Звіт у форматі JSON машиночитний
{
"data": {
"repo": {
"topics": [],
"is_fork": false,
"size_kb": 2437,
"has_wiki": false,
"homepage": "https://bagvalueobjects.com/",
"languages": {
"PHP": 438071
},
"pushed_at": "2026-04-22T20:57:15Z",
"created_at": "2024-04-21T00:47:03Z",
"owner_type": "Organization",
"updated_at": "2026-07-22T06:48:34Z",
"description": "Immutable Value Objects for PHP",
"is_archived": false,
"is_disabled": false,
"license_spdx": "MIT",
"default_branch": "main",
"license_spdx_raw": "MIT",
"primary_language": "PHP",
"significant_languages": [
"PHP"
]
},
"owner": {
"blog": "https://beaconhq.io",
"name": "Beacon HQ",
"type": "Organization",
"login": "beacon-hq",
"company": null,
"location": null,
"followers": 7,
"avatar_url": "https://avatars.githubusercontent.com/u/193372393?v=4",
"created_at": "2025-01-01T02:28:22Z",
"is_verified": null,
"public_repos": 7,
"account_age_days": 567
},
"license": {
"state": "standard",
"spdx_id": "MIT",
"raw_spdx": "MIT",
"file_present": true,
"scorecard_found": true,
"profile_has_license": true
},
"activity": {
"releases": [
{
"tag": "2.6.3",
"kind": "patch",
"published_at": "2026-04-22T20:53:49Z"
},
{
"tag": "2.6.2",
"kind": "patch",
"published_at": "2025-10-09T02:28:54Z"
},
{
"tag": "2.6.1",
"kind": "patch",
"published_at": "2025-09-14T11:31:57Z"
},
{
"tag": "2.6.0",
"kind": "minor",
"published_at": "2025-07-16T09:02:29Z"
},
{
"tag": "2.5.4",
"kind": "patch",
"published_at": "2025-07-02T10:57:02Z"
},
{
"tag": "2.5.3",
"kind": "patch",
"published_at": "2025-07-02T07:56:28Z"
},
{
"tag": "2.5.2",
"kind": "patch",
"published_at": "2025-04-05T17:57:47Z"
},
{
"tag": "2.5.1",
"kind": "patch",
"published_at": "2025-04-01T10:45:47Z"
},
{
"tag": "2.5.0",
"kind": "minor",
"published_at": "2025-03-29T21:13:03Z"
},
{
"tag": "2.4.1",
"kind": "patch",
"published_at": "2025-03-26T03:55:40Z"
},
{
"tag": "2.4.0",
"kind": "minor",
"published_at": "2025-03-05T09:59:58Z"
},
{
"tag": "2.3.0",
"kind": "minor",
"published_at": "2025-02-25T11:54:34Z"
},
{
"tag": "2.2.0",
"kind": "minor",
"published_at": "2025-02-07T07:05:47Z"
},
{
"tag": "2.1.0",
"kind": "minor",
"published_at": "2025-01-26T13:16:22Z"
},
{
"tag": "2.0.3",
"kind": "patch",
"published_at": "2025-01-24T07:38:21Z"
},
{
"tag": "2.0.2",
"kind": "patch",
"published_at": "2025-01-10T01:34:20Z"
},
{
"tag": "2.0.1",
"kind": "patch",
"published_at": "2025-01-09T05:29:54Z"
},
{
"tag": "2.0.0",
"kind": "major",
"published_at": "2025-01-05T22:38:27Z"
},
{
"tag": "1.4.0",
"kind": "minor",
"published_at": "2025-01-03T17:02:34Z"
},
{
"tag": "1.3.2",
"kind": "patch",
"published_at": "2024-12-06T00:07:09Z"
},
{
"tag": "1.3.1",
"kind": "patch",
"published_at": "2024-11-04T19:54:17Z"
},
{
"tag": "1.3.0",
"kind": "minor",
"published_at": "2024-09-30T04:45:49Z"
},
{
"tag": "1.2.2",
"kind": "patch",
"published_at": "2024-09-26T07:00:59Z"
},
{
"tag": "1.2.1",
"kind": "patch",
"published_at": "2024-09-14T04:13:02Z"
},
{
"tag": "1.2.0",
"kind": "minor",
"published_at": "2024-09-12T12:15:58Z"
},
{
"tag": "1.1.0",
"kind": "minor",
"published_at": "2024-08-23T00:17:35Z"
},
{
"tag": "1.0.0",
"kind": "major",
"published_at": "2024-05-19T02:05:56Z"
}
],
"recent_commits": [
{
"oid": "785dfee16cd486e7ed17cd701221102e3da55d97",
"body": null,
"is_bot": false,
"headline": "fix: use __invoke to inject request classes on invokable controller",
"author_name": "Chuck Adams",
"author_login": "chuckadams",
"committed_at": "2026-04-22T20:57:14Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2b60bdc0b3dc3d993a23b255ba2a5103f341065d",
"body": null,
"is_bot": false,
"headline": "test: fix some tests to allow Laravel 13",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2026-04-22T20:51:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bc14b8c300818f24487bc9b1fc8ff7fa1be86cc3",
"body": null,
"is_bot": false,
"headline": "feat: Support for Laravel 13",
"author_name": "Emmanuel Okeke",
"author_login": "emmanix2002",
"committed_at": "2026-04-22T20:51:48Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0737331b1c0f0511101b0b73b3316620277a5ec1",
"body": null,
"is_bot": false,
"headline": "docs: update docs for beacon-hq migration",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-10-13T22:04:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a95c06d95049645e76d6ac170713722667797b3f",
"body": null,
"is_bot": false,
"headline": "feat: rename to beacon-hq/bag",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-10-13T21:47:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d553532f3f6c92c558c443b035f51497f550756d",
"body": "This reverts commit 0e52d9561e4e1031a1002381513c2a25e0e50d84.",
"is_bot": false,
"headline": "Revert \"feat: Add the ability to memoize bag instantiation\"",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-10-13T07:19:19Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "da3c4a0e961ac67dd4157a2f7d268a55ae50d7a7",
"body": "This reverts commit 1879aa03c161674ef8d175940334a1d01971d2f6.",
"is_bot": false,
"headline": "Revert \"docs: Update docs for memoization/2.7\"",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-10-13T07:19:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1879aa03c161674ef8d175940334a1d01971d2f6",
"body": null,
"is_bot": false,
"headline": "docs: Update docs for memoization/2.7",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-10-13T05:29:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0e52d9561e4e1031a1002381513c2a25e0e50d84",
"body": null,
"is_bot": false,
"headline": "feat: Add the ability to memoize bag instantiation",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-10-13T05:15:59Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f0c0a8b3ca29dd8e12feb4cc0b1eb1ad0d39d73c",
"body": null,
"is_bot": false,
"headline": "fix: do not cache request resolution, it breaks in some scenarios",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-10-09T02:27:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "e1268800f87c85e1587d5530383ef0173ed94f2d",
"body": null,
"is_bot": false,
"headline": "build: Update to PHP 8.4",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-09-14T11:31:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fdf908c06ee9a1978e9b2d637f52c7c825921b35",
"body": null,
"is_bot": false,
"headline": "fix: Collection return type set correctly",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-09-14T11:31:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3aa18baf8189050b98c4729a8f64822e61db0f99",
"body": null,
"is_bot": false,
"headline": "fix: Support Optionals in built-in casts",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-09-14T11:31:03Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "704db39e9a3c6e01a2b15bc78199805c8ea30286",
"body": null,
"is_bot": false,
"headline": "docs: Update for 2.6",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-07-16T09:00:22Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "91ea5abf48f492338e5533d384ca136eabe9804e",
"body": null,
"is_bot": false,
"headline": "fix: make Optional validation more intuitive",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-07-16T08:48:04Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "42273fd396fd0c57578e92b3c242fbf6e8c5eea8",
"body": null,
"is_bot": false,
"headline": "fix: fix an issue where single array params were miss-handled",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-07-02T10:56:44Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "95c3d1e66da3214b94afa9e075f95165a66bd3dd",
"body": null,
"is_bot": false,
"headline": "chore: make phpstan happy",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-07-02T07:54:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1245d85e42d91f492a4db99c45e81c0cd7086ff5",
"body": null,
"is_bot": false,
"headline": "feat: Do not store Optionals in DB with Eloquent cast",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-07-02T07:54:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "fdc59659de65c70300c6731e47fa7f19eed37550",
"body": null,
"is_bot": false,
"headline": "fix: allow nulls in prependReal",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-04-05T17:50:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0fdf7a5135dc02f2c45e0d87704a46dc5fd71dd0",
"body": null,
"is_bot": false,
"headline": "fix: remove nulls when using controller injection",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-04-05T17:50:46Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "2b2bf0d81de5c413be40460932607169b9aecbf9",
"body": null,
"is_bot": false,
"headline": "fix: handle union types for CollectionOf and make:bag",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-04-05T17:50:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d1893d2688bc98df136bb228f95d5613a4ec8692",
"body": null,
"is_bot": false,
"headline": "fix: missing closing square bracket in mapping.md",
"author_name": "Ezra",
"author_login": "nicekiwi",
"committed_at": "2025-04-05T04:52:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f1956b256bc0f71fd2eb650396ad9957cd9f1dfa",
"body": "Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) from 5.4.15 to 5.4.16.\n- [Release notes](https://github.com/vitejs/vite/releases)\n- [Changelog](https://github.com/vitejs/vite/blob/v5.4.16/packages/vite/CHANGELOG.md)\n- [Commits](https://github.com/vitejs/vite/commits/v5.4.16/packages/vite)\n\n---\nupdated-dependencies:\n- dependency-name: vite\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump vite from 5.4.15 to 5.4.16",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-04-01T12:00:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d83be64fa350600050ea6417a70322ca153e5c75",
"body": null,
"is_bot": false,
"headline": "feat: Add spatie/typescript-transformer support",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-04-01T10:43:33Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1104bc3957198cf26d19d133038179360f13a8d0",
"body": null,
"is_bot": false,
"headline": "docs: fixup OptionalOr rule name",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-29T21:16:26Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c0405ed65042ad74bc332158d880ade903b6d387",
"body": null,
"is_bot": false,
"headline": "docs: fixup callouts (again)",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-29T21:14:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1f6fc615d7b73ec2ac476140a64ee7d1709e3fa4",
"body": null,
"is_bot": false,
"headline": "docs: fixup callouts",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-29T21:12:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3cde27aaf56f22d22ca110e005d8616fd64dee6c",
"body": null,
"is_bot": false,
"headline": "test: coverage fixes",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-29T21:10:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5e49abc2ef514c527dc986ea31d83745f1eaee3d",
"body": null,
"is_bot": false,
"headline": "docs: Add Optional docs",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-29T21:10:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7b6c80ba178d94d3ee21a4f5e16fac12bea28afc",
"body": "fixes: #87\nimplements: #88",
"is_bot": false,
"headline": "feat: add support for Optionals",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-29T21:10:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3d2cb5deb160b512f41e5c60637ff4c4c6388374",
"body": null,
"is_bot": false,
"headline": "test: fix tests/phpstan when laravel-debugbar not installed",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-27T10:33:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "48287277d7cf3f1257c1e3225d1e704e25c06872",
"body": null,
"is_bot": false,
"headline": "test: use pest syntax for checking exceptions",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-27T10:33:02Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a33d9a56becbd9621b7fbb8aee0a6e9a7eaa7e08",
"body": null,
"is_bot": false,
"headline": "test: add some missing coverage",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-26T03:53:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a41094f990b82f680dcc48132a8a7a6084342dab",
"body": "fixes: #84",
"is_bot": false,
"headline": "fix: Allow nullable dates, fix nullable types",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-26T03:52:55Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "528ad3e123599b2c7e2aa482f0305a51e786d681",
"body": "fixes: #85",
"is_bot": false,
"headline": "fix: Ensure that multiple hidden params are hidden",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-25T16:37:35Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "161009c28437d87d95e190c558ca6d7c36e03e8d",
"body": "fixes: #86",
"is_bot": false,
"headline": "docs: fix footer links",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-25T16:35:56Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bbc450463e6aaf47bbe4b8bdb0a3984f5e1b1b16",
"body": null,
"is_bot": false,
"headline": "docs: Add What's New to the top nav",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-05T10:04:10Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f8e2702559408ccd53c4274f6d47b924fd000f94",
"body": null,
"is_bot": false,
"headline": "build: Add barryvdh/laravel-debugbar for testing",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-05T09:59:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3402754de3f01677ee5fe2fb6534f1f80b40232e",
"body": null,
"is_bot": false,
"headline": "docs: Update docs",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-05T09:59:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "06533a3bb84009e5b269ffedc9bc38f4079bfa3a",
"body": null,
"is_bot": false,
"headline": "feat: Add Laravel DebugBar Collector",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-03-05T09:59:30Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "943d9d32ecce15aada84ad5959e1d319a6041a27",
"body": null,
"is_bot": false,
"headline": "feat: Update for Laravel 12",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-25T11:54:00Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "7ebc9c6ca41fc8d8c1488c8083bba6f701675eef",
"body": "Bumps [katex](https://github.com/KaTeX/KaTeX) from 0.16.10 to 0.16.21.\n- [Release notes](https://github.com/KaTeX/KaTeX/releases)\n- [Changelog](https://github.com/KaTeX/KaTeX/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/KaTeX/KaTeX/compare/v0.16.10...v0.16.21)\n\n---\nupdated-dependencies:\n- dependency-name: katex\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump katex from 0.16.10 to 0.16.21",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2025-02-07T06:41:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8022d462604f2687a0d51d84a0f6d458f1dc5a6e",
"body": null,
"is_bot": false,
"headline": "fix: Ignore phpstan errors",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-07T06:38:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a57f0e5643c1c94ba64f15f0d270d379ea79036a",
"body": null,
"is_bot": false,
"headline": "build: use `composer install` not `update` when running github actions",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-07T06:38:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "3f9be11a33f4a41c0fb05067a3b936b25051c4c5",
"body": null,
"is_bot": false,
"headline": "build: test docs build during PR",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-07T06:38:57Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "1b9a3c1836d772c09dcc0cae8b26e75e11011901",
"body": null,
"is_bot": false,
"headline": "fix: Fix Eloquent casting for collections",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-07T06:19:43Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6b101a16ebe991a834d81dc38b2b01356a476e28",
"body": null,
"is_bot": false,
"headline": "feat: Add support for var_export() to Collection",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-04T05:04:06Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d7f0f33f2f732654d9c01f447f63cbbb150759e9",
"body": "…ass name",
"is_bot": false,
"headline": "feat: Improve AdditionalPropertiesException message to include bag cl…",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-04T04:40:15Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "785e2427f369e3998235d74f22a3c4a37a33d5d5",
"body": null,
"is_bot": false,
"headline": "feat: Add support for var_export()",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-02-04T04:38:18Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c887cba09b78cb42fbdf238edcc009d1f09376c6",
"body": null,
"is_bot": false,
"headline": "docs: Add versioned docs",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-27T08:27:16Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5be1e2d9e1e4abcc8d5637217565e5660bd09f15",
"body": null,
"is_bot": false,
"headline": "docs: Update docs to cover SkipExtraParameters attribute",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-26T13:14:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f8c09900c433770630afa5afb67f059bb1273541",
"body": null,
"is_bot": false,
"headline": "test: cover missing line in Email validation attribute",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-26T13:14:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "821a92b5ef2f7b536916abaaa073fca08fe6663e",
"body": null,
"is_bot": false,
"headline": "feat: Allow using StripExtraParameters with laravel controller injection",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-26T13:14:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a684c4a45b43bd410981c3c5c4177715aefaf365",
"body": null,
"is_bot": false,
"headline": "feat: Default to stripping extra params without validation",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-26T13:14:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c085a648321109562517276ec9d98d997bb679e0",
"body": null,
"is_bot": false,
"headline": "feat: Add the ability to strip extra params",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-26T13:14:53Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "057344c184d23a0da046dc0fea6464b0a5bfa5dc",
"body": "fixes #70",
"is_bot": false,
"headline": "fix: ensure nested bags are cast correctly with Eloquent",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-24T07:36:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "efd21cd5aed20f11eceb6f2d88cb4c1018497015",
"body": null,
"is_bot": false,
"headline": "fix: use input aliases for validation",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-09T09:09:45Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "63ec09bb826b6305af32d73faf74c70d7c9c90af",
"body": null,
"is_bot": false,
"headline": "fix: better type definition for the rules array",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-09T05:28:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b2550d4c2c54ad63226a048664084b67e5d8ee3d",
"body": null,
"is_bot": false,
"headline": "fix: do not overwrite existing values with route param values",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-09T05:28:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "02fe1506133ba78e1fb2d21ca924d81e3e2f3837",
"body": null,
"is_bot": false,
"headline": "build: move type coverage to code quality workflow, reduce to 98%",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-04T10:05:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "29c3c555af0c18ddd2d154bbae5bdb5a3e51a7e0",
"body": null,
"is_bot": false,
"headline": "build: Update sonarcloud scan action",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-04T10:05:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6775c5ef78a75405e237c709b88f4cd6f625bb83",
"body": null,
"is_bot": false,
"headline": "docs: Add docs to reflect support for union types and nullables",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-04T10:05:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b1f456c5a372b37a637071473ee190eba180194c",
"body": null,
"is_bot": false,
"headline": "feat: Support multiple types, fill missing nulls",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-04T10:05:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a2f48ccf65c0925a1c922e787707427aef42f817",
"body": null,
"is_bot": false,
"headline": "docs: Add better Output docs, and include toCollection()",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T17:00:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a6d208a815a1e313a57cb3d8f8ffe1dbccdc373e",
"body": "…peline",
"is_bot": false,
"headline": "fix: Re-enable the MissingProperties pipe for the WithoutValidationPi…",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T17:00:31Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a83a34a216a651ec7348d38d7c26e38b22d1ad96",
"body": null,
"is_bot": false,
"headline": "feat: Finalize PHP 8.4 support",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T16:36:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "648bc33272bc368e91c40433df5cb231c8a5292e",
"body": null,
"is_bot": false,
"headline": "docs: Update docs",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T16:26:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "ca7fd926db5fa0ff026b42813151599dbd0a9786",
"body": "… to validate",
"is_bot": false,
"headline": "feat: Add the ability to ->append() without validation, and ->valid()…",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T16:26:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "b47587e86a0536c22ad10033b15e4585daea82b1",
"body": null,
"is_bot": false,
"headline": "feat: Add WithoutValidation attribute for Laravel injection",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T16:26:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "80d297a95f87f7f8dc9becfbd0e981a6df432fc1",
"body": null,
"is_bot": false,
"headline": "refactor: return collections for Bag\\\\Internal\\\\Reflection",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T16:26:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "356aa30a6076fdc85a51aa110f316c7ebfdfe190",
"body": null,
"is_bot": false,
"headline": "feat: Add toCollection() method",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T13:12:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0a75a5f93bbfa936ecc4a72fdb80381da773074f",
"body": "fixes #55",
"is_bot": false,
"headline": "fix: use the applications Laravel validator when available",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2025-01-03T12:13:28Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "6fefafbfe1127a5f9fd30793a7cbd503a064cb2c",
"body": "Bumps [mermaid](https://github.com/mermaid-js/mermaid) from 10.9.0 to 10.9.3.\n- [Release notes](https://github.com/mermaid-js/mermaid/releases)\n- [Changelog](https://github.com/mermaid-js/mermaid/blob/develop/CHANGELOG.md)\n- [Commits](https://github.com/mermaid-js/mermaid/compare/v10.9.0...v10.9.3)\n\n---\nupdated-dependencies:\n- dependency-name: mermaid\n dependency-type: direct:development\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps-dev): bump mermaid from 10.9.0 to 10.9.3",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2024-12-06T00:06:05Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4f65d78058568ef45e5ef6f913f5aa11743e035a",
"body": "…^0.8.1 || ^0.9.0 || ^0.10.0\n\n---\nupdated-dependencies:\n- dependency-name: brick/money\n dependency-type: direct:production\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): update brick/money requirement from ^0.8.1 || ^0.9.0 to …",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2024-12-06T00:02:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "48941fb5b1f8c264385b0168a10221b20046f9e9",
"body": "…0.2.0 to ^0.1.25 || ^0.2.0 || ^0.3.0\n\n---\nupdated-dependencies:\n- dependency-name: laravel/prompts\n dependency-type: direct:development\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps-dev): update laravel/prompts requirement from ^0.1.25 || ^…",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2024-12-06T00:00:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "93cc0560b81666ca04ed55fa22e74ddb8e266fe9",
"body": null,
"is_bot": false,
"headline": "fix: Fix phpdocs for the \\Bag\\Attributes\\Factory constructor",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-12-05T23:56:40Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d13c07e91fa54f8d4f96518b7a6e1454a2a26f01",
"body": null,
"is_bot": false,
"headline": "fix: Allow additional object properties (fixes #54)",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-12-05T23:37:12Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a6f53ea91ebf9000d986a7c71d8463158efe1ac0",
"body": null,
"is_bot": false,
"headline": "build: Run pest in parallel",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-10-01T17:34:50Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f2c47e73fecdf0da594f465265ab75e5046354f6",
"body": null,
"is_bot": false,
"headline": "chore: bring codebase up to phpstan level 9",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-10-01T17:34:38Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "8ff35aa5336a0cd4eabd00798aaa7c8633cc6578",
"body": "Updates the requirements on [laravel/prompts](https://github.com/laravel/prompts) to permit the latest version.\n- [Release notes](https://github.com/laravel/prompts/releases)\n- [Changelog](https://github.com/laravel/prompts/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/laravel/prompts/compare/v0.1.25...v0.2.1)\n\n---\nupdated-dependencies:\n- dependency-name: laravel/prompts\n dependency-type: direct:development\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps-dev): update laravel/prompts requirement || ^0.2.0",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2024-10-01T17:21:34Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0054e5bd29c19581179bb033b5f0b7eaa18d269c",
"body": null,
"is_bot": false,
"headline": "docs: Link directly to the appropriate update docs",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-30T04:43:24Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "de9bfc80284131272fc19b00973b979d55a6b6b4",
"body": null,
"is_bot": false,
"headline": "docs: Fix broken link",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-30T04:40:51Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "42a8b5f4cf2dfdc3d49a1a7593810c716e38bc39",
"body": null,
"is_bot": false,
"headline": "feat: Add support for Named/Positional args to `::from()`",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-30T04:31:36Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "5622dd90c12f95a3ad8d9c22ec2cb1af81575b79",
"body": null,
"is_bot": false,
"headline": "fix: Ensure that nulls are supported when magic casting",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-26T06:57:25Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "aee73385f6ad8769521added5fe1c8c347db8426",
"body": null,
"is_bot": false,
"headline": "chore(deps): bump rollup from 4.0.0 to 4.22.3",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-26T06:57:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "81846dd7438650f4ac6c219be0a5a2f5a7c7884b",
"body": "Bumps [dompurify](https://github.com/cure53/DOMPurify) from 3.1.2 to 3.1.6.\n- [Release notes](https://github.com/cure53/DOMPurify/releases)\n- [Commits](https://github.com/cure53/DOMPurify/compare/3.1.2...3.1.6)\n\n---\nupdated-dependencies:\n- dependency-name: dompurify\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump dompurify from 3.1.2 to 3.1.6",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2024-09-26T06:57:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "750419c6d594814c69a0258c5aa7e20790a38673",
"body": "Bumps [rollup](https://github.com/rollup/rollup) from 4.16.4 to 4.22.4.\n- [Release notes](https://github.com/rollup/rollup/releases)\n- [Changelog](https://github.com/rollup/rollup/blob/master/CHANGELOG.md)\n- [Commits](https://github.com/rollup/rollup/compare/v4.16.4...v4.22.4)\n\n---\nupdated-dependencies:\n- dependency-name: rollup\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump rollup from 4.16.4 to 4.22.4",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2024-09-24T00:50:42Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "9933ec45f30e187c92c7e1445b8755580d0c652b",
"body": "Bumps [vite](https://github.com/vitejs/vite/tree/HEAD/packages/vite) from 5.2.10 to 5.4.6.\n- [Release notes](https://github.com/vitejs/vite/releases)\n- [Changelog](https://github.com/vitejs/vite/blob/v5.4.6/packages/vite/CHANGELOG.md)\n- [Commits](https://github.com/vitejs/vite/commits/v5.4.6/packages/vite)\n\n---\nupdated-dependencies:\n- dependency-name: vite\n dependency-type: indirect\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
"is_bot": true,
"headline": "chore(deps): bump vite from 5.2.10 to 5.4.6",
"author_name": "dependabot[bot]",
"author_login": "dependabot[bot]",
"committed_at": "2024-09-24T00:49:01Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "c6f39bc06505936399e7adf3549ae25c0e210963",
"body": null,
"is_bot": false,
"headline": "docs: Fix composer commands in CONTRIBUTING doc",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-21T17:46:29Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "d90ce25b12107dfec1ddb6c669f0f641b25e7d9b",
"body": null,
"is_bot": false,
"headline": "test: Start adding Architectural tests",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-21T17:45:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "41d2d681830f8c78eea144f9029048573f99cc37",
"body": null,
"is_bot": false,
"headline": "test: group Laravel 11+/Laravel 10+ eloquent tests",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-21T17:45:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "f167d72a37781423079dbaa37138f9850b4ac440",
"body": null,
"is_bot": false,
"headline": "test: remove testdox output",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-21T17:45:27Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "98148d5ee7f213f87dffcc11134f2d0bdf41424b",
"body": null,
"is_bot": false,
"headline": "feat: Add support for Unique and Exists validators",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-14T04:11:11Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "624d4abc274ddbdd10404b45ae2fdf69ba2ef606",
"body": null,
"is_bot": false,
"headline": "test: Fix coverage annotations",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-12T12:01:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "0e145b58384df0076f8b414ea2ce60920138d2e8",
"body": null,
"is_bot": false,
"headline": "build: Test Laravel 10/11 explicitly",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-12T12:01:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "4d9a843a698fd6abf36878dc06424a2db01ad7f8",
"body": null,
"is_bot": false,
"headline": "refactor: Move fromJsonString to WithJson concern",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-12T12:01:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bfa4b6ea3aa5216bcd796daff6c8cf16a431b0a8",
"body": null,
"is_bot": false,
"headline": "feat: Add initial support for PHP 8.4+",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-12T12:01:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "bcd7305bb3622b5020ceb3b6b17fb1830341a334",
"body": null,
"is_bot": false,
"headline": "test: Support Pest v3",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-12T12:01:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "132aebac2f3f729391a6eb2b2db5f44046ac53c0",
"body": null,
"is_bot": false,
"headline": "docs: Improve transformers docs",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-12T12:01:52Z",
"body_truncated": false,
"is_coding_agent": false
},
{
"oid": "a6150f910024f4d1507b767281a73781f3a309ed",
"body": null,
"is_bot": false,
"headline": "fix: Cleanup eloquent casting",
"author_name": "Davey Shafik",
"author_login": "dshafik",
"committed_at": "2024-09-12T12:01:52Z",
"body_truncated": false,
"is_coding_agent": false
}
],
"releases_count": 27,
"commits_last_year": 13,
"latest_release_at": "2026-04-22T20:53:49Z",
"latest_release_tag": "2.6.3",
"releases_from_tags": false,
"days_since_last_push": 91,
"active_weeks_last_year": 5,
"days_since_latest_release": 91,
"mean_days_between_releases": 43.6
},
"community": {
"has_readme": true,
"has_license": true,
"has_description": true,
"has_contributing": true,
"health_percentage": 75,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"ecosystem": {
"packages": [
{
"name": "beacon-hq/bag",
"exists": true,
"license": "MIT",
"keywords": [],
"ecosystem": "packagist",
"matches_repo": true,
"registry_url": "https://packagist.org/packages/beacon-hq/bag",
"is_deprecated": false,
"latest_version": "2.6.3",
"repository_url": "https://github.com/beacon-hq/bag",
"versions_count": 27,
"total_downloads": 16557,
"dependents_count": 3,
"deprecation_note": null,
"maintainers_count": null,
"monthly_downloads": 3126,
"first_published_at": null,
"latest_published_at": "2026-04-22T20:51:48Z",
"latest_version_yanked": null,
"days_since_latest_publish": 91
}
]
},
"popularity": {
"forks": 15,
"stars": 182,
"watchers": 3,
"fork_history": {
"days": [
{
"date": "2024-04-25",
"count": 1
},
{
"date": "2024-04-26",
"count": 1
},
{
"date": "2024-04-27",
"count": 1
},
{
"date": "2024-05-06",
"count": 1
},
{
"date": "2024-06-07",
"count": 1
},
{
"date": "2024-10-10",
"count": 1
},
{
"date": "2024-11-26",
"count": 1
},
{
"date": "2025-02-18",
"count": 1
},
{
"date": "2025-04-05",
"count": 1
},
{
"date": "2025-10-14",
"count": 1
},
{
"date": "2025-10-16",
"count": 1
},
{
"date": "2025-10-26",
"count": 2
},
{
"date": "2026-03-19",
"count": 1
},
{
"date": "2026-04-04",
"count": 1
}
],
"complete": true,
"collected": 15,
"total_forks": 15
},
"star_history": null,
"open_issues_and_prs": 15
},
"ai_readiness": {
"has_nix": false,
"example_dirs": [],
"has_llms_txt": false,
"has_dockerfile": false,
"has_mcp_signal": false,
"bootstrap_files": [],
"api_schema_files": [],
"has_devcontainer": false,
"typecheck_configs": [],
"toolchain_manifests": [],
"largest_source_bytes": 30773,
"source_files_sampled": 292,
"oversized_source_files": 0,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"dependencies": {
"manifests": [
"composer.json",
"package.json"
],
"advisories": {
"error": null,
"scope": "repository_graph",
"source": "osv",
"findings": [
{
"name": "rollup",
"direct": false,
"version": "4.37.0",
"severity": "critical",
"ecosystem": "npm",
"cvss_score": 9.1,
"advisory_ids": [
"GHSA-mw96-cpmx-2vgc"
],
"fixed_version": "4.59.0",
"advisory_count": 1,
"oldest_advisory_days": 147
},
{
"name": "lodash",
"direct": false,
"version": "4.17.21",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 8.1,
"advisory_ids": [
"GHSA-f23m-r3pf-42rh",
"GHSA-r5fr-rjxr-66jc",
"GHSA-xxjr-mmjv-4gpg"
],
"fixed_version": "4.18.0",
"advisory_count": 3,
"oldest_advisory_days": 182
},
{
"name": "lodash-es",
"direct": false,
"version": "4.17.21",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 8.1,
"advisory_ids": [
"GHSA-f23m-r3pf-42rh",
"GHSA-r5fr-rjxr-66jc",
"GHSA-xxjr-mmjv-4gpg"
],
"fixed_version": "4.18.0",
"advisory_count": 3,
"oldest_advisory_days": 182
},
{
"name": "uuid",
"direct": false,
"version": "9.0.1",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-w5hq-g745-h8pq"
],
"fixed_version": "13.0.1",
"advisory_count": 1,
"oldest_advisory_days": 91
},
{
"name": "vite",
"direct": false,
"version": "5.4.16",
"severity": "high",
"ecosystem": "npm",
"cvss_score": 7.5,
"advisory_ids": [
"GHSA-356w-63v5-8wf4",
"GHSA-4w7w-66w2-5vf9",
"GHSA-859w-5945-r5v3",
"GHSA-93m4-6634-74q7",
"GHSA-fx2h-pf6j-xcff",
"GHSA-g4jq-h2w9-997c",
"GHSA-jqfw-vq24-v9c3",
"GHSA-v6wh-96g9-6wx3",
"GHSA-xcj6-pq6g-qj4x"
],
"fixed_version": "8.0.16",
"advisory_count": 9,
"oldest_advisory_days": 474
},
{
"name": "diff",
"direct": false,
"version": "5.2.0",
"severity": "moderate",
"ecosystem": "npm",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-73rr-hh4g-fpgx"
],
"fixed_version": "8.0.3",
"advisory_count": 1,
"oldest_advisory_days": 189
},
{
"name": "dompurify",
"direct": false,
"version": "3.1.6",
"severity": "moderate",
"ecosystem": "npm",
"cvss_score": 6.9,
"advisory_ids": [
"GHSA-39q2-94rc-95cp",
"GHSA-76mc-f452-cxcm",
"GHSA-c2j3-45gr-mqc4",
"GHSA-cj63-jhhr-wcxv",
"GHSA-cjmm-f4jc-qw8r",
"GHSA-cmwh-pvxp-8882",
"GHSA-crv5-9vww-q3g8",
"GHSA-gvmj-g25r-r7wr",
"GHSA-h7mw-gpvr-xq4m",
"GHSA-h8r8-wccr-v5f2"
],
"fixed_version": "3.4.12",
"advisory_count": 19,
"oldest_advisory_days": 523
},
{
"name": "esbuild",
"direct": false,
"version": "0.21.5",
"severity": "moderate",
"ecosystem": "npm",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-67mh-4wv8-2f99"
],
"fixed_version": "0.25.0",
"advisory_count": 1,
"oldest_advisory_days": 527
},
{
"name": "mdast-util-to-hast",
"direct": false,
"version": "13.2.0",
"severity": "moderate",
"ecosystem": "npm",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-4fh9-h7wg-q85m"
],
"fixed_version": "13.2.1",
"advisory_count": 1,
"oldest_advisory_days": 232
},
{
"name": "mermaid",
"direct": false,
"version": "10.9.3",
"severity": "moderate",
"ecosystem": "npm",
"cvss_score": 5.3,
"advisory_ids": [
"GHSA-6m6c-36f7-fhxh",
"GHSA-7rqq-prvp-x9jh",
"GHSA-87f9-hvmw-gh4p",
"GHSA-ghcm-xqfw-q4vr",
"GHSA-xcj9-5m2h-648r"
],
"fixed_version": "11.15.0",
"advisory_count": 5,
"oldest_advisory_days": 337
},
{
"name": "postcss",
"direct": false,
"version": "8.5.3",
"severity": "moderate",
"ecosystem": "npm",
"cvss_score": 6.1,
"advisory_ids": [
"GHSA-qx2v-qp2m-jg93"
],
"fixed_version": "8.5.10",
"advisory_count": 1,
"oldest_advisory_days": 89
}
],
"collected": true,
"malicious": [],
"truncated": false,
"by_severity": {
"high": 4,
"critical": 1,
"moderate": 6
},
"advisory_count": 45,
"affected_count": 11,
"assessed_count": 312,
"malicious_count": 0,
"assessed_package": null,
"unassessed_count": 22,
"direct_affected_count": 0
},
"ecosystems": [
"npm",
"packagist"
],
"dependencies": [
{
"name": "brick/money",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^0.8.1 || ^0.9.0 || ^0.10.0"
},
{
"name": "illuminate/collections",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^10|^11|^12|^13"
},
{
"name": "illuminate/database",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^10|^11|^12|^13"
},
{
"name": "illuminate/support",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^10|^11|^12|^13"
},
{
"name": "illuminate/validation",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^10|^11|^12|^13"
},
{
"name": "nette/php-generator",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^4.1"
},
{
"name": "prinsfrank/standards",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^3.8"
},
{
"name": "ramsey/uuid",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^4.7"
},
{
"name": "league/pipeline",
"manifest": "composer.json",
"ecosystem": "packagist",
"version_constraint": "^1.0"
}
],
"all_dependencies": {
"error": null,
"source": "github-sbom",
"packages": [
{
"name": "brick/money",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "illuminate/collections",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "illuminate/database",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "illuminate/support",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "illuminate/validation",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "league/pipeline",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "nette/php-generator",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "prinsfrank/standards",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "ramsey/uuid",
"direct": true,
"version": null,
"ecosystem": "packagist"
},
{
"name": "@algolia/autocomplete-core",
"direct": false,
"version": "1.17.7",
"ecosystem": "npm"
},
{
"name": "@algolia/autocomplete-plugin-algolia-insights",
"direct": false,
"version": "1.17.7",
"ecosystem": "npm"
},
{
"name": "@algolia/autocomplete-preset-algolia",
"direct": false,
"version": "1.17.7",
"ecosystem": "npm"
},
{
"name": "@algolia/autocomplete-shared",
"direct": false,
"version": "1.17.7",
"ecosystem": "npm"
},
{
"name": "@algolia/client-abtesting",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/client-analytics",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/client-common",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/client-insights",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/client-personalization",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/client-query-suggestions",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/client-search",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/ingestion",
"direct": false,
"version": "1.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/monitoring",
"direct": false,
"version": "1.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/recommend",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/requester-browser-xhr",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/requester-fetch",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@algolia/requester-node-http",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "@babel/helper-string-parser",
"direct": false,
"version": "7.25.9",
"ecosystem": "npm"
},
{
"name": "@babel/helper-validator-identifier",
"direct": false,
"version": "7.25.9",
"ecosystem": "npm"
},
{
"name": "@babel/parser",
"direct": false,
"version": "7.27.0",
"ecosystem": "npm"
},
{
"name": "@babel/types",
"direct": false,
"version": "7.27.0",
"ecosystem": "npm"
},
{
"name": "@braintree/sanitize-url",
"direct": false,
"version": "6.0.4",
"ecosystem": "npm"
},
{
"name": "@docsearch/css",
"direct": false,
"version": "3.8.2",
"ecosystem": "npm"
},
{
"name": "@docsearch/js",
"direct": false,
"version": "3.8.2",
"ecosystem": "npm"
},
{
"name": "@docsearch/react",
"direct": false,
"version": "3.8.2",
"ecosystem": "npm"
},
{
"name": "@esbuild/aix-ppc64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/android-arm",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/android-arm64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/android-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/darwin-arm64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/darwin-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/freebsd-arm64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/freebsd-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-arm",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-arm64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-ia32",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-loong64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-mips64el",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-ppc64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-riscv64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-s390x",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/linux-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/netbsd-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/openbsd-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/sunos-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/win32-arm64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/win32-ia32",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@esbuild/win32-x64",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "@iconify-json/simple-icons",
"direct": false,
"version": "1.2.29",
"ecosystem": "npm"
},
{
"name": "@iconify/types",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "@jridgewell/sourcemap-codec",
"direct": false,
"version": "1.5.0",
"ecosystem": "npm"
},
{
"name": "@mermaid-js/mermaid-mindmap",
"direct": false,
"version": "9.3.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-android-arm-eabi",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-android-arm64",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-darwin-arm64",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-darwin-x64",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-freebsd-arm64",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-freebsd-x64",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm-gnueabihf",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm-musleabihf",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm64-gnu",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-arm64-musl",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-loongarch64-gnu",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-powerpc64le-gnu",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-riscv64-gnu",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-riscv64-musl",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-s390x-gnu",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-x64-gnu",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-linux-x64-musl",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-win32-arm64-msvc",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-win32-ia32-msvc",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@rollup/rollup-win32-x64-msvc",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/core",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/core",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/engine-javascript",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/engine-javascript",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/engine-oniguruma",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/engine-oniguruma",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/langs",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/langs",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/themes",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/themes",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/transformers",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/transformers",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/types",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "@shikijs/types",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "@shikijs/vscode-textmate",
"direct": false,
"version": "10.0.2",
"ecosystem": "npm"
},
{
"name": "@types/d3-scale",
"direct": false,
"version": "4.0.9",
"ecosystem": "npm"
},
{
"name": "@types/d3-scale-chromatic",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "@types/d3-time",
"direct": false,
"version": "3.0.4",
"ecosystem": "npm"
},
{
"name": "@types/debug",
"direct": false,
"version": "4.1.12",
"ecosystem": "npm"
},
{
"name": "@types/estree",
"direct": false,
"version": "1.0.6",
"ecosystem": "npm"
},
{
"name": "@types/hast",
"direct": false,
"version": "3.0.4",
"ecosystem": "npm"
},
{
"name": "@types/linkify-it",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "@types/lodash",
"direct": false,
"version": "4.17.16",
"ecosystem": "npm"
},
{
"name": "@types/markdown-it",
"direct": false,
"version": "14.1.2",
"ecosystem": "npm"
},
{
"name": "@types/mdast",
"direct": false,
"version": "3.0.15",
"ecosystem": "npm"
},
{
"name": "@types/mdast",
"direct": false,
"version": "4.0.4",
"ecosystem": "npm"
},
{
"name": "@types/mdurl",
"direct": false,
"version": "2.0.0",
"ecosystem": "npm"
},
{
"name": "@types/ms",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "@types/unist",
"direct": false,
"version": "2.0.11",
"ecosystem": "npm"
},
{
"name": "@types/unist",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "@types/web-bluetooth",
"direct": false,
"version": "0.0.20",
"ecosystem": "npm"
},
{
"name": "@types/web-bluetooth",
"direct": false,
"version": "0.0.21",
"ecosystem": "npm"
},
{
"name": "@ungap/structured-clone",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "@vitejs/plugin-vue",
"direct": false,
"version": "5.2.3",
"ecosystem": "npm"
},
{
"name": "@vue/compiler-core",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/compiler-dom",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/compiler-sfc",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/compiler-ssr",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/devtools-api",
"direct": false,
"version": "7.7.2",
"ecosystem": "npm"
},
{
"name": "@vue/devtools-kit",
"direct": false,
"version": "7.7.2",
"ecosystem": "npm"
},
{
"name": "@vue/devtools-shared",
"direct": false,
"version": "7.7.2",
"ecosystem": "npm"
},
{
"name": "@vue/reactivity",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/runtime-core",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/runtime-dom",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/server-renderer",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vue/shared",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "@vueuse/core",
"direct": false,
"version": "11.3.0",
"ecosystem": "npm"
},
{
"name": "@vueuse/core",
"direct": false,
"version": "12.8.2",
"ecosystem": "npm"
},
{
"name": "@vueuse/integrations",
"direct": false,
"version": "11.3.0",
"ecosystem": "npm"
},
{
"name": "@vueuse/integrations",
"direct": false,
"version": "12.8.2",
"ecosystem": "npm"
},
{
"name": "@vueuse/metadata",
"direct": false,
"version": "11.3.0",
"ecosystem": "npm"
},
{
"name": "@vueuse/metadata",
"direct": false,
"version": "12.8.2",
"ecosystem": "npm"
},
{
"name": "@vueuse/shared",
"direct": false,
"version": "11.3.0",
"ecosystem": "npm"
},
{
"name": "@vueuse/shared",
"direct": false,
"version": "12.8.2",
"ecosystem": "npm"
},
{
"name": "algoliasearch",
"direct": false,
"version": "5.22.0",
"ecosystem": "npm"
},
{
"name": "birpc",
"direct": false,
"version": "0.2.19",
"ecosystem": "npm"
},
{
"name": "ccount",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "character-entities",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "character-entities-html4",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "character-entities-legacy",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "cli-color",
"direct": false,
"version": "2.0.4",
"ecosystem": "npm"
},
{
"name": "comma-separated-tokens",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "commander",
"direct": false,
"version": "7.2.0",
"ecosystem": "npm"
},
{
"name": "commander",
"direct": false,
"version": "8.3.0",
"ecosystem": "npm"
},
{
"name": "copy-anything",
"direct": false,
"version": "3.0.5",
"ecosystem": "npm"
},
{
"name": "cose-base",
"direct": false,
"version": "1.0.3",
"ecosystem": "npm"
},
{
"name": "cose-base",
"direct": false,
"version": "2.2.0",
"ecosystem": "npm"
},
{
"name": "csstype",
"direct": false,
"version": "3.1.3",
"ecosystem": "npm"
},
{
"name": "cytoscape",
"direct": false,
"version": "3.31.1",
"ecosystem": "npm"
},
{
"name": "cytoscape-cose-bilkent",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "cytoscape-fcose",
"direct": false,
"version": "2.2.0",
"ecosystem": "npm"
},
{
"name": "d",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "d3",
"direct": false,
"version": "7.9.0",
"ecosystem": "npm"
},
{
"name": "d3-array",
"direct": false,
"version": "2.12.1",
"ecosystem": "npm"
},
{
"name": "d3-array",
"direct": false,
"version": "3.2.4",
"ecosystem": "npm"
},
{
"name": "d3-axis",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "d3-brush",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "d3-chord",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-color",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-contour",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "d3-delaunay",
"direct": false,
"version": "6.0.4",
"ecosystem": "npm"
},
{
"name": "d3-dispatch",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-drag",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "d3-dsv",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-ease",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-fetch",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-force",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "d3-format",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-geo",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "d3-hierarchy",
"direct": false,
"version": "3.1.2",
"ecosystem": "npm"
},
{
"name": "d3-interpolate",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-path",
"direct": false,
"version": "1.0.9",
"ecosystem": "npm"
},
{
"name": "d3-path",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-polygon",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-quadtree",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-random",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-sankey",
"direct": false,
"version": "0.12.3",
"ecosystem": "npm"
},
{
"name": "d3-scale",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "d3-scale-chromatic",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-selection",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "d3-shape",
"direct": false,
"version": "1.3.7",
"ecosystem": "npm"
},
{
"name": "d3-shape",
"direct": false,
"version": "3.2.0",
"ecosystem": "npm"
},
{
"name": "d3-time",
"direct": false,
"version": "3.1.0",
"ecosystem": "npm"
},
{
"name": "d3-time-format",
"direct": false,
"version": "4.1.0",
"ecosystem": "npm"
},
{
"name": "d3-timer",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-transition",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "d3-zoom",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "dagre-d3-es",
"direct": false,
"version": "7.0.10",
"ecosystem": "npm"
},
{
"name": "dayjs",
"direct": false,
"version": "1.11.13",
"ecosystem": "npm"
},
{
"name": "debug",
"direct": false,
"version": "4.4.0",
"ecosystem": "npm"
},
{
"name": "decode-named-character-reference",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "delaunator",
"direct": false,
"version": "5.0.1",
"ecosystem": "npm"
},
{
"name": "dequal",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "devlop",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "diff",
"direct": false,
"version": "5.2.0",
"ecosystem": "npm"
},
{
"name": "dompurify",
"direct": false,
"version": "3.1.6",
"ecosystem": "npm"
},
{
"name": "elkjs",
"direct": false,
"version": "0.9.3",
"ecosystem": "npm"
},
{
"name": "emoji-regex-xs",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "entities",
"direct": false,
"version": "4.5.0",
"ecosystem": "npm"
},
{
"name": "es5-ext",
"direct": false,
"version": "0.10.64",
"ecosystem": "npm"
},
{
"name": "es6-iterator",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "es6-symbol",
"direct": false,
"version": "3.1.4",
"ecosystem": "npm"
},
{
"name": "es6-weak-map",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "esbuild",
"direct": false,
"version": "0.21.5",
"ecosystem": "npm"
},
{
"name": "esniff",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "estree-walker",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "event-emitter",
"direct": false,
"version": "0.3.5",
"ecosystem": "npm"
},
{
"name": "ext",
"direct": false,
"version": "1.7.0",
"ecosystem": "npm"
},
{
"name": "focus-trap",
"direct": false,
"version": "7.6.4",
"ecosystem": "npm"
},
{
"name": "fsevents",
"direct": false,
"version": "2.3.3",
"ecosystem": "npm"
},
{
"name": "hast-util-to-html",
"direct": false,
"version": "9.0.5",
"ecosystem": "npm"
},
{
"name": "hast-util-whitespace",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "hookable",
"direct": false,
"version": "5.5.3",
"ecosystem": "npm"
},
{
"name": "html-void-elements",
"direct": false,
"version": "3.0.0",
"ecosystem": "npm"
},
{
"name": "iconv-lite",
"direct": false,
"version": "0.6.3",
"ecosystem": "npm"
},
{
"name": "internmap",
"direct": false,
"version": "1.0.1",
"ecosystem": "npm"
},
{
"name": "internmap",
"direct": false,
"version": "2.0.3",
"ecosystem": "npm"
},
{
"name": "is-promise",
"direct": false,
"version": "2.2.2",
"ecosystem": "npm"
},
{
"name": "is-what",
"direct": false,
"version": "4.1.16",
"ecosystem": "npm"
},
{
"name": "json5",
"direct": false,
"version": "2.2.3",
"ecosystem": "npm"
},
{
"name": "katex",
"direct": false,
"version": "0.16.21",
"ecosystem": "npm"
},
{
"name": "khroma",
"direct": false,
"version": "2.1.0",
"ecosystem": "npm"
},
{
"name": "kleur",
"direct": false,
"version": "4.1.5",
"ecosystem": "npm"
},
{
"name": "layout-base",
"direct": false,
"version": "1.0.2",
"ecosystem": "npm"
},
{
"name": "layout-base",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "lodash",
"direct": false,
"version": "4.17.21",
"ecosystem": "npm"
},
{
"name": "lodash-es",
"direct": false,
"version": "4.17.21",
"ecosystem": "npm"
},
{
"name": "lru-queue",
"direct": false,
"version": "0.1.0",
"ecosystem": "npm"
},
{
"name": "magic-string",
"direct": false,
"version": "0.30.17",
"ecosystem": "npm"
},
{
"name": "mark.js",
"direct": false,
"version": "8.11.1",
"ecosystem": "npm"
},
{
"name": "markdown-it-task-lists",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "mdast-util-from-markdown",
"direct": false,
"version": "1.3.1",
"ecosystem": "npm"
},
{
"name": "mdast-util-to-hast",
"direct": false,
"version": "13.2.0",
"ecosystem": "npm"
},
{
"name": "mdast-util-to-string",
"direct": false,
"version": "3.2.0",
"ecosystem": "npm"
},
{
"name": "memoizee",
"direct": false,
"version": "0.4.17",
"ecosystem": "npm"
},
{
"name": "mermaid",
"direct": false,
"version": "10.9.3",
"ecosystem": "npm"
},
{
"name": "micromark",
"direct": false,
"version": "3.2.0",
"ecosystem": "npm"
},
{
"name": "micromark-core-commonmark",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-factory-destination",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-factory-label",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-factory-space",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-factory-title",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-factory-whitespace",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-character",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-character",
"direct": false,
"version": "2.1.1",
"ecosystem": "npm"
},
{
"name": "micromark-util-chunked",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-classify-character",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-combine-extensions",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-decode-numeric-character-reference",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-decode-string",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-encode",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-encode",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "micromark-util-html-tag-name",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-normalize-identifier",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-resolve-all",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-sanitize-uri",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-sanitize-uri",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "micromark-util-subtokenize",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-symbol",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-symbol",
"direct": false,
"version": "2.0.1",
"ecosystem": "npm"
},
{
"name": "micromark-util-types",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "micromark-util-types",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "minisearch",
"direct": false,
"version": "7.1.2",
"ecosystem": "npm"
},
{
"name": "mitt",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "mri",
"direct": false,
"version": "1.2.0",
"ecosystem": "npm"
},
{
"name": "ms",
"direct": false,
"version": "2.1.3",
"ecosystem": "npm"
},
{
"name": "nanoid",
"direct": false,
"version": "3.3.11",
"ecosystem": "npm"
},
{
"name": "next-tick",
"direct": false,
"version": "1.1.0",
"ecosystem": "npm"
},
{
"name": "non-layered-tidy-tree-layout",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "oniguruma-to-es",
"direct": false,
"version": "2.3.0",
"ecosystem": "npm"
},
{
"name": "oniguruma-to-es",
"direct": false,
"version": "3.1.1",
"ecosystem": "npm"
},
{
"name": "perfect-debounce",
"direct": false,
"version": "1.0.0",
"ecosystem": "npm"
},
{
"name": "picocolors",
"direct": false,
"version": "1.1.1",
"ecosystem": "npm"
},
{
"name": "postcss",
"direct": false,
"version": "8.5.3",
"ecosystem": "npm"
},
{
"name": "preact",
"direct": false,
"version": "10.26.4",
"ecosystem": "npm"
},
{
"name": "property-information",
"direct": false,
"version": "7.0.0",
"ecosystem": "npm"
},
{
"name": "regex",
"direct": false,
"version": "5.1.1",
"ecosystem": "npm"
},
{
"name": "regex",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "regex-recursion",
"direct": false,
"version": "5.1.1",
"ecosystem": "npm"
},
{
"name": "regex-recursion",
"direct": false,
"version": "6.0.2",
"ecosystem": "npm"
},
{
"name": "regex-utilities",
"direct": false,
"version": "2.3.0",
"ecosystem": "npm"
},
{
"name": "rfdc",
"direct": false,
"version": "1.4.1",
"ecosystem": "npm"
},
{
"name": "robust-predicates",
"direct": false,
"version": "3.0.2",
"ecosystem": "npm"
},
{
"name": "rollup",
"direct": false,
"version": "4.37.0",
"ecosystem": "npm"
},
{
"name": "rw",
"direct": false,
"version": "1.3.3",
"ecosystem": "npm"
},
{
"name": "sade",
"direct": false,
"version": "1.8.1",
"ecosystem": "npm"
},
{
"name": "safer-buffer",
"direct": false,
"version": "2.1.2",
"ecosystem": "npm"
},
{
"name": "search-insights",
"direct": false,
"version": "2.17.3",
"ecosystem": "npm"
},
{
"name": "shiki",
"direct": false,
"version": "1.29.2",
"ecosystem": "npm"
},
{
"name": "shiki",
"direct": false,
"version": "2.5.0",
"ecosystem": "npm"
},
{
"name": "source-map-js",
"direct": false,
"version": "1.2.1",
"ecosystem": "npm"
},
{
"name": "space-separated-tokens",
"direct": false,
"version": "2.0.2",
"ecosystem": "npm"
},
{
"name": "speakingurl",
"direct": false,
"version": "14.0.1",
"ecosystem": "npm"
},
{
"name": "stringify-entities",
"direct": false,
"version": "4.0.4",
"ecosystem": "npm"
},
{
"name": "stylis",
"direct": false,
"version": "4.3.6",
"ecosystem": "npm"
},
{
"name": "superjson",
"direct": false,
"version": "2.2.2",
"ecosystem": "npm"
},
{
"name": "tabbable",
"direct": false,
"version": "6.2.0",
"ecosystem": "npm"
},
{
"name": "timers-ext",
"direct": false,
"version": "0.1.8",
"ecosystem": "npm"
},
{
"name": "trim-lines",
"direct": false,
"version": "3.0.1",
"ecosystem": "npm"
},
{
"name": "ts-dedent",
"direct": false,
"version": "2.2.0",
"ecosystem": "npm"
},
{
"name": "type",
"direct": false,
"version": "2.7.3",
"ecosystem": "npm"
},
{
"name": "unist-util-is",
"direct": false,
"version": "6.0.0",
"ecosystem": "npm"
},
{
"name": "unist-util-position",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "unist-util-stringify-position",
"direct": false,
"version": "3.0.3",
"ecosystem": "npm"
},
{
"name": "unist-util-stringify-position",
"direct": false,
"version": "4.0.0",
"ecosystem": "npm"
},
{
"name": "unist-util-visit",
"direct": false,
"version": "5.0.0",
"ecosystem": "npm"
},
{
"name": "unist-util-visit-parents",
"direct": false,
"version": "6.0.1",
"ecosystem": "npm"
},
{
"name": "uuid",
"direct": false,
"version": "9.0.1",
"ecosystem": "npm"
},
{
"name": "uvu",
"direct": false,
"version": "0.5.6",
"ecosystem": "npm"
},
{
"name": "vfile",
"direct": false,
"version": "6.0.3",
"ecosystem": "npm"
},
{
"name": "vfile-message",
"direct": false,
"version": "4.0.2",
"ecosystem": "npm"
},
{
"name": "vite",
"direct": false,
"version": "5.4.16",
"ecosystem": "npm"
},
{
"name": "vitepress",
"direct": false,
"version": "1.5.0",
"ecosystem": "npm"
},
{
"name": "vitepress",
"direct": false,
"version": "1.6.3",
"ecosystem": "npm"
},
{
"name": "vitepress-plugin-mermaid",
"direct": false,
"version": "2.0.17",
"ecosystem": "npm"
},
{
"name": "vitepress-versioning-plugin",
"direct": false,
"version": "1.3.0",
"ecosystem": "npm"
},
{
"name": "vue",
"direct": false,
"version": "3.5.13",
"ecosystem": "npm"
},
{
"name": "vue-demi",
"direct": false,
"version": "0.14.10",
"ecosystem": "npm"
},
{
"name": "web-worker",
"direct": false,
"version": "1.5.0",
"ecosystem": "npm"
},
{
"name": "zwitch",
"direct": false,
"version": "2.0.4",
"ecosystem": "npm"
},
{
"name": "captainhook/captainhook-phar",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "captainhook/hook-installer",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "larastan/larastan",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "laravel/pint",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "laravel/prompts",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "orchestra/pest-plugin-testbench",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "pestphp/pest",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "pestphp/pest-plugin-faker",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "pestphp/pest-plugin-type-coverage",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "php",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "ramsey/conventional-commits",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "roave/security-advisories",
"direct": false,
"version": null,
"ecosystem": "packagist"
},
{
"name": "symfony/var-dumper",
"direct": false,
"version": null,
"ecosystem": "packagist"
}
],
"collected": true,
"truncated": false,
"total_count": 334,
"direct_count": 9,
"indirect_count": 325
}
},
"maintainership": {
"issues": {
"open_prs": 11,
"merged_prs": 84,
"open_issues": 4,
"closed_ratio": 0.8,
"closed_issues": 16,
"closed_unmerged_prs": 14
},
"bus_factor": 1,
"bot_contributors": 1,
"top_contributors": [
{
"type": "User",
"login": "dshafik",
"commits": 169,
"avatar_url": "https://avatars.githubusercontent.com/u/58074?v=4"
},
{
"type": "User",
"login": "elazar",
"commits": 2,
"avatar_url": "https://avatars.githubusercontent.com/u/15487?v=4"
},
{
"type": "User",
"login": "chuckadams",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/3925?v=4"
},
{
"type": "User",
"login": "emmanix2002",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/456165?v=4"
},
{
"type": "User",
"login": "nicekiwi",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/738975?v=4"
},
{
"type": "User",
"login": "raphaelstolt",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/48225?v=4"
},
{
"type": "User",
"login": "theofidry",
"commits": 1,
"avatar_url": "https://avatars.githubusercontent.com/u/5175937?v=4"
}
],
"contributors_sampled": 7,
"top_contributor_share": 0.96
},
"quality_signals": {
"has_ci": true,
"has_tests": true,
"ci_workflows": [
"code-quality.yaml",
"deploy.yaml",
"tests.yaml"
],
"has_docs_dir": true,
"linter_configs": [
"phpstan.neon"
],
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"security_signals": {
"lockfiles": [
"package-lock.json"
],
"scorecard": {
"checks": [
{
"name": "Binary-Artifacts",
"score": 10,
"reason": "no binaries found in the repo",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
},
{
"name": "Branch-Protection",
"score": 0,
"reason": "branch protection not enabled on development/release branches",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
},
{
"name": "CI-Tests",
"score": 5,
"reason": "9 out of 16 merged PRs checked by a CI test -- score normalized to 5",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
},
{
"name": "CII-Best-Practices",
"score": 0,
"reason": "no effort to earn an OpenSSF best practices badge detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
},
{
"name": "Code-Review",
"score": 0,
"reason": "Found 2/23 approved changesets -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
},
{
"name": "Contributors",
"score": 10,
"reason": "project has 3 contributing companies or organizations -- score normalized to 10",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
},
{
"name": "Dangerous-Workflow",
"score": null,
"reason": "no workflows found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
},
{
"name": "Dependency-Update-Tool",
"score": 10,
"reason": "update tool detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
},
{
"name": "Fuzzing",
"score": 0,
"reason": "project is not fuzzed",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
},
{
"name": "License",
"score": 10,
"reason": "license file detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
},
{
"name": "Maintained",
"score": 0,
"reason": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
},
{
"name": "Packaging",
"score": null,
"reason": "packaging workflow not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
},
{
"name": "Pinned-Dependencies",
"score": null,
"reason": "no dependencies found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
},
{
"name": "SAST",
"score": 4,
"reason": "SAST tool is not run on all commits -- score normalized to 4",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
},
{
"name": "Security-Policy",
"score": 0,
"reason": "security policy file not detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
},
{
"name": "Signed-Releases",
"score": null,
"reason": "no releases found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
},
{
"name": "Token-Permissions",
"score": null,
"reason": "No tokens found",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
},
{
"name": "Vulnerabilities",
"score": 10,
"reason": "0 existing vulnerabilities detected",
"documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
}
],
"commit": "785dfee16cd486e7ed17cd701221102e3da55d97",
"ran_at": "2026-07-23T00:08:28Z",
"aggregate_score": 4.4,
"scorecard_version": "v5.5.0"
},
"has_codeql_workflow": false,
"has_security_policy": false,
"has_dependabot_config": true
},
"contribution_flow": {
"collected": true,
"ci_last_run_at": "2026-04-22T20:58:24Z",
"oldest_open_prs": [
{
"number": 49,
"created_at": "2024-10-05T03:41:29Z",
"last_comment_at": "2024-10-06T06:16:17Z",
"last_comment_author": "sonarqubecloud"
},
{
"number": 50,
"created_at": "2024-10-06T06:29:51Z",
"last_comment_at": "2024-10-06T06:31:22Z",
"last_comment_author": "sonarqubecloud"
},
{
"number": 82,
"created_at": "2025-02-25T11:55:15Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 110,
"created_at": "2025-08-22T22:58:55Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 117,
"created_at": "2025-10-21T06:58:11Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 119,
"created_at": "2025-10-26T20:54:06Z",
"last_comment_at": "2026-01-14T12:46:28Z",
"last_comment_author": "jakewtaylor"
},
{
"number": 121,
"created_at": "2025-12-02T03:31:54Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 122,
"created_at": "2026-01-22T00:19:11Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 123,
"created_at": "2026-01-23T02:34:37Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 124,
"created_at": "2026-01-26T14:38:00Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 125,
"created_at": "2026-02-27T09:06:09Z",
"last_comment_at": null,
"last_comment_author": null
}
],
"last_merged_pr_at": "2026-04-22T20:57:15Z",
"ci_last_conclusion": "SUCCESS",
"oldest_open_issues": [
{
"number": 30,
"created_at": "2024-05-12T20:05:20Z",
"last_comment_at": "2024-05-12T21:59:39Z",
"last_comment_author": "adrian-enspired"
},
{
"number": 74,
"created_at": "2025-01-28T20:31:31Z",
"last_comment_at": "2025-01-29T15:53:58Z",
"last_comment_author": "agentphoenix"
},
{
"number": 120,
"created_at": "2025-11-19T11:26:09Z",
"last_comment_at": null,
"last_comment_author": null
},
{
"number": 129,
"created_at": "2026-06-25T05:28:13Z",
"last_comment_at": "2026-06-25T05:29:53Z",
"last_comment_author": "rxrdev"
}
]
}
},
"config": {
"disabled_metrics": [],
"disabled_categories": [],
"disabled_components": {}
},
"source": {
"url": "https://github.com/beacon-hq/bag",
"host": "github.com",
"name": "bag",
"owner": "beacon-hq"
},
"metrics": {
"overall": {
"key": "overall",
"band": "moderate",
"name": "Overall health",
"note": null,
"notes": [],
"value": 60,
"inputs": {
"security": 55,
"vitality": 50,
"community": 62,
"governance": 58,
"engineering": 76
},
"components": []
},
"categories": [
{
"key": "vitality",
"band": "moderate",
"name": "Vitality",
"value": 50,
"weight": 0.22,
"metrics": [
{
"key": "development_activity",
"band": "critical",
"name": "Development activity",
"note": null,
"notes": [],
"value": 24,
"inputs": {
"commits_last_year": 13,
"human_commit_share": 0.91,
"days_since_last_push": 91,
"active_weeks_last_year": 5
},
"components": [
{
"key": "push_recency",
"name": "Push recency",
"detail": "last push 91 days ago",
"points": 9.9,
"status": "partial",
"details": [
{
"code": "push_recency",
"params": {
"days": 91
}
}
],
"max_points": 36
},
{
"key": "commit_cadence",
"name": "Commit cadence",
"detail": "5/52 weeks with commits",
"points": 3.5,
"status": "partial",
"details": [
{
"code": "commit_cadence_weeks",
"params": {
"weeks": 5
}
}
],
"max_points": 36
},
{
"key": "commit_volume",
"name": "Commit volume",
"detail": "13 commits in the last year",
"points": 10.3,
"status": "partial",
"details": [
{
"code": "commits_last_year",
"params": {
"count": 13
}
}
],
"max_points": 18
},
{
"key": "openssf_scorecard_maintained",
"name": "OpenSSF Scorecard: Maintained",
"detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
},
{
"key": "release_discipline",
"band": "excellent",
"name": "Release discipline",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_signed_releases"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 90,
"inputs": {
"releases_count": 27,
"latest_release_tag": "2.6.3",
"releases_from_tags": false,
"days_since_latest_release": 91,
"mean_days_between_releases": 43.6
},
"components": [
{
"key": "ships_releases",
"name": "Ships releases",
"detail": "27 releases published",
"points": 27,
"status": "met",
"details": [
{
"code": "releases_published",
"params": {
"count": 27
}
}
],
"max_points": 27
},
{
"key": "release_recency",
"name": "Release recency",
"detail": "latest release 91 days ago",
"points": 27,
"status": "partial",
"details": [
{
"code": "release_recency",
"params": {
"days": 91
}
}
],
"max_points": 36
},
{
"key": "release_cadence",
"name": "Release cadence",
"detail": "a release every ~43.6 days",
"points": 27,
"status": "met",
"details": [
{
"code": "release_cadence",
"params": {
"gap": 43.6
}
}
],
"max_points": 27
},
{
"key": "openssf_scorecard_signed_releases",
"name": "OpenSSF Scorecard: Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "abandonment",
"band": "excellent",
"name": "Abandonment",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"cap": null,
"state": "maintained",
"guards": [],
"signals": [],
"red_flag": false,
"multiplier_pct": 100,
"declared_reason": null,
"unverified_reason": null,
"unanswered_open_prs": null,
"unanswered_open_issues": null,
"days_since_last_merged_pr": null,
"days_since_last_human_commit": 91,
"days_since_last_human_commit_is_floor": false
},
"components": [
{
"key": "project_is_still_maintained",
"name": "Project is still maintained",
"detail": "last human commit 91 days ago",
"points": 100,
"status": "met",
"details": [
{
"code": "abandonment_maintained",
"params": {
"days": 91
}
}
],
"max_points": 100
}
]
}
],
"description": "Is the project alive — is code being written and are releases shipping?"
},
{
"key": "community",
"band": "moderate",
"name": "Community & Adoption",
"value": 62,
"weight": 0.18,
"metrics": [
{
"key": "popularity",
"band": "at_risk",
"name": "Popularity & adoption",
"note": null,
"notes": [],
"value": 48,
"inputs": {
"forks": 15,
"stars": 182,
"watchers": 3,
"growth_state": "unverified",
"growth_factor_pct": 100,
"growth_unverified_reason": "no_history"
},
"components": [
{
"key": "stars",
"name": "Stars",
"detail": "182 stars",
"points": 36.6,
"status": "partial",
"details": [
{
"code": "stars",
"params": {
"count": 182
}
}
],
"max_points": 60
},
{
"key": "forks",
"name": "Forks",
"detail": "15 forks",
"points": 9.6,
"status": "partial",
"details": [
{
"code": "forks",
"params": {
"count": 15
}
}
],
"max_points": 25
},
{
"key": "watchers",
"name": "Watchers",
"detail": "3 watchers",
"points": 1.7,
"status": "partial",
"details": [
{
"code": "watchers",
"params": {
"count": 3
}
}
],
"max_points": 15
}
]
},
{
"key": "community_health",
"band": "excellent",
"name": "Community health",
"note": null,
"notes": [],
"value": 85,
"inputs": {
"has_readme": true,
"has_license": true,
"has_contributing": true,
"has_issue_template": false,
"has_code_of_conduct": true,
"has_pull_request_template": false
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 22.5,
"status": "met",
"details": [],
"max_points": 22.5
},
{
"key": "license",
"name": "License",
"detail": "recognized license (MIT)",
"points": 22.5,
"status": "met",
"details": [
{
"code": "license_standard",
"params": {}
},
{
"code": "license_spdx",
"params": {
"spdx": "MIT"
}
}
],
"max_points": 22.5
},
{
"key": "contributing_guide",
"name": "CONTRIBUTING guide",
"detail": null,
"points": 18,
"status": "met",
"details": [],
"max_points": 18
},
{
"key": "code_of_conduct",
"name": "Code of conduct",
"detail": null,
"points": 13.5,
"status": "met",
"details": [],
"max_points": 13.5
},
{
"key": "issue_template",
"name": "Issue template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.2
},
{
"key": "pr_template",
"name": "PR template",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.3
}
]
},
{
"key": "ecosystem_adoption",
"band": "moderate",
"name": "Ecosystem adoption (downloads)",
"note": null,
"notes": [],
"value": 51,
"inputs": {
"packages": [
"beacon-hq/bag"
],
"dependents": 3,
"ecosystems": "packagist",
"total_downloads": 16557,
"monthly_downloads": 3126
},
"components": [
{
"key": "monthly_downloads",
"name": "Monthly downloads",
"detail": "3,126 downloads/month across packagist",
"points": 46.6,
"status": "partial",
"details": [
{
"code": "downloads_monthly",
"params": {
"count": 3126,
"ecosystems": "packagist"
}
}
],
"max_points": 80
},
{
"key": "registry_dependents",
"name": "Registry dependents",
"detail": "3 packages depend on it",
"points": 4,
"status": "partial",
"details": [
{
"code": "registry_dependents",
"params": {
"count": 3
}
}
],
"max_points": 20
}
]
}
],
"description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
},
{
"key": "governance",
"band": "moderate",
"name": "Sustainability & Governance",
"value": 58,
"weight": 0.24,
"metrics": [
{
"key": "maintainer_resilience",
"band": "critical",
"name": "Maintainer resilience (bus factor)",
"note": null,
"notes": [],
"value": 29,
"inputs": {
"bus_factor": 1,
"contributors_sampled": 7,
"top_contributor_share": 0.96
},
"components": [
{
"key": "bus_factor",
"name": "Bus factor",
"detail": "1 contributor(s) cover half of all commits",
"points": 9,
"status": "partial",
"details": [
{
"code": "bus_factor",
"params": {
"count": 1
}
}
],
"max_points": 54
},
{
"key": "commit_distribution",
"name": "Commit distribution",
"detail": "top contributor authored 96% of commits",
"points": 0.9,
"status": "partial",
"details": [
{
"code": "top_contributor_share",
"params": {
"share": 96
}
}
],
"max_points": 22.5
},
{
"key": "contributor_breadth",
"name": "Contributor breadth",
"detail": "7 contributors",
"points": 9.5,
"status": "partial",
"details": [
{
"code": "contributors_sampled",
"params": {
"count": 7
}
}
],
"max_points": 13.5
},
{
"key": "openssf_scorecard_contributors",
"name": "OpenSSF Scorecard: Contributors",
"detail": "project has 3 contributing companies or organizations -- score normalized to 10",
"points": 10,
"status": "met",
"details": [],
"max_points": 10
}
]
},
{
"key": "responsiveness",
"band": "good",
"name": "Issue & PR responsiveness",
"note": null,
"notes": [],
"value": 70,
"inputs": {
"merged_prs": 84,
"open_issues": 4,
"closed_issues": 16,
"issue_closed_ratio": 0.8,
"closed_unmerged_prs": 14
},
"components": [
{
"key": "issue_resolution",
"name": "Issue resolution",
"detail": "80% of issues closed",
"points": 37.4,
"status": "partial",
"details": [
{
"code": "issues_closed_share",
"params": {
"share": 80
}
}
],
"max_points": 46.75
},
{
"key": "pr_acceptance",
"name": "PR acceptance",
"detail": "84/98 decided PRs merged",
"points": 32.8,
"status": "partial",
"details": [
{
"code": "decided_prs_merged",
"params": {
"merged": 84,
"decided": 98
}
}
],
"max_points": 38.25
},
{
"key": "openssf_scorecard_code_review",
"name": "OpenSSF Scorecard: Code-Review",
"detail": "Found 2/23 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
}
]
},
{
"key": "stewardship",
"band": "at_risk",
"name": "Ownership & stewardship",
"note": null,
"notes": [],
"value": 46,
"inputs": {
"followers": 7,
"owner_type": "Organization",
"is_verified": null,
"owner_login": "beacon-hq",
"public_repos": 7,
"account_age_days": 567
},
"components": [
{
"key": "ownership_backing",
"name": "Ownership backing",
"detail": "organization-owned",
"points": 30,
"status": "met",
"details": [
{
"code": "owner_organization",
"params": {}
}
],
"max_points": 30
},
{
"key": "verified_domain",
"name": "Verified domain",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 20
},
{
"key": "owner_reach",
"name": "Owner reach",
"detail": "7 followers of beacon-hq",
"points": 6.5,
"status": "partial",
"details": [
{
"code": "owner_followers",
"params": {
"count": 7,
"login": "beacon-hq"
}
}
],
"max_points": 25
},
{
"key": "track_record",
"name": "Track record",
"detail": "7 public repos, account ~1 yr old",
"points": 9.7,
"status": "partial",
"details": [
{
"code": "public_repos",
"params": {
"count": 7
}
},
{
"code": "account_age_years",
"params": {
"years": 1
}
}
],
"max_points": 25
}
]
},
{
"key": "package_maintenance",
"band": "excellent",
"name": "Package maintenance",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"packages": [
"beacon-hq/bag"
],
"ecosystems": "packagist",
"any_deprecated": false,
"min_days_since_publish": 91
},
"components": [
{
"key": "published_resolvable",
"name": "Published & resolvable",
"detail": "1 package(s) on packagist",
"points": 25,
"status": "met",
"details": [
{
"code": "packages_published",
"params": {
"count": 1,
"ecosystems": "packagist"
}
}
],
"max_points": 25
},
{
"key": "publish_recency",
"name": "Publish recency",
"detail": "latest publish 91 days ago",
"points": 35,
"status": "met",
"details": [
{
"code": "publish_recency",
"params": {
"days": 91
}
}
],
"max_points": 35
},
{
"key": "version_history",
"name": "Version history",
"detail": "27 published versions",
"points": 20,
"status": "met",
"details": [
{
"code": "published_versions",
"params": {
"count": 27
}
}
],
"max_points": 20
},
{
"key": "not_deprecated",
"name": "Not deprecated",
"detail": "active, not deprecated or yanked",
"points": 20,
"status": "met",
"details": [
{
"code": "package_not_deprecated",
"params": {}
}
],
"max_points": 20
}
]
}
],
"description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
},
{
"key": "engineering",
"band": "good",
"name": "Engineering Quality",
"value": 76,
"weight": 0.2,
"metrics": [
{
"key": "engineering_practices",
"band": "good",
"name": "Engineering practices",
"note": null,
"notes": [],
"value": 74,
"inputs": {
"has_ci": true,
"has_tests": true,
"has_editorconfig": false,
"has_linter_config": true,
"has_precommit_config": false
},
"components": [
{
"key": "ci_workflows",
"name": "CI workflows",
"detail": "3 workflow(s)",
"points": 24,
"status": "met",
"details": [
{
"code": "ci_workflows",
"params": {
"count": 3
}
}
],
"max_points": 24
},
{
"key": "tests_present",
"name": "Tests present",
"detail": null,
"points": 24,
"status": "met",
"details": [],
"max_points": 24
},
{
"key": "linter_config",
"name": "Linter config",
"detail": "phpstan.neon",
"points": 16,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "phpstan.neon"
}
}
],
"max_points": 16
},
{
"key": "pre_commit_hooks",
"name": "Pre-commit hooks",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 9.6
},
{
"key": "editorconfig",
"name": ".editorconfig",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 6.4
},
{
"key": "openssf_scorecard_ci_tests",
"name": "OpenSSF Scorecard: CI-Tests",
"detail": "9 out of 16 merged PRs checked by a CI test -- score normalized to 5",
"points": 10,
"status": "partial",
"details": [],
"max_points": 20
}
]
},
{
"key": "documentation",
"band": "good",
"name": "Documentation",
"note": null,
"notes": [],
"value": 80,
"inputs": {
"topics": [],
"has_wiki": false,
"homepage": "https://bagvalueobjects.com/",
"has_readme": true,
"has_docs_dir": true,
"has_description": true
},
"components": [
{
"key": "readme",
"name": "README",
"detail": null,
"points": 30,
"status": "met",
"details": [],
"max_points": 30
},
{
"key": "documentation_directory",
"name": "Documentation directory",
"detail": null,
"points": 25,
"status": "met",
"details": [],
"max_points": 25
},
{
"key": "documentation_homepage_site",
"name": "Documentation / homepage site",
"detail": "https://bagvalueobjects.com/",
"points": 15,
"status": "met",
"details": [],
"max_points": 15
},
{
"key": "repository_description",
"name": "Repository description",
"detail": null,
"points": 10,
"status": "met",
"details": [],
"max_points": 10
},
{
"key": "topics",
"name": "Topics",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
},
{
"key": "wiki",
"name": "Wiki",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 10
}
]
}
],
"description": "Are baseline engineering and documentation practices in place?"
},
{
"key": "security",
"band": "moderate",
"name": "Security",
"value": 55,
"weight": 0.16,
"metrics": [
{
"key": "security_posture",
"band": "at_risk",
"name": "Security posture",
"note": "Excluded from scoring (no data or not applicable): Dangerous-Workflow, Packaging, Pinned-Dependencies, Signed-Releases, Token-Permissions. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"dangerous_workflow",
"packaging",
"pinned_dependencies",
"signed_releases",
"token_permissions"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 44,
"inputs": {
"source": "openssf_scorecard",
"checks_evaluated": 13,
"scorecard_version": "v5.5.0",
"checks_inconclusive": 5,
"scorecard_aggregate": 4.4
},
"components": [
{
"key": "binary_artifacts",
"name": "Binary-Artifacts",
"detail": "no binaries found in the repo",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "branch_protection",
"name": "Branch-Protection",
"detail": "branch protection not enabled on development/release branches",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "ci_tests",
"name": "CI-Tests",
"detail": "9 out of 16 merged PRs checked by a CI test -- score normalized to 5",
"points": 1.2,
"status": "partial",
"details": [],
"max_points": 2.5
},
{
"key": "cii_best_practices",
"name": "CII-Best-Practices",
"detail": "no effort to earn an OpenSSF best practices badge detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 2.5
},
{
"key": "code_review",
"name": "Code-Review",
"detail": "Found 2/23 approved changesets -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "contributors",
"name": "Contributors",
"detail": "project has 3 contributing companies or organizations -- score normalized to 10",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "dangerous_workflow",
"name": "Dangerous-Workflow",
"detail": "no workflows found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
},
{
"key": "dependency_update_tool",
"name": "Dependency-Update-Tool",
"detail": "update tool detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
},
{
"key": "fuzzing",
"name": "Fuzzing",
"detail": "project is not fuzzed",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "license",
"name": "License",
"detail": "license file detected",
"points": 2.5,
"status": "met",
"details": [],
"max_points": 2.5
},
{
"key": "maintained",
"name": "Maintained",
"detail": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0",
"points": 0,
"status": "missed",
"details": [],
"max_points": 7.5
},
{
"key": "packaging",
"name": "Packaging",
"detail": "packaging workflow not detected",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "pinned_dependencies",
"name": "Pinned-Dependencies",
"detail": "no dependencies found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 5
},
{
"key": "sast",
"name": "SAST",
"detail": "SAST tool is not run on all commits -- score normalized to 4",
"points": 2,
"status": "partial",
"details": [],
"max_points": 5
},
{
"key": "security_policy",
"name": "Security-Policy",
"detail": "security policy file not detected",
"points": 0,
"status": "missed",
"details": [],
"max_points": 5
},
{
"key": "signed_releases",
"name": "Signed-Releases",
"detail": "no releases found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "token_permissions",
"name": "Token-Permissions",
"detail": "No tokens found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 7.5
},
{
"key": "vulnerabilities",
"name": "Vulnerabilities",
"detail": "0 existing vulnerabilities detected",
"points": 7.5,
"status": "met",
"details": [],
"max_points": 7.5
}
]
},
{
"key": "dependency_advisories",
"band": "excellent",
"name": "Dependency advisories",
"note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 312 resolved dependencies against OSV; 22 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"indirect_dependencies_free_of_known_advisories",
"no_advisories_left_outstanding"
]
}
},
{
"code": "weights_renormalized",
"params": {}
},
{
"code": "advisories_scope_repository",
"params": {
"assessed": 312
}
},
{
"code": "advisories_unassessed",
"params": {
"count": 22
}
},
{
"code": "advisories_repo_graph_caveat",
"params": {}
},
{
"code": "advisories_reachability",
"params": {}
}
],
"value": 100,
"inputs": {
"source": "osv",
"advisories": 45,
"affected_packages": 11,
"assessed_packages": 312,
"unassessed_packages": 22,
"affected_by_severity": "critical 1, high 4, moderate 6",
"direct_affected_packages": 0
},
"components": [
{
"key": "direct_dependencies_free_of_known_advisories",
"name": "Direct dependencies free of known advisories",
"detail": "no direct dependency carries a known advisory",
"points": 35,
"status": "met",
"details": [
{
"code": "no_direct_advisories",
"params": {}
}
],
"max_points": 35
},
{
"key": "indirect_dependencies_free_of_known_advisories",
"name": "Indirect dependencies free of known advisories",
"detail": "transitive set not separable from development and test dependencies in this scope",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_scope_not_separable",
"params": {}
}
],
"max_points": 25
},
{
"key": "no_advisories_left_outstanding",
"name": "No advisories left outstanding",
"detail": "no advisory carries a publication date",
"points": 0,
"status": "excluded",
"details": [
{
"code": "advisories_no_publication_date",
"params": {}
}
],
"max_points": 40
}
]
},
{
"key": "malicious_dependencies",
"band": "excellent",
"name": "Malicious dependencies",
"note": null,
"notes": [],
"value": 100,
"inputs": {
"source": "osv",
"meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
"packages": [],
"red_flag": false,
"assessed_packages": 312,
"malicious_packages": 0,
"direct_malicious_packages": 0,
"withdrawn_malicious_packages": 0,
"installable_malicious_packages": 0
},
"components": [
{
"key": "no_dependency_reported_as_a_malicious_package",
"name": "No dependency reported as a malicious package",
"detail": "no dependency is reported as a malicious package",
"points": 100,
"status": "met",
"details": [
{
"code": "no_malicious_dependencies",
"params": {}
}
],
"max_points": 100
}
]
},
{
"key": "high_risk_jurisdiction_exposure",
"band": "excellent",
"name": "High-Risk Jurisdiction Exposure",
"note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
"notes": [
{
"code": "jurisdiction_evidence_limits",
"params": {}
}
],
"value": 100,
"inputs": {
"meaning": "self-published location evidence; not nationality or citizenship",
"red_flag": false,
"exposures": [],
"policy_countries": [
"Russia",
"Iran",
"North Korea"
],
"review_only_matches": 0,
"assessed_self_published_locations": 14
},
"components": [
{
"key": "policy_exposure_multiplier",
"name": "Policy exposure multiplier",
"detail": "no confirmed policy-scope location match",
"points": 100,
"status": "met",
"details": [
{
"code": "jurisdiction_no_match",
"params": {}
}
],
"max_points": 100
}
]
}
],
"description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
},
{
"key": "ai_readiness",
"band": "moderate",
"name": "AI Readiness",
"value": 51,
"weight": 0,
"metrics": [
{
"key": "ai_agent_context",
"band": "at_risk",
"name": "Agent context & guidance",
"note": null,
"notes": [],
"value": 40,
"inputs": {
"has_llms_txt": false,
"legible_history_share": 0.978,
"agent_instruction_files": [],
"agent_instruction_max_bytes": null
},
"components": [
{
"key": "agent_instructions",
"name": "Agent instructions",
"detail": "no CLAUDE.md / AGENTS.md / editor rules",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_instructions",
"params": {}
}
],
"max_points": 45
},
{
"key": "machine_readable_docs_llms_txt",
"name": "Machine-readable docs (llms.txt)",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 15
},
{
"key": "legible_commit_history",
"name": "Legible commit history",
"detail": "89 of 91 human commits state their intent (structured subject or explanatory body)",
"points": 40,
"status": "met",
"details": [
{
"code": "legible_history",
"params": {
"legible": 89,
"sampled": 91
}
}
],
"max_points": 40
}
]
},
{
"key": "ai_verify_loop",
"band": "moderate",
"name": "Verify loop (build / test / typecheck)",
"note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Pinned-Dependencies. Remaining weights renormalized.",
"notes": [
{
"code": "excluded_no_data",
"params": {
"components": [
"openssf_scorecard_pinned_dependencies"
]
}
},
{
"code": "weights_renormalized",
"params": {}
}
],
"value": 57,
"inputs": {
"has_nix": false,
"has_tests": true,
"lockfiles": [
"package-lock.json"
],
"has_dockerfile": false,
"typed_language": false,
"bootstrap_files": [],
"has_devcontainer": false,
"has_linter_config": true,
"typecheck_configs": [],
"agent_commit_share": 0,
"toolchain_manifests": [],
"dependency_bot_commit_share": 0.09
},
"components": [
{
"key": "one_command_bootstrap",
"name": "One-command bootstrap",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 18
},
{
"key": "automated_tests",
"name": "Automated tests",
"detail": null,
"points": 22,
"status": "met",
"details": [],
"max_points": 22
},
{
"key": "lint_format_config",
"name": "Lint / format config",
"detail": "phpstan.neon",
"points": 11,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "phpstan.neon"
}
}
],
"max_points": 11
},
{
"key": "static_type_checking",
"name": "Static type checking",
"detail": null,
"points": 0,
"status": "missed",
"details": [],
"max_points": 11
},
{
"key": "reproducible_environment",
"name": "Reproducible environment",
"detail": "lockfile",
"points": 10,
"status": "met",
"details": [
{
"code": "file_list",
"params": {
"files": "lockfile"
}
}
],
"max_points": 10
},
{
"key": "demonstrated_agent_practice",
"name": "Demonstrated agent practice",
"detail": "no agent-authored commits among the last 100",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_agent_authored_commits",
"params": {
"sampled": 100
}
}
],
"max_points": 10
},
{
"key": "automated_maintenance",
"name": "Automated maintenance",
"detail": "9 of the last 100 commits are automated dependency updates",
"points": 8,
"status": "met",
"details": [
{
"code": "dependency_bot_commits",
"params": {
"count": 9,
"sampled": 100
}
}
],
"max_points": 8
},
{
"key": "openssf_scorecard_pinned_dependencies",
"name": "OpenSSF Scorecard: Pinned-Dependencies",
"detail": "no dependencies found",
"points": 0,
"status": "excluded",
"details": [
{
"code": "no_data",
"params": {}
}
],
"max_points": 10
}
]
},
{
"key": "ai_code_legibility",
"band": "moderate",
"name": "Code legibility for models",
"note": null,
"notes": [],
"value": 55,
"inputs": {
"primary_language": "PHP",
"largest_source_bytes": 30773,
"source_files_sampled": 292,
"oversized_source_files": 0
},
"components": [
{
"key": "type_checkable_code",
"name": "Type-checkable code",
"detail": "PHP without a type-check config",
"points": 0,
"status": "missed",
"details": [
{
"code": "no_typecheck_config_language",
"params": {
"language": "PHP"
}
}
],
"max_points": 45
},
{
"key": "manageable_file_sizes",
"name": "Manageable file sizes",
"detail": "0/292 source files over 60KB",
"points": 55,
"status": "met",
"details": [
{
"code": "oversized_source_files",
"params": {
"kb": 60,
"sampled": 292,
"oversized": 0
}
}
],
"max_points": 55
}
]
}
],
"description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
}
],
"metrics_version": "1.13.0"
},
"warnings": [
"Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
],
"report_type": "repository",
"generated_at": "2026-07-23T00:08:44.086559Z",
"schema_version": "0.27.0",
"badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/b/beacon-hq/bag.svg",
"full_name": "beacon-hq/bag",
"license_state": "standard",
"license_spdx": "MIT"
}