\nuccessful registration.\n\nAlso return {status,id,device_id} on register (ask 2) so a client can DELETE\ndirectly without GET-then-match; one-time best-effort backfill of token_fp for\npre-migration rows.",
          "is_bot": false,
          "headline": "feat(push): token-exclusive device registration + return row id (#981)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T06:42:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "91ac2c1fa7091f421a8f5d51a5b10c385d63475e",
          "body": "…nto nightly",
          "is_bot": false,
          "headline": "Merge branch 'nightly' of https://github.com/DeBrosOfficial/network i…",
          "author_name": "JohnySigma",
          "author_login": "JohnySigma",
          "committed_at": "2026-06-19T16:10:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad766880b31ee854876950d5d5d1a53e00d10ca5",
          "body": "…er active user)\n\npush_devices Upsert now evicts rows owned by a different user for the same\nnamespace and device_id after a successful upsert. A physical device push token\nbelongs to exactly one signed-in identity at a time; without this a previous\naccount that signed in on the device keeps a live \n[…]\ntenant rows), best-effort (logs, never\nfails registration), matches plaintext device_id since the token is AES-GCM\nencrypted. Auto-cleans pre-existing orphans on the next sign-in. Tracked as\nfeat-135.",
          "is_bot": false,
          "headline": "feat(push): token-exclusive device registration (one physical token p…",
          "author_name": "JohnySigma",
          "author_login": "JohnySigma",
          "committed_at": "2026-06-19T16:06:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "47ef9f990d4be48b88723bb66ec31411387335a3",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.62",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T08:28:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4790c9ac3f892fc884fbbc9916192fb8889fb15",
          "body": "…rama-node (#846)\n\nThe upgrade runs Phase6bSetupFirewall ('ufw --force reset' + base rules) as\nroot, wiping the TURN relay ports on every upgrade. orama-node runs as a\nnon-root user and CANNOT modify ufw, so the restore-path EnsureTURNFirewall I\nfirst added was a no-op (a doomed 'ufw' call). Move th\n[…]\npFirewall: ps.hostRunsTURN() -> TURNEnabled + relay range\n- remove the non-root EnsureTURNFirewall (restore path + method)\n- tests: hostRunsTURN env-file detection + non-TURN node opens no relay ports",
          "is_bot": false,
          "headline": "fix(turn): re-open TURN relay ports in the root firewall setup, not o…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T08:28:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "29064ed0e61a62c9966d7988d79ee1893ac06d09",
          "body": "…from message_id (#833)\n\nThread an optional MessageID through PushMessage -> the APNs apns-collapse-id\nheader (capped at 64 bytes) and Expo's collapseId field (which Expo maps to FCM\ncollapse_key / APNs apns-collapse-id). A superseded or duplicate push now\ncollapses on-device instead of stacking. Empty MessageID preserves the prior\nbehavior (each push distinct). No native FCM send provider exists, so the FCM\ncollapse_key is covered via the Expo path.",
          "is_bot": false,
          "headline": "feat(push): collapse identifier (apns-collapse-id / Expo collapseId) …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:45:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b5f09df60a95123d67d870e8a7e8d8851d58d28e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.61",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:20:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c67321d486d04ffb1b171819c6a06f342942e99f",
          "body": "…logging (#858)\n\n- ntfy keepalive-interval 45s->25s: the default is too long for aggressive\n  carrier NATs that silently drop idle long-lived /json streams (open-but-silent)\n- fan-out partial-failure log now names the failed node IPs + a topic fingerprint\n  (hashed, not the subscribable topic) so a lost push is diagnosable",
          "is_bot": false,
          "headline": "fix(push): tune ntfy keepalive for mobile NATs + diagnosable fan-out …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:18:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d759826bd41326d6e5621e836e071ac2a5a54e92",
          "body": "…irewall (#846)\n\nThe boot-time TURN restore path passed PublicIP:\"\" (with a false \"spawner\nresolves it\" comment), so a TURN node that rebooted came back crash-looping on\n\"turn.public_ip: must not be empty\" — yielding zero ICE relay candidates AND\nnever reaching AddWebRTCRules, so the relay UDP ports\n[…]\nublic_ip loudly instead of writing a doomed config\n- relay firewall rules re-ensured on every boot (idempotent) so a node-level\n  'ufw --force reset' that wiped them while TURN kept running self-heals",
          "is_bot": false,
          "headline": "fix(turn): resolve node public IP on TURN restore + self-heal relay f…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:18:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5624ef0faa2cb07febeb8b049da2885173f88a05",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.60",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T20:08:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3b2f08a0a5c0615c6e593987cdcb6ff8ca09eaf",
          "body": "… activates (#858)\n\nThe ntfy fan-out (publish each push to every active push node so a\nround-robin-DNS-pinned subscriber receives it) was coded but INERT: the\ngateway's cfg.NtfyBaseURL was never populated, so the fan-out resolver was\nnever built and pushes went single-host (the ~87% loss the bug des\n[…]\nng-upgrade safe: Phase 4 regen runs under the\nnew binary (post-swap), so an old binary never reads a node.yaml with the new\nfield. DecodeStrict regression guard added (mirrors secrets_encryption_key).",
          "is_bot": false,
          "headline": "fix(gateway): plumb ntfy_base_url into gateway config so push fan-out…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T20:08:39Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3779ba9502f7903f562233939a2ce84b963c6ea6",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.59",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T18:57:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "92428df7e939275ad46307a83c252bf5f6e8e8d5",
          "body": "caddy/coredns declare Requires=orama-node.service, so stopping orama-node\ncascade-stops them; Requires propagates STOP but not START, and\nStartServicesOrdered only starts the orama services — so a bare\n'orama node restart' left caddy dead and the node's :443 HTTPS frontend\noffline until the next reboot. Capture the active frontend units before the\nstop and restart exactly those after the gateway is healthy. Adds\nServiceUnitExists helper + selectFrontendToRestore policy test.",
          "is_bot": false,
          "headline": "fix(cli): node restart restores the caddy/coredns frontend",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T18:57:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4bf187e943884f81525c084f3ff315f0951e036",
          "body": "APIKeyToJWTHandler looked up the namespace by the raw api key, but keys are\nstored HMAC-hashed (Service.HashAPIKey), so it always returned 'invalid API\nkey' for real keys — no api-key holder could exchange for a JWT. Resolve the\nhashed key first with a raw-key fallback for legacy rows, mirroring the\ngateway middleware's lookupAPIKeyNamespace. Adds args-aware mock + tests for\nthe hashed-key, raw-fallback, and unknown-key paths.",
          "is_bot": false,
          "headline": "fix(gateway): /v1/auth/token resolves HMAC-hashed api keys",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T18:57:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd869a588f48a4c52a2ff39470a242eef8cde862",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.58",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T11:46:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "123ca90b659d64e276a83327c93a35a4c3a2cbea",
          "body": "…can (#837)\n\nThe base64 wrapper wasn't enough: DBSecretsManager scanned encrypted_value\ninto []byte, so the rqlite client applied base64 binary semantics on read and\nthe ciphertext never round-tripped — get_secret stayed empty. Mirror the\nproven push-credentials store exactly: encrypt to a 'enc:'-prefixed base64\nstring via pkg/secrets and scan the column into a STRING for Decrypt. Text\nround-trips cleanly through rqlite regardless of the BLOB column.",
          "is_bot": false,
          "headline": "fix(serverless): get_secret round-trip via secrets.Encrypt + string s…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T11:46:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a59017350b0572b40e729f4a896b7ef328e981a0",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.57",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T10:55:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b77c3dae976368c47ea65bb3bb32b015c8e87efa",
          "body": "51.83.128.181, 144.217.160.15, 144.217.163.114 were removed from the cluster\npermanently and must never be targeted by rollouts/monitoring again.",
          "is_bot": false,
          "headline": "chore(devnet): remove 3 permanently-decommissioned nodes from nodes.conf",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T10:54:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7165992b123901394e1c065b510f94bfa76e74a9",
          "body": "…red secrets (#837)\n\nSecond #837 root cause (the key-derivation fix was necessary but not\nsufficient): DBSecretsManager stored the AES-GCM ciphertext as a raw []byte\nparameter, but the rqlite client serializes []byte as base64 and reads it\nback as that base64 TEXT — never the original bytes. So decr\n[…]\n Set and decode it in\nGet (with a raw fallback), making the round-trip symmetric and\ndriver-independent. The test mock now emulates rqlite's blob->base64-text\nbehavior so it's a real regression guard.",
          "is_bot": false,
          "headline": "fix(serverless): get_secret returns empty — base64 round-trip for sto…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T10:54:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "dcc17f1e9029de5dd4435a38adc4b7761fdf508b",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.56",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T08:20:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7b5587094d432d7bbd73f11b054cf63d99e824fc",
          "body": "The namespace-ownership middleware compared an api_key caller's RAW key\nagainst namespace_ownership.owner_id, but api_keys are stored HMAC-hashed\n(HashAPIKey). So every api_key-authenticated owner got a 403 on a namespace\nthey actually own — blocking function deploy and PUT /v1/push/config.\n\nHash th\n[…]\nrade legacy fallback), mirroring the existing\nlookupAPIKeyNamespace pattern. The wallet path is unchanged (wallets stored\nraw). Security-reviewed: grants only to the correct key holder, no\nescalation.",
          "is_bot": false,
          "headline": "fix(gateway): api_key owners no longer 403 on namespaces they own",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T08:20:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b1b8ac57d5e247f59a8386dd0709c14be20b490d",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.55",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T05:05:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9c213a166c04ef9bfb740d6e253a8d157603c9df",
          "body": "The 5-10s RPCs that broke calling were not cold-start — they were\nper-RPC sequential rqlite reads, each forwarded to a raft leader that\ngeography-blind election had placed on a 256ms-distant node.\n\nLever A (serverless): cache function metadata + env vars in-process\n(5s TTL, invalidated on deploy/ena\n[…]\nr, via rqlite's transfer-leadership API. All nodes stay\nvoters — membership, quorum and fault tolerance are unchanged. Cuts the\nper-hop cost from ~274ms to ~20ms when a distant node had become leader.",
          "is_bot": false,
          "headline": "feat(serverless,namespace): cut namespace gateway RPC latency (#708)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T05:05:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "61635c4ce7e00b47c66c0bfa2705b015c4bbb4b7",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.54",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T06:25:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "34f9da6f8d8dfdb69b444b364418e3fbd2df7990",
          "body": "…ryption\n\n- Add `ntfyFanoutResolver` to distribute push notifications across all active cluster nodes, ensuring delivery when nodes lack shared state.\n- Refactor secrets encryption key derivation to use cluster-wide secrets via HKDF, replacing ephemeral per-node keys to fix cross-node decryption issues.\n- Add unit tests for fan-out resolution logic and caching behavior.",
          "is_bot": false,
          "headline": "feat(gateway): implement ntfy cluster fan-out and improve secrets enc…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T06:23:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ae8fa941d1f012ca908fa2411dc230acb6fdd52",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.53",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T05:13:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b184f0398cdb0076e9c79854ab6f3aab9ba18ca",
          "body": "…130)\n\nRoot cause of the recurring \"turn.credentials → namespace_not_configured\" on a\ndistant node: at converge the gateway resolves its TURN secret from the\nnamespace rqlite, and on a slow/just-restarted node that read fails ONCE, so\nthe gateway is written with TURN disabled. Removing the node is n\n[…]\nand the next converge re-caches the new value.\n\nDual-reviewed: code-quality APPROVED; security SECURE after the remote-write\n0600 fix. Tests: cache populate + short-circuit, no-change, turn-only node.",
          "is_bot": false,
          "headline": "fix(namespace): make WebRTC config survive slow/cold node restarts (#…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T05:12:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "66db54c094edd2f45dc6163351bceab66b995211",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.52",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T04:53:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cf21668782fe559026d9a96807dbb3a7eacde2e9",
          "body": "…s status (#132)\n\nVoIP call-invite pushes set no apns-expiration, so apns2 omits the header and\nAPNs store-and-forwards the push — delivering it minutes late and firing a\nphantom \"missed call\" ring long after the call ended (and burning PushKit\ngoodwill, inviting throttling). Cap the VoIP apns-expir\n[…]\ning \"http=0\", which reads like an opaque failure\nand masked real false-success classes.\n\nTests: VoIP push carries an expiration within the ring-window cap; alert push\ncarries none. push package green.",
          "is_bot": false,
          "headline": "fix(push): cap VoIP apns-expiration to the ring window; record succes…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T14:49:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "33600092a8b5b6ca4c107c841d3dc0e44a7d7f01",
          "body": "A lost rotation response strands the client on a just-revoked token: the retry\nhits res.Count==0 → genuine 401 → SIWE, which is impossible on a VoIP-woken\nlocked screen, so the call dies. This recurred under the reconnect storms from\ntoday's gateway rolls.\n\nAdd an RFC 9700 §4.13.2 reuse grace: a ref\n[…]\nual-reviewed: code-quality APPROVED; security SECURE after the logout-bypass\nfix. Tests: lost-response recovery, single-use second-attempt 401, genuine bad\ntoken 401, and the logout-bypass regression.",
          "is_bot": false,
          "headline": "fix(auth): bounded single-use refresh-token reuse grace (#125)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T14:42:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f3145f1b903233ab28c3f72ef16f9523891291f6",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.51",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T13:48:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f5b2db95e2b2598934c52dcc0eb6b30da1aeb53",
          "body": "The HTTP client re-threw the raw platform error on a transport failure, so\ncallers (e.g. AnChat's JwtSession driving client.auth.refresh/challenge) could\nonly tell \"couldn't reach the gateway\" from a real HTTP error by string-\nmatching `TypeError: Network request failed`. The typed SDKError was buil\n[…]\n\n\nTests: tests/unit/http/network-errors-bug-129.test.ts (TypeError->NETWORK_ERROR,\nAbortError->TIMEOUT, real 401 passes through, callback gets the typed error).\nFull unit suite green, typecheck clean.",
          "is_bot": false,
          "headline": "fix(sdk): surface typed SDKError on network/timeout failures (#129)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T13:44:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e7ed71896543a2eed1b1e329f0afb42d749bacc6",
          "body": "…cret (#130)\n\nA freshly-joined namespace node could come up with TURN silently disabled\n(turn.credentials -> namespace_not_configured) when GetWebRTCConfig errored:\nthe stored TURN shared secret was encrypted with a pre-rotation\ncluster-secret-derived key and failed to decrypt, and the converge swal\n[…]\nd; operator disable still resolves to disabled, not unresolved).\n\nPure-function coverage in restore_webrtc_test.go: unresolved marking,\nresolved-empty-is-disabled, and state-secret-wins-over-db-error.",
          "is_bot": false,
          "headline": "fix(namespace): don't silently disable TURN on unresolvable WebRTC se…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T13:44:25Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "021d362b2f207bf013a308681cc23ccb21e2a6be",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.50",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T07:14:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d700aed547d892776f6eefa4f80458ae54c4692",
          "body": "- implement `wsJWTExpired` to validate token lifetime with a grace period\n- capture jwt expiry at connection upgrade and update via auth.refresh\n- close connections with custom code 4401 when tokens expire to force re-auth\n- add unit tests to verify expiry logic and state transitions",
          "is_bot": false,
          "headline": "feat(gateway): enforce jwt expiry on persistent websockets",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T07:12:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d113b754975d4b15b4d20d9a6311bb3314030028",
          "body": "Custom JWT claims survive token refresh: migration 031 adds the\ncustom-claims column to refresh tokens, the new gateway ClaimsProvider\nre-resolves claims on refresh, and the serverless invoke path carries\nthem through. Includes refresh-rotation, WS-JWT middleware, and\nclaims-provider test coverage.",
          "is_bot": false,
          "headline": "feat(auth): refresh-token custom claims hook (#548)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T05:05:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8b8f0a4251450a37f2e054ffe785decc4eb8fdfd",
          "body": "release: 0.122.47 — nightly → main",
          "is_bot": false,
          "headline": "Merge pull request #93 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T14:37:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8472861ed3cb9d9bc56d2124a26e67e5feeafaa1",
          "body": "Reconciles the divergence created by the May-13 nightly history rewrite\n(main absorbed pre-rewrite SHAs via PRs #90-92). Content conflicts all\nresolve in nightly's favor; nightly is the deployed, verified branch\n(v0.122.47 live on devnet).",
          "is_bot": false,
          "headline": "merge main into nightly — keep nightly (staging) on all conflicts",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T14:32:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd8c717363b0d23bb876d067add7ed6a1aa5345d",
          "body": "- refactor(turn): extract decodeTURNConfig for testability\n- feat(turn): add stealth domain fields to config\n- fix(apns): nest custom data under \"body\" for expo-notifications compatibility",
          "is_bot": false,
          "headline": "chore(version): bump to 0.122.47",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T08:45:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4c58db710d839bd26e291f1af4635c9a8070212",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.46",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T07:06:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8375d92109a0578b6477d50ba681b114f9e0bf4d",
          "body": "- Implement `resolveStealthCert` to use existing `*.<baseDomain>` wildcard certificates instead of dynamic Caddyfile provisioning.\n- Avoids EROFS errors caused by `ProtectSystem=strict` on the orama-node service.\n- Add strict validation to ensure stealth hosts are single-label subdomains covered by the wildcard.",
          "is_bot": false,
          "headline": "feat(namespace): reuse caddy wildcard certificate for stealth turns",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T07:04:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37daf28b5a9018ce74e831af63469b57cc4e3a90",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.45",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T05:00:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b425f80efb7db59c190e561fbbe17f72a82f41da",
          "body": "…rash\n\nb9d5f54 (stealth TURN discovery) emits a top-level `sni_router:` block\ninto node.yaml unconditionally, but only added a lenient ad-hoc parse\nin the carry-forward logic — not the field on config.Config that\norama-node strict-decodes (KnownFields(true)) at boot. Identical\nfailure mode to the v0\n[…]\nhole node.yaml parse and orama-node crash-loops.\n\nCaught pre-deploy this time by the strict-decode gate check; devnet\nnever saw it. Regression test added alongside the v0.122.42 one in\ndecode_test.go.",
          "is_bot": false,
          "headline": "fix(config): add sni_router to root Config — prevents feat-124 boot c…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T05:00:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b9d5f542e1278eb75ea45d01b9edca6733fe719b",
          "body": "- Add `turn_stealth_domain` to gateway config for stealth TURN support\n- Introduce `turn_discovery` in `sni-router` to auto-discover per-namespace routes\n- Add database migration to enable stealth TURN per namespace\n- Document ephemeral state API in `SERVERLESS.md`",
          "is_bot": false,
          "headline": "feat(gateway): implement stealth TURN discovery and configuration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T04:04:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f192cd0b84181eee234261e3b008ce817a6d607a",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.44",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-10T09:13:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff3e273da8ed2809ad9c7fc4f9a152cecd4b105d",
          "body": "- add `secrets_encryption_key` to gateway config for serverless secrets\n- implement durable TURN secret persistence to prevent config regen outages\n- add regression test for gateway config loading and field mapping",
          "is_bot": false,
          "headline": "feat(gateway): implement persistent secrets and webrtc configuration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-10T09:10:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c631243b32d8d4874d4bea65307d77d1463d727",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.43",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T12:57:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e685c864fc52bd1280764774637a6a4a1d5cfea3",
          "body": "…orama-node boot crash\n\nv0.122.42 (f412425, secrets encryption) shipped the template emission,\nthe per-cluster secret generator, and the gateway.Config consumer — but\nNOT the parse field on config.HTTPGatewayConfig. Phase 4 writes\n`secrets_encryption_key` into node.yaml under the http_gateway sectio\n[…]\nstandalone gateway (cmd/gateway/config.go) uses lenient parsing and\nwas unaffected.\n\nRegression test in pkg/config/decode_test.go decodes a node.yaml\ncarrying secrets_encryption_key under strict mode.",
          "is_bot": false,
          "headline": "fix(config): add secrets_encryption_key to HTTPGatewayConfig — fixes …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T12:57:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b6b518e0056119fd124280a6b63d585893e86af9",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.42",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T10:01:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f41242538ee75dfda4c6e435a54f5c814d5ab4d8",
          "body": "- Add `raw_http_response` configuration to functions to allow verbatim HTTP responses\n- Implement cluster-wide secrets encryption key generation and distribution for serverless functions\n- Update documentation with UnifiedPush support for ntfy on Android/GrapheneOS",
          "is_bot": false,
          "headline": "feat(serverless): add raw http response mode and secrets encryption",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T10:01:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aa04ab5f509bced88aa57d58991aa2bbbeaf0fae",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.41",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T06:24:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f8de4af704386f07631e9919ccd700e36b30b33f",
          "body": "- Add `FileRouteReloader` to watch and atomically update routes from disk\n- Refactor `main` to support seamless configuration updates without restarts\n- Ensure existing routes are preserved if a reload encounters an error",
          "is_bot": false,
          "headline": "feat(sni-router): implement hot-reloading for route configuration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T06:23:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "32f7b3824e3d967480ffd0935f3c7256c6de3b05",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.40",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-04T07:08:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eade6e17425b9e833d48bf28f020744a1e7763f9",
          "body": "- Remove the 2-second polling wait for gossipsub mesh formation in `Publish`\n  to eliminate unnecessary latency, relying on `FloodPublish` for delivery.\n- Introduce a per-invocation publish budget (1000 messages) to prevent\n  potential flooding of the shared gossipsub router by WASM functions.\n- Add regression tests to ensure `Publish` remains non-blocking and that\n  the publish budget is strictly enforced.",
          "is_bot": false,
          "headline": "feat(pubsub): remove mesh formation wait and add publish rate limiting",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-04T07:08:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f3875d51578d5554456bf4a5fe1092e23c9f41ef",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.39",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-02T12:06:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9373c2ad92723fa4372773915a15bf9a64eef541",
          "body": "- Introduce `BatchQueryConsistency` with `ReadConsistencyNone` to allow\n  local SQLite reads, bypassing leader round-trips for performance.\n- Add `function_invoke_async` host function to support non-blocking\n  fire-and-forget function execution.",
          "is_bot": false,
          "headline": "feat(rqlite,serverless): add local read consistency and async invocation",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-01T16:59:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2a3bff88c780e097b18bcc4eb3cd6e8cd1ff35c",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.38",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-01T07:13:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca4ccbfcd40c71c06a1ba768106e6c140463c33e",
          "body": "- split webrtc route gating into `webrtcServeTURNCredentials` and `webrtcServeSFURoutes` to allow non-SFU gateways to mint TURN credentials\n- update `chooseRestoreWebRTC` to correctly resolve configurations for nodes without local SFU ports\n- add unit tests to verify independent route registration logic (bugboard #25)",
          "is_bot": false,
          "headline": "feat(gateway): decouple turn credentials and sfu route registration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-01T07:12:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a3cf8384e96390544a309f1f6e004cb2f12ad0ac",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.37",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T16:27:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf0d5f9f9fa446d8637ca6be5e8eac22a2eaa6c4",
          "body": "- Add logic to reconcile gateway configuration drift for running instances\n- Prevent unnecessary restart loops by verifying on-disk config state\n- Add unit tests to validate synchronization logic and prevent regressions",
          "is_bot": false,
          "headline": "feat(namespace): implement warm reconciliation for gateway webrtc config",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T16:26:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3987ad0cf37cb3e2531533e43dc3144946592137",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.36",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T11:41:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4fc975216f334b1ad49518b6a707845e6bc3d1ce",
          "body": "- Add internal WebRTC management endpoints to public path exemption list\n- Implement DB fallback for WebRTC configuration during cluster restore\n- Add unit tests to verify WebRTC config precedence and state self-healing",
          "is_bot": false,
          "headline": "feat(gateway): fix WebRTC config persistence and endpoint access",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T11:39:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9bace7bbf440b34f0ce84269db010713568f4880",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.35",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-29T09:09:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "325a2471c7ab7df488a2d4c9e77f9d43d34b4bdc",
          "body": null,
          "is_bot": false,
          "headline": "Changes",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-29T08:46:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d352d0b4235ad72fd0b6b850966f11ea955ee3e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.34",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-28T06:55:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cfff08d91e4608b0e095dae60356e8158097e1a5",
          "body": "…ion diagnostics\n\n- Implement `turn_credentials` host function to provide TURN configuration to WASM modules.\n- Add structured logging for slow serverless invocations exceeding 5s, providing per-phase timing (rate-limit, module-load, execution) to identify performance bottlenecks.\n- Enhance WebSocket handler logging to capture request context when 30s timeouts occur.",
          "is_bot": false,
          "headline": "feat(serverless): add turn_credentials host function and slow invocat…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-28T06:54:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8fbc4485c1e85d35c2aeeb52d32e8b7897da9108",
          "body": "- opt into `WithSysWalltime` and `WithSysNanotime` to prevent wazero from using a frozen sentinel clock\n- add regression tests to verify real-time clock behavior in wasm execution\n- ensure serverless functions receive accurate timestamps for audit and cursor logic",
          "is_bot": false,
          "headline": "fix(serverless): enable system clocks for wasm modules",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-26T07:53:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1399b22676ab5172ee49f79ddf1bcafe86ac691e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.33",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T07:25:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1faf04e2a353f0cf72517c15a13505eb5ffff463",
          "body": "- Add `enable` and `disable` commands to manage function status\n- Implement process re-exec in the upgrade orchestrator to ensure\n  Phase 4 config generation uses the newly-installed binary version\n  (fixes bugboard #15)",
          "is_bot": false,
          "headline": "feat(cli): add function enable/disable and fix upgrade re-exec",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T07:25:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bc2c25ff16c83fd6a2d169baecee211e6c45b2c1",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.32",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T06:35:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2d35bbde1e5baf8cab8c7bfce3942ad3bd1ef8b",
          "body": "- wire PubSubDispatcher to host functions to support local wildcard\n  triggers for WASM-published topics\n- implement batch deduplication by topic to prevent redundant trigger\n  invocations and bound fan-out\n- propagate trigger depth through function invocations to maintain\n  recursion limits during local dispatch",
          "is_bot": false,
          "headline": "feat(gateway): enable local wildcard triggers for pubsub",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T06:34:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0463f37c0d7d23a75599bbd9a67723f96b1361e5",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.31",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T17:57:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98dad46a8134531b511295a051f9434df4d1c310",
          "body": "- Update route registration logic to rely solely on SFUPort > 0, resolving a silent 404 issue where gateways with valid SFU configurations were incorrectly disabled.\n- Retain WebRTCEnabled in config for backward compatibility with existing operator YAML and request schemas.\n- Add unit tests to pin registration behavior and prevent future regressions.",
          "is_bot": false,
          "headline": "fix(gateway): decouple webrtc route registration from legacy flag",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T17:56:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "877563b86f638ea20f35c013f398ea5994b4af6e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.30",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T16:39:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "62e4d1963bb694a5d5f3d7bc591d6e19d0392348",
          "body": "- register \"apns_voip\" provider to handle PushKit/CallKit signals\n- implement target provider filtering in dispatcher to prevent cross-talk\n  between alert and VoIP push paths\n- add comprehensive tests to ensure backward compatibility for fan-out\n  and correct filtering behavior",
          "is_bot": false,
          "headline": "feat(gateway): add apns_voip provider support",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T16:38:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "57eb9f4f665cdb6b47a8edc4a3e8803d215aab92",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.29",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-23T09:49:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 100,
      "commits_last_year": 1253,
      "latest_release_at": "2026-07-06T19:18:45Z",
      "latest_release_tag": "v0.122.80-nightly",
      "releases_from_tags": false,
      "days_since_last_push": 11,
      "active_weeks_last_year": 39,
      "days_since_latest_release": 18,
      "mean_days_between_releases": 2.3
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 75,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/DeBrosOfficial/network",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": false,
          "registry_url": "https://pkg.go.dev/github.com/DeBrosOfficial/network",
          "is_deprecated": false,
          "latest_version": "v0.122.74",
          "repository_url": "https://github.com/DeBrosOfficial/network",
          "versions_count": 167,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-04T17:47:27Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 20
        },
        {
          "name": "@debros/orama",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "debros",
            "network",
            "sdk",
            "typescript",
            "database",
            "rqlite",
            "pubsub",
            "websocket",
            "cache",
            "olric",
            "ipfs",
            "storage",
            "wasm",
            "serverless",
            "distributed",
            "gateway",
            "vault",
            "secrets",
            "shamir",
            "encryption",
            "guardian"
          ],
          "ecosystem": "npm",
          "matches_repo": false,
          "registry_url": "https://www.npmjs.com/package/@debros/orama",
          "is_deprecated": false,
          "latest_version": "0.122.80-nightly",
          "repository_url": "https://github.com/DeBrosOfficial/network",
          "versions_count": 18,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 1288,
          "first_published_at": "2026-05-12T06:31:03.956000Z",
          "latest_published_at": "2026-07-06T19:19:10.614000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 18
        }
      ]
    },
    "popularity": {
      "forks": 3,
      "stars": 11,
      "watchers": 1,
      "fork_history": {
        "days": [
          {
            "date": "2025-11-11",
            "count": 1
          },
          {
            "date": "2026-04-11",
            "count": 1
          },
          {
            "date": "2026-06-25",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 3,
        "total_forks": 3
      },
      "star_history": null,
      "open_issues_and_prs": 1
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "core/Makefile",
        "os/Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "sdk/tsconfig.json",
        "website/tsconfig.json"
      ],
      "toolchain_manifests": [
        "core/go.mod",
        "core/testdata/apps/go-api/go.mod",
        "os/agent/go.mod",
        "website/invest-api/go.mod"
      ],
      "largest_source_bytes": 97691,
      "source_files_sampled": 1146,
      "oversized_source_files": 3,
      "agent_instruction_files": [
        ".github/copilot-instructions.md",
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 536
    },
    "dependencies": {
      "manifests": [
        "core/go.mod",
        "sdk/package.json",
        "website/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 3,
        "malicious_count": 0,
        "assessed_package": "npm:@debros/orama@0.122.80-nightly",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "npm"
      ],
      "dependencies": [
        {
          "name": "github.com/charmbracelet/bubbles",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.0"
        },
        {
          "name": "github.com/charmbracelet/bubbletea",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.4"
        },
        {
          "name": "github.com/charmbracelet/lipgloss",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/coredns/caddy",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.4"
        },
        {
          "name": "github.com/coredns/coredns",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.12.1"
        },
        {
          "name": "github.com/ethereum/go-ethereum",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.13.14"
        },
        {
          "name": "github.com/go-chi/chi/v5",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.2.3"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/gorilla/websocket",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.4-0.20250319132907-e064f32e3674"
        },
        {
          "name": "github.com/libp2p/go-libp2p",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.41.1"
        },
        {
          "name": "github.com/libp2p/go-libp2p-pubsub",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.14.2"
        },
        {
          "name": "github.com/mackerelio/go-osstat",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.6"
        },
        {
          "name": "github.com/mattn/go-sqlite3",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.32"
        },
        {
          "name": "github.com/mdp/qrterminal/v3",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.2.1"
        },
        {
          "name": "github.com/miekg/dns",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.70"
        },
        {
          "name": "github.com/multiformats/go-multiaddr",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.16.0"
        },
        {
          "name": "github.com/olric-data/olric",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/pion/interceptor",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.40"
        },
        {
          "name": "github.com/pion/rtcp",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.15"
        },
        {
          "name": "github.com/pion/turn/v4",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.0.2"
        },
        {
          "name": "github.com/pion/webrtc/v4",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.1.2"
        },
        {
          "name": "github.com/rqlite/gorqlite",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20250609141355-ac86a4a1c9a8"
        },
        {
          "name": "github.com/sideshow/apns2",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.25.0"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/tetratelabs/wazero",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.0"
        },
        {
          "name": "go.uber.org/zap",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.27.0"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.47.0"
        },
        {
          "name": "golang.org/x/net",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.49.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.19.0"
        },
        {
          "name": "gopkg.in/yaml.v2",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.4.0"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "@noble/ciphers",
          "manifest": "sdk/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.5.3"
        },
        {
          "name": "@noble/hashes",
          "manifest": "sdk/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.4.0"
        },
        {
          "name": "isomorphic-ws",
          "manifest": "sdk/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.0.0"
        },
        {
          "name": "@gsap/react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.2"
        },
        {
          "name": "@mdx-js/react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.1"
        },
        {
          "name": "@radix-ui/react-accordion",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.12"
        },
        {
          "name": "@radix-ui/react-dialog",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.15"
        },
        {
          "name": "@radix-ui/react-dropdown-menu",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.16"
        },
        {
          "name": "@radix-ui/react-navigation-menu",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.14"
        },
        {
          "name": "@radix-ui/react-slot",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.4"
        },
        {
          "name": "@radix-ui/react-tabs",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.13"
        },
        {
          "name": "@radix-ui/react-tooltip",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.8"
        },
        {
          "name": "@react-three/drei",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.7.7"
        },
        {
          "name": "@react-three/fiber",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.5.0"
        },
        {
          "name": "@solana/wallet-adapter-base",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.9.27"
        },
        {
          "name": "@solana/wallet-adapter-react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.15.39"
        },
        {
          "name": "@solana/wallet-adapter-react-ui",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.9.39"
        },
        {
          "name": "@solana/wallet-adapter-wallets",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.19.37"
        },
        {
          "name": "@solana/web3.js",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.98.4"
        },
        {
          "name": "class-variance-authority",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.7.0"
        },
        {
          "name": "clsx",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.0"
        },
        {
          "name": "ethers",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.16.0"
        },
        {
          "name": "gsap",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.14.2"
        },
        {
          "name": "lightweight-charts",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.1.0"
        },
        {
          "name": "lucide-react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.511.0"
        },
        {
          "name": "mermaid",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^11.12.3"
        },
        {
          "name": "react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.0"
        },
        {
          "name": "react-dom",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.0"
        },
        {
          "name": "react-router",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.6.1"
        },
        {
          "name": "rehype-slug",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.0.0"
        },
        {
          "name": "remark-gfm",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.1"
        },
        {
          "name": "shiki",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.0"
        },
        {
          "name": "tailwind-merge",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.3.0"
        },
        {
          "name": "three",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.183.2"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "os/agent/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.48.0"
        },
        {
          "name": "github.com/ethereum/go-ethereum",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.15.11"
        },
        {
          "name": "github.com/golang-jwt/jwt/v5",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.2.2"
        },
        {
          "name": "github.com/joho/godotenv",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.1"
        },
        {
          "name": "github.com/mattn/go-sqlite3",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.37"
        },
        {
          "name": "github.com/mr-tron/base58",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 56,
        "open_issues": 1,
        "closed_ratio": 0.971,
        "closed_issues": 34,
        "closed_unmerged_prs": 4
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "anonpenguin23",
          "commits": 1083,
          "avatar_url": "https://avatars.githubusercontent.com/u/200880785?v=4"
        },
        {
          "type": "User",
          "login": "JohnySigma",
          "commits": 61,
          "avatar_url": "https://avatars.githubusercontent.com/u/178774325?v=4"
        },
        {
          "type": "User",
          "login": "DeBrosOfficial",
          "commits": 8,
          "avatar_url": "https://avatars.githubusercontent.com/u/188804992?v=4"
        }
      ],
      "contributors_sampled": 3,
      "top_contributor_share": 0.94
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "publish-sdk.yml",
        "release-apt.yml",
        "release.yaml",
        "security.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum",
        "package-lock.json",
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 8,
            "reason": "binaries present in source code",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 1,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 10,
            "reason": "all changesets reviewed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "192 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "4a538ca07ad8c2980b8af94fe26f2e1c96961509",
        "ran_at": "2026-07-25T00:19:58Z",
        "aggregate_score": 4.7,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-20T10:44:00Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-04T17:47:28Z",
      "ci_last_conclusion": "FAILURE",
      "oldest_open_issues": [
        {
          "number": 84,
          "created_at": "2026-03-02T14:22:40Z",
          "last_comment_at": "2026-05-15T18:01:00Z",
          "last_comment_author": "JohnySigma"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/DeBrosDAO/orama",
    "host": "github.com",
    "name": "orama",
    "owner": "DeBrosDAO"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 62,
      "inputs": {
        "security": 58,
        "vitality": 86,
        "community": 53,
        "governance": 49,
        "engineering": 63
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 86,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "commits_last_year": 1253,
              "human_commit_share": 1,
              "days_since_last_push": 11,
              "active_weeks_last_year": 39
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 11 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 11
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "39/52 weeks with commits",
                "points": 27,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 39
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "1253 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 1253
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 100,
              "latest_release_tag": "v0.122.80-nightly",
              "releases_from_tags": false,
              "days_since_latest_release": 18,
              "mean_days_between_releases": 2.3
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "100 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 18 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 18
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~2.3 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 2.3
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 20,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 20 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 20
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 53,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 19,
            "inputs": {
              "forks": 3,
              "stars": 11,
              "watchers": 1,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "11 stars",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 11
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "3 forks",
                "points": 2.5,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "1 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (AGPL-3.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "AGPL-3.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 49,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 14,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 3,
              "top_contributor_share": 0.94
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 94% of commits",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 94
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "3 contributors",
                "points": 4.1,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "excellent",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 96,
            "inputs": {
              "merged_prs": 56,
              "open_issues": 1,
              "closed_issues": 34,
              "issue_closed_ratio": 0.971,
              "closed_unmerged_prs": 4
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "97% of issues closed",
                "points": 45.4,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 97
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "56/60 decided PRs merged",
                "points": 35.7,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 56,
                      "decided": 60
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "all changesets reviewed",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 44,
            "inputs": {
              "followers": 6,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "DeBrosDAO",
              "public_repos": 9,
              "account_age_days": 143
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "6 followers of DeBrosDAO",
                "points": 6.1,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 6,
                      "login": "DeBrosDAO"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "9 public repos, account ~0 yr old",
                "points": 8.1,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 9
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 63,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 68,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "5 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 5
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": "https://orama.network",
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://orama.network",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 58,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": null,
            "notes": [],
            "value": 47,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 18,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 0,
              "scorecard_aggregate": 4.7
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "binaries present in source code",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "all changesets reviewed",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "192 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:@debros/orama@0.122.80-nightly runtime dependency closure — what installing the published package pulls in — 3 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:@debros/orama@0.122.80-nightly",
                  "assessed": 3
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 3,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 3,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 1
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 71,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.98,
              "agent_instruction_files": [
                ".github/copilot-instructions.md",
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 536
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "98 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 98,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 61,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum",
                "package-lock.json",
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "core/Makefile",
                "os/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "sdk/tsconfig.json",
                "website/tsconfig.json"
              ],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "core/go.mod",
                "core/testdata/apps/go-api/go.mod",
                "os/agent/go.mod",
                "website/invest-api/go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, core/Makefile, os/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, core/Makefile, os/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "sdk/tsconfig.json, website/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "sdk/tsconfig.json, website/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 97691,
              "source_files_sampled": 1146,
              "oversized_source_files": 3
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "3/1146 source files over 60KB",
                "points": 54.9,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 1146,
                      "oversized": 3
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "go package 'github.com/DeBrosOfficial/network' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring",
    "npm package '@debros/orama' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring",
    "Could not fetch go package 'github.com/DeBrosOfficial/orama-os/agent' from its registry",
    "Could not fetch go package 'github.com/debros/orama-website/invest-api' from its registry",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-25T00:20:22.030841Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/d/DeBrosDAO/orama.svg",
  "full_name": "DeBrosDAO/orama",
  "license_state": "standard",
  "license_spdx": "AGPL-3.0"
}

Оцінки — це сигнали, а не гарантії. Вони відображають публічно видимі практики на GitHub — це не аудит коду й не гарантія безпеки.

Відсутні дані виключаються, а ваги перенормовуються — нуль за відсутність ніколи не ставиться. Методологія версіонована й відкрита: метрики v1.13.0, схема v0.27.0 — повна методологія · вікі метрик.

Як окремий результат виглядає на тлі всього реєстру: сукупна статистикаGo, npm.