Публічний реєстр
Звіт про здоров'я програмного забезпеченнясхема 0.27.0 · метрики 1.13.0 · 2026-07-27 03:18 UTC

maxmind / GeoIP2-java

Java API for GeoIP2 webservice client and database reader

JavaApache-2.0★ 860 зірок⑂ 207 форківз квіт. 2013 р.Переглянути на GitHub ↗

maxmind/GeoIP2-java має індекс здоров’я 79 зі 100, що відповідає смузі «Добрий». Найвищий показник — Vitality (94/100), найнижчий — Community & Adoption (64/100). Останнє оновлення було 4 дні тому. Більшість нещодавньої роботи виконує один учасник.

79
загалом / 100
Добрий

Індекс здоров'я програмного забезпечення

Метрики згруповано у зважені категорії на шкалі 1–100. Загальна оцінка починається як їхнє середнє; коли публічні дані активують Політику юрисдикцій високого ризику, рейтинг коригується й отримує верхню межу 49 («Під ризиком»). Готовність до ШІ не входить до індексу.

79
Відмінний85-100Зразковий; відповідає практично всім перевіреним критеріям
Добрий70-84Здоровий; незначні прогалини
Помірний50-69Прийнятний, але з помітними прогалинами; рекомендовано перевірку
У зоні ризику30-49Суттєві слабкі місця; впровадження потребує обережності
Критичний1-29Серйозні проблеми (покинутий, єдиний мейнтейнер, без базової гігієни)
ЖиттєздатністьСпільнота тавпровадженняСталість таврядуванняІнженернаякістьБезпекаГотовність доШІ

Профіль оцінок

Кожна вісь — окрема категорія. Форма важить більше, ніж середнє: здоровий об'єкт заповнює всю фігуру, тоді як профіль із піками та провалами означає, що сила в одному вимірі маскує ризик в іншому.

Власність

MaxMindОрганізація
331 підписник100 публічних репозиторіївз лист. 2011 р.

За цим репозиторієм стоїть організація — спільна, підзвітна опіка, здатна пережити будь-якого окремого мейнтейнера.

Пакетні екосистеми

РеєстрПакетВерсіяЗавантажень / місВерсіїОстання публікація
Mavencom.maxmind.geoip2:geoip25.2.0-5410 днів тому

Метрики за категоріями

Життєздатність

Чи живий проєкт — чи пишеться код і чи виходять релізи?

94Відмінний · 22% загального індексу
Як обчислюється оцінка
36/36Свіжість push — останній push 4 дн. тому
32.5/36Ритм комітів — 47/52 тижнів із комітами
18/18Обсяг комітів — 386 комітів за останній рік
10/10OpenSSF Scorecard: Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
Використані вхідні дані
commits_last_year386
human_commit_share0,67
days_since_last_push4
active_weeks_last_year47
Як обчислюється оцінка
27/27Випускає релізи — опубліковано 55 релізів
36/36Свіжість релізів — останній реліз 10 дн. тому
19.8/27Ритм релізів — реліз кожні ~106 дн.
8/10OpenSSF Scorecard: Signed-Releases — 5 out of the last 5 releases have a total of 5 signed artifacts.
Використані вхідні дані
releases_count55
latest_release_tagv5.2.0
releases_from_tagsні
days_since_latest_release10
mean_days_between_releases106

Спільнота та впровадження

Чи має проєкт користувачів, завантаження, увагу та влаштовані умови для контриб’юторів?

64Помірний · 18% загального індексу
Як обчислюється оцінка
47.6/60Зірки — 860 зірок
19.3/25Форки — 207 форків
9.8/15Спостерігачі — 58 спостерігачів
Використані вхідні дані
forks207
stars860
watchers58
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history
Як обчислюється оцінка
22.5/22.5README
22.5/22.5Ліцензія — визнана ліцензія (Apache-2.0)
0/18Настанови CONTRIBUTING
0/13.5Кодекс поведінки
0/7.2Шаблон issue
0/6.3Шаблон PR
Використані вхідні дані
has_readmeтак
has_licenseтак
has_contributingні
has_issue_templateні
has_code_of_conductні
has_pull_request_templateні

Сталість та врядування

Чи переживе проєкт своїх людей — бас-фактор, реактивність, хто за ним стоїть і як супроводжуються пакети?

75Добрий · 24% загального індексу
Як обчислюється оцінка
9/54Бас-фактор — на 1 контриб’ютор(ів) припадає половина всіх комітів
7.4/22.5Розподіл комітів — головний контриб’ютор — автор 67% комітів
13.5/13.5Широта контриб’юторів — 36 контриб’юторів
10/10OpenSSF Scorecard: Contributors — project has 31 contributing companies or organizations
Використані вхідні дані
bus_factor1
contributors_sampled36
top_contributor_share0,669
Як обчислюється оцінка
46/46.8Вирішення issue — закрито 98% issue
36.8/38.3Прийняття PR — злито 605/628 вирішених PR
15/15OpenSSF Scorecard: Code-Review — all changesets reviewed
Використані вхідні дані
merged_prs605
open_issues2
closed_issues118
issue_closed_ratio0,983
closed_unmerged_prs23
Як обчислюється оцінка
30/30Підтримка власника — у власності організації
0/20Верифікований домен
18.1/25Охоплення власника — 331 підписників у maxmind
25/25Послужний список — 100 публічних репозиторіїв, вік облікового запису ~14 р.
Використані вхідні дані
followers331
owner_typeOrganization
is_verified
owner_loginmaxmind
public_repos100
account_age_days5 374

Супровід пакетів

100Відмінний
Як обчислюється оцінка
25/25Опубліковано й доступно — 1 пакет(ів) у maven
35/35Свіжість публікацій — остання публікація 10 дн. тому
20/20Історія версій — 54 опублікованих версій
20/20Не застарілий — активний, не deprecated і не yanked
Використані вхідні дані
packagescom.maxmind.geoip2:geoip2
ecosystemsmaven
any_deprecatedні
min_days_since_publish10

Інженерна якість

Чи наявні базові інженерні практики та документація?

77Добрий · 20% загального індексу
Як обчислюється оцінка
24/24Процеси CI — 8 процес(ів) CI
24/24Наявні тести
0/16Конфігурація лінтера
0/9.6Pre-commit-хуки
0/6.4.editorconfig
20/20OpenSSF Scorecard: CI-Tests — 13 out of 13 merged PRs checked by a CI test -- score normalized to 10
Використані вхідні дані
has_ciтак
has_testsтак
has_editorconfigні
has_linter_configні
has_precommit_configні

Документація

90Відмінний
Як обчислюється оцінка
30/30README
25/25Каталог документації
15/15Сайт документації / домашня сторінка — https://maxmind.github.io/GeoIP2-java/
10/10Опис репозиторію
10/10Теми — 4 тем
0/10Wiki
Використані вхідні дані
topicsgeoip, mmdb, geoip2, maxmind
has_wikiні
homepagehttps://maxmind.github.io/GeoIP2-java/
has_readmeтак
has_docs_dirтак
has_descriptionтак

Безпека

Чи міцні видимі практики безпеки й ланцюга постачання, без непослабленої пов’язаності з юрисдикціями високого ризику?

83Добрий · 16% загального індексу
Як обчислюється оцінка
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — немає даних
2.5/2.5CI-Tests — 13 out of 13 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
7.5/7.5Code-Review — all changesets reviewed
2.5/2.5Contributors — project has 31 contributing companies or organizations
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5Ліцензія — license file detected
7.5/7.5Maintained — 30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
0/5Packaging — немає даних
5/5Pinned-Dependencies — all dependencies are pinned
5/5SAST — SAST tool is run on all commits
0/5Security-Policy — security policy file not detected
6/7.5Signed-Releases — 5 out of the last 5 releases have a total of 5 signed artifacts.
6.8/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
3/7.5Vulnerabilities — 6 existing vulnerabilities detected
Використані вхідні дані
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate7,9
Виключено з оцінювання (немає даних або не застосовно): branch_protection, packaging. Залишкові ваги перенормовано.
Як обчислюється оцінка
35/35Прямі залежності без відомих сповіщень — жодна пряма залежність не має відомих сповіщень
25/25Непрямі залежності без відомих сповіщень — жодна непряма залежність не має відомих сповіщень
0/40Немає задавнених сповіщень — жодне сповіщення не має дати публікації
Використані вхідні дані
sourceosv
advisories0
affected_packages0
assessed_packages5
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
Виключено з оцінювання (немає даних або не застосовно): Немає задавнених сповіщень. Залишкові ваги перенормовано. Звірено з runtime-замиканням залежностей maven:com.maxmind.geoip2:geoip2@5.2.0 — тим, що тягне за собою встановлення опублікованого пакета, — 5 пакетів. Досяжність не аналізується.

Готовність до ШІ

Наскільки репозиторій оснащений для розробки та супроводу за участі ШІ-агентів? Незалежний, експериментальний бейдж — вага 0.0, тож він подається окремо і не впливає на загальний індекс здоров'я.

78Добрий · 0% загального індексу
Як обчислюється оцінка
45/45Інструкції для агентів — CLAUDE.md
0/15Машиночитана документація (llms.txt)
40/40Читабельна історія комітів — намір зазначено у 61 з 67 людських комітів (структурований заголовок або пояснювальний текст)
Використані вхідні дані
has_llms_txtні
legible_history_share0,91
agent_instruction_filesCLAUDE.md
agent_instruction_max_bytes14 368
Як обчислюється оцінка
18/18Розгортання однією командою — mise.toml
22/22Автоматизовані тести
0/11Конфігурація лінтера / форматера
11/11Статична перевірка типів — Java (статично типізована)
0/10Відтворюване середовище
10/10Підтверджена практика роботи з агентами — 19 з останніх 100 комітів створено агентом або з його зазначенням
8/8Автоматизоване супроводження — 33 з останніх 100 комітів — автоматичні оновлення залежностей
10/10OpenSSF Scorecard: Pinned-Dependencies — all dependencies are pinned
Використані вхідні дані
has_nixні
has_testsтак
lockfiles
has_dockerfileні
typed_languageтак
bootstrap_filesmise.toml
has_devcontainerні
has_linter_configні
typecheck_configs
agent_commit_share0,19
toolchain_manifestspom.xml
dependency_bot_commit_share0,33
Як обчислюється оцінка
45/45Типізований код — Java (статично типізована)
55/55Керовані розміри файлів — 0/52 файлів вихідного коду понад 60 КБ
Використані вхідні дані
primary_languageJava
largest_source_bytes30 367
source_files_sampled52
oversized_source_files0
Як обчислюється оцінка
0/40Схема API (OpenAPI/GraphQL/proto)
0/20Сервер MCP
40/40Придатні до запуску приклади — sample
Використані вхідні дані
example_dirssample
has_mcp_signalні
api_schema_files

Ключові факти

860зірок GitHub
36контриб'юторів
386комітів за останні 12 місяців
4днів від останнього пушу
55релізів
1бас-фактор
2відкритих issue
Mavenпакетних екосистем

Попередження щодо збору даних

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token

Докладніше

Історія зірок і форків 0 ★ / 207 ⇿
0Зірки
207Форки
47Релізи

Коли додано кожну зірку й форк — зібрано з GitHub і згруповано за днями. Кумулятивне зростання розміщено просто над денними додаваннями, з яких воно складається, тож їх видно одне проти одного: рівномірне органічне накопичення виглядає зовсім інакше, ніж різкий короткочасний сплеск. Там, де цю різницю можна виміряти, її подано як автентичність росту.

0408012016020024020442013-092019-122026-03
Мажорні 4Мінорні 27Патчі 14

Кожна точка охоплює 12 днів.

OpenSSF Scorecard 7.9 / 10
7.9сукупно

Незалежна, не прив'язана до інструментів оцінка безпеки від відкритого проєкту OpenSSF Scorecard. Кожна перевірка винагороджує практику безпеки, а не інструмент конкретного постачальника. Перевірки, які Scorecard не зміг визначити, позначено н/д і виключено з оцінки безпеки (вони ніколи не зараховуються як нуль).Scorecard v5.5.0 · 2026-07-27 03:18 UTC

10Binary-Artifactsno binaries found in the repo
н/дBranch-Protectioninternal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md
10CI-Tests13 out of 13 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
10Code-Reviewall changesets reviewed
10Contributorsproject has 31 contributing companies or organizations
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10
н/дPackagingpackaging workflow not detected
10Pinned-Dependenciesall dependencies are pinned
10SASTSAST tool is run on all commits
0Security-Policysecurity policy file not detected
8Signed-Releases5 out of the last 5 releases have a total of 5 signed artifacts.
9Token-Permissionsdetected GitHub workflow tokens with excessive permissions
4Vulnerabilities6 existing vulnerabilities detected
Прямі залежності 6
РеєстрПакетОбмеження версіїМаніфест
Mavencom.maxmind.db:maxmind-db4.1.0pom.xml
Mavencom.fasterxml.jackson.core:jackson-databind2.22.1pom.xml
Mavencom.fasterxml.jackson.datatype:jackson-datatype-jsr3102.22.1pom.xml
Mavencom.fasterxml.jackson.core:jackson-core2.22.1pom.xml
Mavencom.fasterxml.jackson.core:jackson-annotations2.22pom.xml
Mavencom.puppycrawl.tools:checkstyle13.8.0pom.xml
Усі залежності 69

Повний розв'язаний набір залежностей із графа залежностей GitHub: 5 прямих і 64 непрямих (транзитивних) пакетів. Транзитивне замикання є повним, коли в репозиторії закомічено lockfile.

РеєстрПакетВерсіяЗв'язок
Mavencom.fasterxml.jackson.core:jackson-annotations2.22пряма
Mavencom.fasterxml.jackson.core:jackson-core2.22.1пряма
Mavencom.fasterxml.jackson.core:jackson-databind2.22.1пряма
Mavencom.fasterxml.jackson.datatype:jackson-datatype-jsr3102.22.1пряма
Mavencom.maxmind.db:maxmind-db4.1.0пряма
Mavencom.ethlo.time:itu1.14.0непряма
Mavencom.fasterxml.jackson.dataformat:jackson-dataformat-yaml2.18.3непряма
Mavencom.fasterxml.jackson.jr:jackson-jr-objects2.22.1непряма
Mavencom.github.jknack:handlebars4.3.1непряма
Mavencom.github.jknack:handlebars-helpers4.3.1непряма
Mavencom.google.errorprone:error_prone_annotations2.41.0непряма
Mavencom.google.guava:failureaccess1.0.3непряма
Mavencom.google.guava:guava33.5.0-jreнепряма
Mavencom.google.guava:listenablefuture9999.0-empty-to-avoid-conflict-with-guavaнепряма
Mavencom.google.j2objc:j2objc-annotations3.1непряма
Mavencom.jayway.jsonpath:json-path2.10.0непряма
Mavencom.jcabi:jcabi-aspects0.26.0непряма
Mavencom.jcabi:jcabi-log0.24.3непряма
Mavencom.jcabi:jcabi-matchers1.9.0непряма
Mavencom.networknt:json-schema-validator1.5.9непряма
Mavencommons-fileupload:commons-fileupload1.6.0непряма
Mavencommons-io:commons-io2.19.0непряма
Mavenjakarta.activation:jakarta.activation-api1.2.2непряма
Mavenjakarta.xml.bind:jakarta.xml.bind-api2.3.3непряма
Mavenjavax.validation:validation-api2.0.1.Finalнепряма
Mavennet.javacrumbs.json-unit:json-unit-core2.40.1непряма
Mavennet.minidev:accessors-smart2.6.0непряма
Mavennet.minidev:json-smart2.6.0непряма
Mavennet.sf.jopt-simple:jopt-simple5.0.4непряма
Mavenorg.apache.httpcomponents.client5:httpclient55.5.1непряма
Mavenorg.apache.httpcomponents.core5:httpcore55.3.6непряма
Mavenorg.apache.httpcomponents.core5:httpcore5-h25.3.6непряма
Mavenorg.apiguardian:apiguardian-api1.1.2непряма
Mavenorg.aspectj:aspectjrt1.9.21.1непряма
Mavenorg.eclipse.jetty.http2:http2-common11.0.26непряма
Mavenorg.eclipse.jetty.http2:http2-hpack11.0.26непряма
Mavenorg.eclipse.jetty.http2:http2-server11.0.26непряма
Mavenorg.eclipse.jetty.toolchain:jetty-jakarta-servlet-api5.0.2непряма
Mavenorg.eclipse.jetty:jetty-alpn-client11.0.26непряма
Mavenorg.eclipse.jetty:jetty-alpn-java-client11.0.26непряма
Mavenorg.eclipse.jetty:jetty-alpn-java-server11.0.26непряма
Mavenorg.eclipse.jetty:jetty-alpn-server11.0.26непряма
Mavenorg.eclipse.jetty:jetty-client11.0.26непряма
Mavenorg.eclipse.jetty:jetty-http11.0.26непряма
Mavenorg.eclipse.jetty:jetty-io11.0.26непряма
Mavenorg.eclipse.jetty:jetty-proxy11.0.26непряма
Mavenorg.eclipse.jetty:jetty-security11.0.26непряма
Mavenorg.eclipse.jetty:jetty-server11.0.26непряма
Mavenorg.eclipse.jetty:jetty-servlet11.0.26непряма
Mavenorg.eclipse.jetty:jetty-servlets11.0.26непряма
Mavenorg.eclipse.jetty:jetty-util11.0.26непряма
Mavenorg.eclipse.jetty:jetty-webapp11.0.26непряма
Mavenorg.eclipse.jetty:jetty-xml11.0.26непряма
Mavenorg.hamcrest:hamcrest3.0непряма
Mavenorg.hamcrest:hamcrest-core2.2непряма
Mavenorg.jspecify:jspecify1.0.0непряма
Mavenorg.junit.jupiter:junit-jupiter6.1.2непряма
Mavenorg.junit.jupiter:junit-jupiter-api6.1.2непряма
Mavenorg.junit.jupiter:junit-jupiter-engine6.1.2непряма
Mavenorg.junit.jupiter:junit-jupiter-params6.1.2непряма
Mavenorg.junit.platform:junit-platform-commons6.1.2непряма
Mavenorg.junit.platform:junit-platform-engine6.1.2непряма
Mavenorg.opentest4j:opentest4j1.3.0непряма
Mavenorg.slf4j:slf4j-api2.0.17непряма
Mavenorg.wiremock:wiremock3.13.2непряма
Mavenorg.xmlunit:xmlunit-core2.11.0непряма
Mavenorg.xmlunit:xmlunit-legacy2.11.0непряма
Mavenorg.xmlunit:xmlunit-placeholders2.11.0непряма
Mavenorg.yaml:snakeyaml2.3непряма
Сповіщення про залежності 0

Встановлення maven:com.maxmind.geoip2:geoip2@5.2.0 тягне 5 пакетів, прямих і транзитивних: 0 мають відомі сповіщення, з них 0 — прямі залежності.

Жодне відоме сповіщення не стосується оцінених залежностей.

Сповіщення означає, що версія, записана в графі залежностей, потрапляє в уражений діапазон. Досяжність не аналізується, а граф містить піниї розробки й тестування — знахідка може стосуватися інструментів, а не поставленого коду.

Звіт у форматі JSON машиночитний
{
  "data": {
    "repo": {
      "topics": [
        "geoip",
        "mmdb",
        "geoip2",
        "maxmind"
      ],
      "is_fork": false,
      "size_kb": 7711,
      "has_wiki": false,
      "homepage": "https://maxmind.github.io/GeoIP2-java/",
      "languages": {
        "Java": 291903,
        "Shell": 3999
      },
      "pushed_at": "2026-07-22T17:42:15Z",
      "created_at": "2013-04-01T21:40:11Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-22T17:44:38Z",
      "description": "Java API for GeoIP2 webservice client and database reader",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "Apache-2.0",
      "default_branch": "main",
      "license_spdx_raw": "Apache-2.0",
      "primary_language": "Java",
      "significant_languages": [
        "Java"
      ]
    },
    "owner": {
      "blog": "https://www.maxmind.com",
      "name": "MaxMind",
      "type": "Organization",
      "login": "maxmind",
      "company": null,
      "location": null,
      "followers": 331,
      "avatar_url": "https://avatars.githubusercontent.com/u/1181834?v=4",
      "created_at": "2011-11-08T21:15:12Z",
      "is_verified": null,
      "public_repos": 100,
      "account_age_days": 5374
    },
    "license": {
      "state": "standard",
      "spdx_id": "Apache-2.0",
      "raw_spdx": "Apache-2.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v5.2.0",
          "kind": "minor",
          "published_at": "2026-07-16T21:58:02Z"
        },
        {
          "tag": "v5.1.0",
          "kind": "minor",
          "published_at": "2026-05-12T19:05:35Z"
        },
        {
          "tag": "v5.0.2",
          "kind": "patch",
          "published_at": "2025-12-08T16:14:47Z"
        },
        {
          "tag": "v5.0.1",
          "kind": "patch",
          "published_at": "2025-12-02T18:40:57Z"
        },
        {
          "tag": "v5.0.0",
          "kind": "major",
          "published_at": "2025-11-20T17:27:32Z"
        },
        {
          "tag": "v4.4.0",
          "kind": "minor",
          "published_at": "2025-08-28T14:38:06Z"
        },
        {
          "tag": "v4.3.1",
          "kind": "patch",
          "published_at": "2025-05-28T21:27:27Z"
        },
        {
          "tag": "v4.3.0",
          "kind": "minor",
          "published_at": "2025-05-05T19:50:28Z"
        },
        {
          "tag": "v4.2.1",
          "kind": "patch",
          "published_at": "2024-09-20T14:31:18Z"
        },
        {
          "tag": "v4.2.0",
          "kind": "minor",
          "published_at": "2023-12-05T18:51:21Z"
        },
        {
          "tag": "v2.17.0",
          "kind": "minor",
          "published_at": "2023-11-21T18:10:30Z"
        },
        {
          "tag": "v4.1.0",
          "kind": "minor",
          "published_at": "2023-07-28T14:39:15Z"
        },
        {
          "tag": "v4.0.1",
          "kind": "patch",
          "published_at": "2023-03-02T18:32:11Z"
        },
        {
          "tag": "v4.0.0",
          "kind": "major",
          "published_at": "2022-12-12T20:37:39Z"
        },
        {
          "tag": "v3.0.2",
          "kind": "patch",
          "published_at": "2022-10-31T19:43:04Z"
        },
        {
          "tag": "v3.0.1",
          "kind": "patch",
          "published_at": "2022-03-29T16:02:20Z"
        },
        {
          "tag": "v3.0.0",
          "kind": "major",
          "published_at": "2022-01-24T21:08:35Z"
        },
        {
          "tag": "v2.16.1",
          "kind": "patch",
          "published_at": "2021-11-18T23:12:15Z"
        },
        {
          "tag": "v2.16.0",
          "kind": "minor",
          "published_at": "2021-11-18T20:26:13Z"
        },
        {
          "tag": "v2.15.0",
          "kind": "minor",
          "published_at": "2020-10-14T14:40:16Z"
        },
        {
          "tag": "v2.15.0-rc1",
          "kind": "prerelease",
          "published_at": "2020-09-29T21:56:50Z"
        },
        {
          "tag": "v2.14.0",
          "kind": "minor",
          "published_at": "2020-06-15T22:02:32Z"
        },
        {
          "tag": "v2.13.1",
          "kind": "patch",
          "published_at": "2020-03-03T19:07:39Z"
        },
        {
          "tag": "v2.13.0",
          "kind": "minor",
          "published_at": "2019-12-18T23:10:31Z"
        },
        {
          "tag": "v2.12.0",
          "kind": "minor",
          "published_at": "2018-04-11T15:41:44Z"
        },
        {
          "tag": "v2.11.0",
          "kind": "minor",
          "published_at": "2018-01-19T18:06:43Z"
        },
        {
          "tag": "v2.10.0",
          "kind": "minor",
          "published_at": "2017-10-27T20:57:34Z"
        },
        {
          "tag": "v2.9.0",
          "kind": "minor",
          "published_at": "2017-05-08T18:38:36Z"
        },
        {
          "tag": "v2.8.1",
          "kind": "patch",
          "published_at": "2017-02-22T16:06:54Z"
        },
        {
          "tag": "v2.8.0",
          "kind": "minor",
          "published_at": "2016-09-15T22:41:59Z"
        },
        {
          "tag": "v2.8.0-rc1",
          "kind": "prerelease",
          "published_at": "2016-06-20T14:46:10Z"
        },
        {
          "tag": "v2.7.0",
          "kind": "minor",
          "published_at": "2016-04-15T21:23:35Z"
        },
        {
          "tag": "v2.6.0",
          "kind": "minor",
          "published_at": "2016-01-13T18:15:10Z"
        },
        {
          "tag": "v2.5.0",
          "kind": "minor",
          "published_at": "2016-01-04T21:34:23Z"
        },
        {
          "tag": "v2.4.0",
          "kind": "minor",
          "published_at": "2015-12-21T19:58:07Z"
        },
        {
          "tag": "v2.3.1",
          "kind": "patch",
          "published_at": "2015-07-07T19:05:03Z"
        },
        {
          "tag": "v2.3.0",
          "kind": "minor",
          "published_at": "2015-07-07T19:04:40Z"
        },
        {
          "tag": "v2.2.0",
          "kind": "minor",
          "published_at": "2015-04-24T22:12:30Z"
        },
        {
          "tag": "v2.1.0",
          "kind": "minor",
          "published_at": "2014-11-06T18:40:56Z"
        },
        {
          "tag": "v2.0.0",
          "kind": "major",
          "published_at": "2014-09-29T21:18:17Z"
        },
        {
          "tag": "v0.10.0",
          "kind": "minor",
          "published_at": "2014-09-23T22:29:48Z"
        },
        {
          "tag": "v0.9.0",
          "kind": "minor",
          "published_at": "2014-09-02T22:41:24Z"
        },
        {
          "tag": "v0.8.1",
          "kind": "patch",
          "published_at": "2014-08-27T19:46:45Z"
        },
        {
          "tag": "v0.8.0",
          "kind": "minor",
          "published_at": "2014-07-22T16:57:33Z"
        },
        {
          "tag": "v0.7.2",
          "kind": "patch",
          "published_at": "2014-06-02T15:39:04Z"
        },
        {
          "tag": "v0.7.1",
          "kind": "patch",
          "published_at": "2014-04-02T23:08:09Z"
        },
        {
          "tag": "v0.7.0",
          "kind": "minor",
          "published_at": "2013-11-05T23:02:42Z"
        },
        {
          "tag": "v0.6.0",
          "kind": "minor",
          "published_at": "2013-10-23T16:48:41Z"
        },
        {
          "tag": "v0.5.0",
          "kind": "minor",
          "published_at": "2013-10-17T16:34:47Z"
        },
        {
          "tag": "v0.4.1",
          "kind": "patch",
          "published_at": "2013-08-16T14:36:01Z"
        },
        {
          "tag": "v0.4.0",
          "kind": "minor",
          "published_at": "2013-07-08T23:57:48Z"
        },
        {
          "tag": "v0.3.0",
          "kind": "minor",
          "published_at": "2013-07-06T15:40:34Z"
        },
        {
          "tag": "v0.2.0",
          "kind": "minor",
          "published_at": "2013-07-06T15:42:30Z"
        },
        {
          "tag": "v0.1.1",
          "kind": "patch",
          "published_at": "2013-07-06T15:43:23Z"
        },
        {
          "tag": "v0.1.0",
          "kind": "minor",
          "published_at": "2013-07-06T15:44:01Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "8864952cc6f4f44bc7b0be88188a00adbabe5778",
          "body": "…-dependabot-are-visible\n\nAdd workflow that fails when Dependabot updates error",
          "is_bot": false,
          "headline": "Merge pull request #751 from maxmind/wstorey/stf-1124-failures-to-run…",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-22T17:42:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d72c99b80c5f031efbb6ce1f26ffbbcc37d801d",
          "body": "Dependabot version update failures only surface as a red triangle in\nthe Dependabot tab, which nobody checks. This weekly scheduled workflow\nfails if any \"Dependabot Updates\" run concluded with failure,\nstartup_failure, or timed_out in the last 8 days, so a broken ecosystem\nsurfaces as a red scheduled run that emails a human.\n\nSee maxmind/device-android#61 for the reference implementation.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Add Dependabot failure watcher workflow",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-22T16:12:43Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "98f4606c3bb0933b015770ef12462478359eaeb1",
          "body": "…ns-dependabot-updates-weekly-and-group\n\nRun Dependabot updates weekly and group CodeQL updates",
          "is_bot": false,
          "headline": "Merge pull request #750 from maxmind/wstorey/stf-983-run-github-actio…",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-21T20:09:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9f69e3f9dafc610c4af67aa12b54b7005bbadc86",
          "body": "Dependabot treats the github/codeql-action subpath actions (init,\nanalyze, autobuild) as separate dependencies and opens a separate PR\nfor each. CI fails unless they are all updated together. Group them so\nthat they arrive as a single PR.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Group CodeQL action updates",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-21T18:49:56Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "5b1c5ca9f8035472c951bf8fb0322685a2be56f2",
          "body": "We now review dependency updates weekly rather than daily, so daily\nupdate runs only generate churn. Check for updates once a week on\nMonday morning instead.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Run Dependabot updates weekly",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-21T18:49:39Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "018feb60ea7bcf9be819f8a6aef61377c691af41",
          "body": "…s/setup-java-5.5.0\n\nBump actions/setup-java from 5.4.0 to 5.5.0",
          "is_bot": false,
          "headline": "Merge pull request #741 from maxmind/dependabot/github_actions/action…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-20T18:18:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a7a580f7124d376754ff2915af2aea632318b23",
          "body": "…/codeql-action/init-4.37.0\n\nBump github/codeql-action/init from 4.36.3 to 4.37.0",
          "is_bot": false,
          "headline": "Merge pull request #745 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-20T17:48:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0e0980ad5024cf28e204aac02a3b590e83245286",
          "body": "…/codeql-action/autobuild-4.37.0\n\nBump github/codeql-action/autobuild from 4.36.3 to 4.37.0",
          "is_bot": false,
          "headline": "Merge pull request #743 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-20T17:48:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "78ab5d3da74d47a1c074504ff827b840bc8cd872",
          "body": "…/codeql-action/analyze-4.37.0\n\nBump github/codeql-action/analyze from 4.36.3 to 4.37.0",
          "is_bot": false,
          "headline": "Merge pull request #744 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-20T17:48:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "140087750d873c1236e7aecf4e5d5128fc0625a2",
          "body": "…er-junit-jupiter-6.1.2\n\nBump org.junit.jupiter:junit-jupiter from 6.1.1 to 6.1.2",
          "is_bot": false,
          "headline": "Merge pull request #747 from maxmind/dependabot/maven/org.junit.jupit…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-20T17:06:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf88991f6cd8f53f34131dc8a4fb3c8da941ce06",
          "body": "…tools-checkstyle-13.8.0\n\nBump com.puppycrawl.tools:checkstyle from 13.7.0 to 13.8.0",
          "is_bot": false,
          "headline": "Merge pull request #748 from maxmind/dependabot/maven/com.puppycrawl.…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-20T17:05:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "38466ec20bfd450e3e74a4300acfc7b06d3a40db",
          "body": "Bumps [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) from 13.7.0 to 13.8.0.\n- [Release notes](https://github.com/checkstyle/checkstyle/releases)\n- [Commits](https://github.com/checkstyle/checkstyle/compare/checkstyle-13.7.0...checkstyle-13.8.0)\n\n---\nupdated-dependencies:\n[…]\ne: com.puppycrawl.tools:checkstyle\n  dependency-version: 13.8.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump com.puppycrawl.tools:checkstyle from 13.7.0 to 13.8.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-20T14:02:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5c32a6b06bf4dbbb544f872c15e837b9075da588",
          "body": "Bumps [org.junit.jupiter:junit-jupiter](https://github.com/junit-team/junit-framework) from 6.1.1 to 6.1.2.\n- [Release notes](https://github.com/junit-team/junit-framework/releases)\n- [Commits](https://github.com/junit-team/junit-framework/compare/r6.1.1...r6.1.2)\n\n---\nupdated-dependencies:\n- depend\n[…]\ne: org.junit.jupiter:junit-jupiter\n  dependency-version: 6.1.2\n  dependency-type: direct:development\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump org.junit.jupiter:junit-jupiter from 6.1.1 to 6.1.2",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-20T14:02:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "62a03cf9549c0cb4b1f825cd7b546d5ee0495318",
          "body": "Release 5.2.0",
          "is_bot": false,
          "headline": "Merge pull request #746 from maxmind/greg/stf-1005",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-17T21:07:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c57d1e5b324535692166219b5a499e808bc86041",
          "body": "Ran `mise up` to bump pinned tool versions (hugo). lychee, java, and\nmaven were already at their latest locked versions. lychee.toml already\nuses the current (enum-based) include_fragments schema, so no config\nmigration was needed; `mise run check-links` passes.\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Update mise tools",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-16T22:40:34Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "193527245c1c0352cabf2ea4c52e8c56358f0f2a",
          "body": null,
          "is_bot": false,
          "headline": "Preparing for 5.2.0",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-16T21:57:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "687e1ce9b4f6c3db6f129e66c4692b9584808982",
          "body": null,
          "is_bot": false,
          "headline": "Update Jackson",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-16T21:57:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6a44d0d5870568811fa445c85d7cf34d2476ec9f",
          "body": null,
          "is_bot": false,
          "headline": "Set release date",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-16T21:56:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "305c0edcdca55276170cfebcc48b37f9f5902bc9",
          "body": "…anonymizer\n\nAdd residential proxy data to Anonymizer record",
          "is_bot": false,
          "headline": "Merge pull request #740 from maxmind/greg/stf-997-add-residential-to-…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-16T16:46:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c468a20223c11adaa6bb7048d06951507e1bcc35",
          "body": "The no-arg constructor's JavaDoc said null was used for all nullable\nfields, but the compact canonical constructor replaces a null\nresidential with an empty AnonymizerFeed. Clarify this so a\nmaintainer doesn't assume residential() can be null after\nnew Anonymizer().\n\nCo-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Document residential default in Anonymizer no-arg constructor",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-16T15:15:55Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "12e287c59b32d085ec49e4898913db82170fc058",
          "body": "Bumps [github/codeql-action/init](https://github.com/github/codeql-action) from 4.36.3 to 4.37.0.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/comp\n[…]\ncy-name: github/codeql-action/init\n  dependency-version: 4.37.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action/init from 4.36.3 to 4.37.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-15T14:06:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5d5ccc82d6a329bcd15b6a89a37920d0def79ce5",
          "body": "Bumps [github/codeql-action/analyze](https://github.com/github/codeql-action) from 4.36.3 to 4.37.0.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/c\n[…]\nname: github/codeql-action/analyze\n  dependency-version: 4.37.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action/analyze from 4.36.3 to 4.37.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-15T14:05:01Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7de31dfde5020525a0b6420c8b45d77951731bae",
          "body": "Bumps [github/codeql-action/autobuild](https://github.com/github/codeql-action) from 4.36.3 to 4.37.0.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action\n[…]\nme: github/codeql-action/autobuild\n  dependency-version: 4.37.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action/autobuild from 4.36.3 to 4.37.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-15T14:03:46Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4b64e219b73efce90c9ee8b54193c540e0a2745c",
          "body": "Adds a residential field to the Anonymizer record containing\nresidential proxy data for the network. This data is exposed as a\nnew reusable AnonymizerFeed record (confidence, networkLastSeen,\nproviderName) so that future anonymizer feeds (e.g. VPN, mobile,\ndatacenter) can share the same shape. The r\n[…]\nields are set.\n\nA deprecated constructor with the previous signature is retained on\nAnonymizer for backward compatibility in this minor release.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Add residential proxy data to Anonymizer record",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-07-14T14:56:56Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e40ae15600bbf00ccdf2f45f04cc5daec73b96dc",
          "body": "Bumps [actions/setup-java](https://github.com/actions/setup-java) from 5.4.0 to 5.5.0.\n- [Release notes](https://github.com/actions/setup-java/releases)\n- [Commits](https://github.com/actions/setup-java/compare/1bcf9fb12cf4aa7d266a90ae39939e61372fe520...0f481fcb613427c0f801b606911222b5b6f3083a)\n\n---\n[…]\ndependency-name: actions/setup-java\n  dependency-version: 5.5.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump actions/setup-java from 5.4.0 to 5.5.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-14T14:05:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "33b6cebe66102b743ca56a1cb119c3cb713312e9",
          "body": "…/codeql-action/autobuild-4.36.3\n\nBump github/codeql-action/autobuild from 4.36.2 to 4.36.3",
          "is_bot": false,
          "headline": "Merge pull request #737 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-09T15:40:57Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3927eca08062cd78369044d026f7ee2422406537",
          "body": "…/codeql-action/analyze-4.36.3\n\nBump github/codeql-action/analyze from 4.36.2 to 4.36.3",
          "is_bot": false,
          "headline": "Merge pull request #738 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-09T15:33:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "acd262bdfbbccc9b3200dcdfb25e5f1496eb58cd",
          "body": "…/codeql-action/init-4.36.3\n\nBump github/codeql-action/init from 4.36.2 to 4.36.3",
          "is_bot": false,
          "headline": "Merge pull request #739 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-09T15:21:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c6d94f29f66e5c2509800fff56651accf16d46b2",
          "body": "Bumps [github/codeql-action/init](https://github.com/github/codeql-action) from 4.36.2 to 4.36.3.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/comp\n[…]\ncy-name: github/codeql-action/init\n  dependency-version: 4.36.3\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action/init from 4.36.2 to 4.36.3",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T14:06:42Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c58faaea5dfddee66fd99bc7e81af6e03274c4e7",
          "body": "Bumps [github/codeql-action/analyze](https://github.com/github/codeql-action) from 4.36.2 to 4.36.3.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/c\n[…]\nname: github/codeql-action/analyze\n  dependency-version: 4.36.3\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action/analyze from 4.36.2 to 4.36.3",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T14:05:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5d9cec1b830cdd857ed8149d790507e008edf324",
          "body": "Bumps [github/codeql-action/autobuild](https://github.com/github/codeql-action) from 4.36.2 to 4.36.3.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action\n[…]\nme: github/codeql-action/autobuild\n  dependency-version: 4.36.3\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action/autobuild from 4.36.2 to 4.36.3",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-09T14:04:10Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "a99776647942cd58ac207a41fa96f6e8efbdcb8b",
          "body": "…tools-checkstyle-13.7.0\n\nBump com.puppycrawl.tools:checkstyle from 13.6.0 to 13.7.0",
          "is_bot": false,
          "headline": "Merge pull request #735 from maxmind/dependabot/maven/com.puppycrawl.…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-06T15:24:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7a45d556ae5825c4fb32f91c626b9eff02371f67",
          "body": "…er-junit-jupiter-6.1.1\n\nBump org.junit.jupiter:junit-jupiter from 6.1.0 to 6.1.1",
          "is_bot": false,
          "headline": "Merge pull request #736 from maxmind/dependabot/maven/org.junit.jupit…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-07-06T15:21:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cdfa7d6fbac159ac98a2c19e279d15684c8b9165",
          "body": "Bumps [org.junit.jupiter:junit-jupiter](https://github.com/junit-team/junit-framework) from 6.1.0 to 6.1.1.\n- [Release notes](https://github.com/junit-team/junit-framework/releases)\n- [Commits](https://github.com/junit-team/junit-framework/compare/r6.1.0...r6.1.1)\n\n---\nupdated-dependencies:\n- depend\n[…]\ne: org.junit.jupiter:junit-jupiter\n  dependency-version: 6.1.1\n  dependency-type: direct:development\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump org.junit.jupiter:junit-jupiter from 6.1.0 to 6.1.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T14:02:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7e6675dfc763a722f0b25e8ec288aee9d3da87d1",
          "body": "Bumps [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) from 13.6.0 to 13.7.0.\n- [Release notes](https://github.com/checkstyle/checkstyle/releases)\n- [Commits](https://github.com/checkstyle/checkstyle/compare/checkstyle-13.6.0...checkstyle-13.7.0)\n\n---\nupdated-dependencies:\n[…]\ne: com.puppycrawl.tools:checkstyle\n  dependency-version: 13.7.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump com.puppycrawl.tools:checkstyle from 13.6.0 to 13.7.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-07-06T14:02:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "51e32b03afad13ba8cebb96e80a263a83a544b0b",
          "body": "Fix gh-pages deploy: restore java lock URLs and build docs on PRs",
          "is_bot": false,
          "headline": "Merge pull request #734 from maxmind/greg/fix-pages-mise-lock",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-30T20:22:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2ced4492527df709e30b0d067c077c1aa059f913",
          "body": "The Pages workflow only ran on pushes to main, so a broken mise.lock or\ndocs build was not detected until after merge (when the deploy runs the\nfull 'mise install --locked'). Run the build on pull requests too, and\ngate the gh-pages publish step to pushes on main so PRs validate without\ndeploying. Scope the concurrency group per ref so PR runs do not cancel\nthe main deploy.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Build docs on pull requests to catch breakage pre-merge",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T19:12:07Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "dc0eb9b26f258be2d7e3bfc0f93dc22c4ef5a4b7",
          "body": "A prior mise.lock regeneration left the core:java entry with only\n[tools.java.options] and no per-platform url/checksum entries. Under\nthe mise version used in CI, 'mise install --locked' then fails with\n'No lockfile URL found for java@26.0.1', which broke the gh-pages\ndeploy (it runs the full locked install). Regenerated with 'mise lock\njava' to populate the per-platform entries.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Add java platform URLs to mise.lock",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T19:12:07Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "914767eea527fa37bbc8f9b4af40f037f468fce5",
          "body": "Clarify Windows memory-map file locking and fix Javadoc issues",
          "is_bot": false,
          "headline": "Merge pull request #733 from maxmind/greg/docs-windows-memory-map-lock",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-30T18:12:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "acdb7fda8c00a74ed9d8528ae4f4b718e8dc7703",
          "body": null,
          "is_bot": false,
          "headline": "Update lychee config for new version",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T15:06:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4db616f2fdcac8c0ddbdcb7fca10001ed3a6f46b",
          "body": null,
          "is_bot": false,
          "headline": "Update mise deps",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T15:05:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d56d6bae211d4976ccc56a8dfb2d12fe70f1993e",
          "body": "tryIsp returns Optional<IspResponse>, so its @return should note the\nempty case like the other try* methods. The phrase had been misplaced\non the @param tag.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Add missing optional-return note to tryIsp Javadoc",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T14:52:50Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "dddbb3b7440631b50463b55257e02d95d0b089c1",
          "body": "…s/setup-java-5.4.0\n\nBump actions/setup-java from 5.3.0 to 5.4.0",
          "is_bot": false,
          "headline": "Merge pull request #732 from maxmind/dependabot/github_actions/action…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-30T14:48:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18371eeedd2ee59a12f6f8b52c25e3ae0f8cdcb0",
          "body": "- ConnectionTypeResponse.fromString() Javadoc said it creates a\n  ConnectionTypeResponse; it returns the ConnectionType enum.\n- NetworkDeserializer constructor Javadoc had a malformed inline tag\n  (@{code instead of {@code).\n- WebServiceProvider/WebServiceClient insights() @return said\n  \"Insight mo\n[…]\nodel\".\n- Corrected \"a AnonymousIpResponse\"/\"a AnonymousPlusResponse\" to\n  \"an ...\" in DatabaseProvider and DatabaseReader Javadoc.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Fix additional Javadoc errors found in audit",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T14:43:29Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4c6d19c229b5563a7368470dffb16776819f170a",
          "body": "Correct several @return tags that named nonexistent or wrong types:\nConnectTypeResponse -> ConnectionTypeResponse, IPRiskResponse ->\nIpRiskResponse, and IspResponse -> AsnResponse on the GeoLite ASN\nlookup methods. Also fix the fileMode() Javadoc, which referred to\ninitializing the Builder with a URL rather than an InputStream, and\nremove stray return-value text from a tryIsp() @param description.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Fix incorrect type names and descriptions in Javadoc",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T14:32:13Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "211330c6b932ebc926d780b11c7c13df923bf8f2",
          "body": "Rewrite the DatabaseReader.close() Javadoc to explain that closing the\nreader releases its reference to the mapped buffer but cannot unmap the\nMappedByteBuffer immediately, and that on Windows this may keep the\ndatabase file locked for rename, replacement, or deletion until the\nbuffer is garbage collected. Also add a \"File Lock on Windows\" section\nto the README, which previously had none.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Clarify Windows memory map file locking",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-30T14:31:30Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "933a046103af639785b343a85ce822c621fe5c1c",
          "body": "Bumps [actions/setup-java](https://github.com/actions/setup-java) from 5.3.0 to 5.4.0.\n- [Release notes](https://github.com/actions/setup-java/releases)\n- [Commits](https://github.com/actions/setup-java/compare/ad2b38190b15e4d6bdf0c97fb4fca8412226d287...1bcf9fb12cf4aa7d266a90ae39939e61372fe520)\n\n---\n[…]\ndependency-name: actions/setup-java\n  dependency-version: 5.4.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump actions/setup-java from 5.3.0 to 5.4.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-30T14:03:55Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "71dfacdfb17890894ddf504ba853ea1f57338532",
          "body": "…core/zizmor-action-0.5.7\n\nBump zizmorcore/zizmor-action from 0.5.6 to 0.5.7",
          "is_bot": false,
          "headline": "Merge pull request #731 from maxmind/dependabot/github_actions/zizmor…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-29T16:05:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a90c73f325062b9bd186001ea8fd52d848067e6",
          "body": "Bumps [zizmorcore/zizmor-action](https://github.com/zizmorcore/zizmor-action) from 0.5.6 to 0.5.7.\n- [Release notes](https://github.com/zizmorcore/zizmor-action/releases)\n- [Commits](https://github.com/zizmorcore/zizmor-action/compare/5f14fd08f7cf1cb1609c1e344975f152c7ee938d...192e21d79ab29983730a13\n[…]\nency-name: zizmorcore/zizmor-action\n  dependency-version: 0.5.7\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump zizmorcore/zizmor-action from 0.5.6 to 0.5.7",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-29T14:03:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b2a29a3d2824f2fe14bf984429157e802a9d5677",
          "body": "…se-action-4.2.0\n\nBump jdx/mise-action from 4.1.0 to 4.2.0",
          "is_bot": false,
          "headline": "Merge pull request #729 from maxmind/dependabot/github_actions/jdx/mi…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-24T16:01:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2a16c88ead0b210bbcf1228a550bdd6d5bff7b30",
          "body": "…s/checkout-7.0.0\n\nBump actions/checkout from 6.0.3 to 7.0.0",
          "is_bot": false,
          "headline": "Merge pull request #730 from maxmind/dependabot/github_actions/action…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-24T15:52:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "53db26612cc1b2eaa9f4ddb48e6e92525c189ec5",
          "body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.3 to 7.0.0.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/df4cb1c069e1874edd31b43\n[…]\n- dependency-name: actions/checkout\n  dependency-version: 7.0.0\n  dependency-type: direct:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump actions/checkout from 6.0.3 to 7.0.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-24T14:04:04Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4bf9649094bf2c104b8b3fc67408ec37ff099bf9",
          "body": "Bumps [jdx/mise-action](https://github.com/jdx/mise-action) from 4.1.0 to 4.2.0.\n- [Release notes](https://github.com/jdx/mise-action/releases)\n- [Changelog](https://github.com/jdx/mise-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/jdx/mise-action/compare/dba19683ed58901619b14f395a24\n[…]\n\n- dependency-name: jdx/mise-action\n  dependency-version: 4.2.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump jdx/mise-action from 4.1.0 to 4.2.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-24T14:02:42Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f0672e31800a04cd7bfbbcdff8230f07f95c9eea",
          "body": "…ntral-central-publishing-maven-plugin-0.11.0\n\nBump org.sonatype.central:central-publishing-maven-plugin from 0.10.0 to 0.11.0",
          "is_bot": false,
          "headline": "Merge pull request #727 from maxmind/dependabot/maven/org.sonatype.ce…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-23T15:51:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c340bccc8c3c63bb3240984db06e0544f08bf70e",
          "body": "…s/setup-java-5.3.0\n\nBump actions/setup-java from 5.2.0 to 5.3.0",
          "is_bot": false,
          "headline": "Merge pull request #728 from maxmind/dependabot/github_actions/action…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-23T15:49:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5db044602e1ca1ccfc056db4a1317e6e8d3d7028",
          "body": "Bumps [actions/setup-java](https://github.com/actions/setup-java) from 5.2.0 to 5.3.0.\n- [Release notes](https://github.com/actions/setup-java/releases)\n- [Commits](https://github.com/actions/setup-java/compare/be666c2fcd27ec809703dec50e508c2fdc7f6654...ad2b38190b15e4d6bdf0c97fb4fca8412226d287)\n\n---\n[…]\ndependency-name: actions/setup-java\n  dependency-version: 5.3.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump actions/setup-java from 5.2.0 to 5.3.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-23T14:02:47Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5183773d1963c908a1a2384271b7a59d1d78eda5",
          "body": "Bumps [org.sonatype.central:central-publishing-maven-plugin](https://github.com/sonatype/central-publishing-maven-plugin) from 0.10.0 to 0.11.0.\n- [Commits](https://github.com/sonatype/central-publishing-maven-plugin/commits)\n\n---\nupdated-dependencies:\n- dependency-name: org.sonatype.central:central-publishing-maven-plugin\n  dependency-version: 0.11.0\n  dependency-type: direct:development\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump org.sonatype.central:central-publishing-maven-plugin",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-23T14:02:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0f2b0356dde75c35ef79d924505751d8089c5ce4",
          "body": "…tools-checkstyle-13.6.0\n\nBump com.puppycrawl.tools:checkstyle from 13.5.0 to 13.6.0",
          "is_bot": false,
          "headline": "Merge pull request #726 from maxmind/dependabot/maven/com.puppycrawl.…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-22T16:13:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2ca4ae962c0ab048c820f481fd252d26f0af428",
          "body": "Bumps [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) from 13.5.0 to 13.6.0.\n- [Release notes](https://github.com/checkstyle/checkstyle/releases)\n- [Commits](https://github.com/checkstyle/checkstyle/compare/checkstyle-13.5.0...checkstyle-13.6.0)\n\n---\nupdated-dependencies:\n[…]\ne: com.puppycrawl.tools:checkstyle\n  dependency-version: 13.6.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump com.puppycrawl.tools:checkstyle from 13.5.0 to 13.6.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-22T14:02:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "66820f4f4f09200d643d42de130a9c23e82e72bb",
          "body": "Regenerate mise.lock with java platform URLs",
          "is_bot": false,
          "headline": "Merge pull request #725 from maxmind/wstorey/fix-lock-file",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-11T17:03:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aa48e2b3bc94fe2ffa2a4502a9c25063f2e77ca8",
          "body": "mise-action 4.1.0 now automatically runs `mise install --locked` when\na mise.lock is present. The locked install fails because the lock file\nlacked platform URL and checksum entries for java:\n\n    No lockfile URL found for java@26.0.1 on platform linux-x64\n    (--locked mode)\n\nRegenerate the lock file with `mise lock` to add them.\n\nCo-Authored-By: Claude Fable 5 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Regenerate mise.lock with java platform URLs",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-11T16:09:59Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "9713c11461d5c00421e50de1697dda5541be80d3",
          "body": "…/codeql-action-4.36.2\n\nBump github/codeql-action from 4.36.1 to 4.36.2",
          "is_bot": false,
          "headline": "Merge pull request #723 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-11T16:03:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6ffa16f259fa3c998ab768b8983168539c940f11",
          "body": "…se-action-4.1.0\n\nBump jdx/mise-action from 4.0.1 to 4.1.0",
          "is_bot": false,
          "headline": "Merge pull request #724 from maxmind/dependabot/github_actions/jdx/mi…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-11T16:02:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5ef1047fa914339868e9b71a385f9469ce64b3c2",
          "body": "Bumps [jdx/mise-action](https://github.com/jdx/mise-action) from 4.0.1 to 4.1.0.\n- [Release notes](https://github.com/jdx/mise-action/releases)\n- [Changelog](https://github.com/jdx/mise-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/jdx/mise-action/compare/1648a7812b9aeae629881980618f\n[…]\n\n- dependency-name: jdx/mise-action\n  dependency-version: 4.1.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump jdx/mise-action from 4.0.1 to 4.1.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-11T14:04:26Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "21e1b9b06d9f4aaa0743ffef4bbcfa702ea2987c",
          "body": "Bumps [github/codeql-action](https://github.com/github/codeql-action) from 4.36.1 to 4.36.2.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/compare/8\n[…]\nendency-name: github/codeql-action\n  dependency-version: 4.36.2\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action from 4.36.1 to 4.36.2",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-11T14:04:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8037aa04099787f657a3bc5974be17707e4b4f01",
          "body": "…/codeql-action-4.36.1\n\nBump github/codeql-action from 4.36.0 to 4.36.1",
          "is_bot": false,
          "headline": "Merge pull request #721 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-09T15:46:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "19d99903d22ae32af37ea8e312e37d9432257d48",
          "body": "…s/checkout-6.0.3\n\nBump actions/checkout from 6.0.2 to 6.0.3",
          "is_bot": false,
          "headline": "Merge pull request #722 from maxmind/dependabot/github_actions/action…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-09T15:43:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9c98d6774a6a80a75b03b30f779d7f71298ca2cb",
          "body": "Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.2 to 6.0.3.\n- [Release notes](https://github.com/actions/checkout/releases)\n- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/actions/checkout/compare/de0fac2e4500dabe0009e67\n[…]\n- dependency-name: actions/checkout\n  dependency-version: 6.0.3\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump actions/checkout from 6.0.2 to 6.0.3",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-09T14:04:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f12f559962c3ed037fc2ad3ae355fc89ee8858f4",
          "body": "Bumps [github/codeql-action](https://github.com/github/codeql-action) from 4.36.0 to 4.36.1.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/compare/7\n[…]\nendency-name: github/codeql-action\n  dependency-version: 4.36.1\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action from 4.36.0 to 4.36.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-09T14:04:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c95c6baa3f1d62f54912f66ed14ab4a462bec92c",
          "body": "Bump the jackson group with 5 updates",
          "is_bot": false,
          "headline": "Merge pull request #718 from maxmind/dependabot/maven/jackson-230bb0a6da",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-08T15:58:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "16ed53cad60a78eb56f2d729d4feebfac737939f",
          "body": "…tools-checkstyle-13.5.0\n\nBump com.puppycrawl.tools:checkstyle from 13.4.2 to 13.5.0",
          "is_bot": false,
          "headline": "Merge pull request #719 from maxmind/dependabot/maven/com.puppycrawl.…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-08T15:25:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "721f1f9f928e49a7c6a60bd39ca509a2dd167c79",
          "body": "…se-action-4.0.1\n\nBump jdx/mise-action from 3.6.1 to 4.0.1",
          "is_bot": false,
          "headline": "Merge pull request #720 from maxmind/dependabot/github_actions/jdx/mi…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-08T15:18:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aed15124f9bfec4ce0d76d1de819be8fe568fd46",
          "body": "Bumps [jdx/mise-action](https://github.com/jdx/mise-action) from 3.6.1 to 4.0.1.\n- [Release notes](https://github.com/jdx/mise-action/releases)\n- [Changelog](https://github.com/jdx/mise-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/jdx/mise-action/compare/v3.6.1...1648a7812b9aeae6298\n[…]\n\n- dependency-name: jdx/mise-action\n  dependency-version: 4.0.1\n  dependency-type: direct:production\n  update-type: version-update:semver-major\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump jdx/mise-action from 3.6.1 to 4.0.1",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-08T14:03:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3494077dc49049ea574a8e9a424e6ed51a6f0097",
          "body": "Bumps [com.puppycrawl.tools:checkstyle](https://github.com/checkstyle/checkstyle) from 13.4.2 to 13.5.0.\n- [Release notes](https://github.com/checkstyle/checkstyle/releases)\n- [Commits](https://github.com/checkstyle/checkstyle/compare/checkstyle-13.4.2...checkstyle-13.5.0)\n\n---\nupdated-dependencies:\n[…]\ne: com.puppycrawl.tools:checkstyle\n  dependency-version: 13.5.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump com.puppycrawl.tools:checkstyle from 13.4.2 to 13.5.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-08T14:02:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "fa939d18af9f07d0d18dfc6e03471bcb8a028768",
          "body": "Bumps the jackson group with 5 updates:\n\n| Package | From | To |\n| --- | --- | --- |\n| [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson) | `2.21.4` | `2.22.0` |\n| com.fasterxml.jackson.datatype:jackson-datatype-jsr310 | `2.21.4` | `2.22.0` |\n| [com.fasterxml.jackson\n[…]\njects\n  dependency-version: 2.22.0\n  dependency-type: direct:development\n  update-type: version-update:semver-minor\n  dependency-group: jackson\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump the jackson group with 5 updates",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-08T14:02:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "df8c5497af68e5b95b47c008394dd4c38414b51b",
          "body": "Validate and update links (STF-557)",
          "is_bot": false,
          "headline": "Merge pull request #716 from maxmind/greg/stf-557",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-05T21:26:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0fc244355a86b7d429c6764ad915b16f0e1c87cd",
          "body": "Bump the jackson group with 3 updates",
          "is_bot": false,
          "headline": "Merge pull request #717 from maxmind/dependabot/maven/jackson-5d060f0974",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-05T17:08:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d25617eff92a7fe8cb334efcfa48fa0b4ba40a15",
          "body": "Bumps the jackson group with 3 updates: [com.fasterxml.jackson.core:jackson-databind](https://github.com/FasterXML/jackson), com.fasterxml.jackson.datatype:jackson-datatype-jsr310 and [com.fasterxml.jackson.core:jackson-core](https://github.com/FasterXML/jackson-core).\n\n\nUpdates `com.fasterxml.jacks\n[…]\nn-core\n  dependency-version: 2.21.4\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n  dependency-group: jackson\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump the jackson group with 3 updates",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-05T14:02:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0b38d5926c8dd5fd1a92f29f89d196741811a794",
          "body": "Validated all links with lychee and updated those that were out of date\nor redirected elsewhere:\n\n- dev.maxmind.com/geoip doc URLs now use canonical trailing-slash form\n- www.maxmind.com/ -> www.maxmind.com/en/home (pom.xml)\n- www.maxmind.com/en/correction -> /en/geoip-data-correction-request\n- www.\n[…]\nsupport -> support.maxmind.com/knowledge-base\n\nHistorical CHANGELOG.md entries are intentionally left unchanged.\n\nPart of STF-557.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Update stale and redirecting links",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-04T22:01:21Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "be9b656fad71e4f254a5f27a0a1b1307466ffddc",
          "body": "Adds a lychee configuration and a Links GitHub Actions workflow so that\nstale or redirecting links are caught automatically going forward. The\nchecker runs on push, pull request, and weekly to catch external link\nrot. max_redirects is 0 so links that have moved are surfaced and can be\nupdated to their canonical destination.\n\nPart of STF-557.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Add lychee link checker config and CI workflow",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-06-04T22:01:21Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "edc022bf2e661ae9d93c3503395d8f4ffa001c4d",
          "body": "…79.japicmp-japicmp-maven-plugin-0.26.1\n\nBump com.github.siom79.japicmp:japicmp-maven-plugin from 0.26.0 to 0.26.1",
          "is_bot": false,
          "headline": "Merge pull request #715 from maxmind/dependabot/maven/com.github.siom…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-04T14:57:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cb1d6d626bae87098f1f1152094da69b478d2663",
          "body": "Bumps [com.github.siom79.japicmp:japicmp-maven-plugin](https://github.com/siom79/japicmp) from 0.26.0 to 0.26.1.\n- [Release notes](https://github.com/siom79/japicmp/releases)\n- [Changelog](https://github.com/siom79/japicmp/blob/master/release.py)\n- [Commits](https://github.com/siom79/japicmp/compare\n[…]\nom79.japicmp:japicmp-maven-plugin\n  dependency-version: 0.26.1\n  dependency-type: direct:development\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump com.github.siom79.japicmp:japicmp-maven-plugin",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-04T01:56:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "cb97aba1366b04e2cbee11543a08e059c8b80875",
          "body": "…n.plugins-maven-surefire-plugin-3.5.6\n\nBump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6",
          "is_bot": false,
          "headline": "Merge pull request #714 from maxmind/dependabot/maven/org.apache.mave…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-03T16:45:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4335fe66f62ad3847814b065a629769b1951d6c0",
          "body": "Bumps [org.apache.maven.plugins:maven-surefire-plugin](https://github.com/apache/maven-surefire) from 3.5.5 to 3.5.6.\n- [Release notes](https://github.com/apache/maven-surefire/releases)\n- [Commits](https://github.com/apache/maven-surefire/compare/surefire-3.5.5...surefire-3.5.6)\n\n---\nupdated-depend\n[…]\naven.plugins:maven-surefire-plugin\n  dependency-version: 3.5.6\n  dependency-type: direct:development\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump org.apache.maven.plugins:maven-surefire-plugin from 3.5.5 to 3.5.6",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-06-02T17:50:41Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "9b91c07b4459127c5b42282355a9bdae1e37abf2",
          "body": "Bump com.fasterxml.jackson.jr:jackson-jr-objects from 2.21.3 to 2.21.4 in the jackson group",
          "is_bot": false,
          "headline": "Merge pull request #710 from maxmind/dependabot/maven/jackson-a55325ef26",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-01T20:14:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "015547f2d5797b10bb6c8054228ea1196e5080cb",
          "body": "…79.japicmp-japicmp-maven-plugin-0.26.0\n\nBump com.github.siom79.japicmp:japicmp-maven-plugin from 0.25.7 to 0.26.0",
          "is_bot": false,
          "headline": "Merge pull request #711 from maxmind/dependabot/maven/com.github.siom…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-01T20:13:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3661b1783d1fed8ccc739d5412388b892845f851",
          "body": "…/codeql-action-4.36.0\n\nBump github/codeql-action from 4.35.5 to 4.36.0",
          "is_bot": false,
          "headline": "Merge pull request #712 from maxmind/dependabot/github_actions/github…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-06-01T20:07:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "106398e563ec0e2b0fded40bad8b56406973a98e",
          "body": "Update Anonymizer javadoc to current Insights service name",
          "is_bot": false,
          "headline": "Merge pull request #713 from maxmind/greg/stf-555",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-05-31T17:55:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4eb0b41806e37c0fa7ddf3a4cea90eb4bc530854",
          "body": "The city web service is named City Plus; update the mobileCountryCode and mobileNetworkCode documentation accordingly.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Refer to City Plus web service in IspResponse docs",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-05-30T16:22:23Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "ab19d2201c6bed573ee660ad37c691d4518ceaa5",
          "body": "Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Update remaining GeoIP2 product prose to GeoIP",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-05-29T21:41:23Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "27b214a9358d709c83a01967ea883e1aa3e1f53d",
          "body": "MaxMind no longer ships the legacy products, so refer to the products as\n'GeoIP' and 'GeoLite' rather than 'GeoIP2'/'GeoLite2' in prose. Technical\nidentifiers (packages, class names, filenames, edition IDs, hostnames,\nURLs) are unchanged.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Use 'GeoIP'/'GeoLite' branding in documentation and prose",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-05-29T20:24:29Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "0937e8182435054a745009d03123e9a1926d942c",
          "body": "Replace references to \"GeoIP2 Precision Insights\" with \"GeoIP2 Insights\",\nmatching the wording already used in the other GeoIP2 client libraries.\n\nCo-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Update Anonymizer javadoc to current Insights service name",
          "author_name": "Gregory Oschwald",
          "author_login": "oschwald",
          "committed_at": "2026-05-29T19:56:51Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "18583e7450a349e6d5de1c103d7c29bb76742d5f",
          "body": "Bumps [github/codeql-action](https://github.com/github/codeql-action) from 4.35.5 to 4.36.0.\n- [Release notes](https://github.com/github/codeql-action/releases)\n- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)\n- [Commits](https://github.com/github/codeql-action/compare/9\n[…]\nendency-name: github/codeql-action\n  dependency-version: 4.36.0\n  dependency-type: direct:production\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump github/codeql-action from 4.35.5 to 4.36.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-29T17:04:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "99e0983c4e1fa18e6efc9e0f93b99527afd63336",
          "body": "Bumps [com.github.siom79.japicmp:japicmp-maven-plugin](https://github.com/siom79/japicmp) from 0.25.7 to 0.26.0.\n- [Release notes](https://github.com/siom79/japicmp/releases)\n- [Changelog](https://github.com/siom79/japicmp/blob/master/release.py)\n- [Commits](https://github.com/siom79/japicmp/compare\n[…]\nom79.japicmp:japicmp-maven-plugin\n  dependency-version: 0.26.0\n  dependency-type: direct:development\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump com.github.siom79.japicmp:japicmp-maven-plugin",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-29T17:01:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "40b2830e908629c9ee4714df136880f7dbb649d8",
          "body": "Bumps the jackson group with 1 update: [com.fasterxml.jackson.jr:jackson-jr-objects](https://github.com/FasterXML/jackson-jr).\n\n\nUpdates `com.fasterxml.jackson.jr:jackson-jr-objects` from 2.21.3 to 2.21.4\n- [Commits](https://github.com/FasterXML/jackson-jr/compare/jackson-jr-parent-2.21.3...jackson-\n[…]\njects\n  dependency-version: 2.21.4\n  dependency-type: direct:development\n  update-type: version-update:semver-patch\n  dependency-group: jackson\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump com.fasterxml.jackson.jr:jackson-jr-objects in the jackson group",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-29T17:01:15Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "55535291a75f63863f0a37a6e9b3e276991be4d7",
          "body": "…er-junit-jupiter-6.1.0\n\nBump org.junit.jupiter:junit-jupiter from 6.0.3 to 6.1.0",
          "is_bot": false,
          "headline": "Merge pull request #709 from maxmind/dependabot/maven/org.junit.jupit…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-05-27T17:24:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "073f010ea48cc547087cfac6aab6dc71bce3f43f",
          "body": "Bumps [org.junit.jupiter:junit-jupiter](https://github.com/junit-team/junit-framework) from 6.0.3 to 6.1.0.\n- [Release notes](https://github.com/junit-team/junit-framework/releases)\n- [Commits](https://github.com/junit-team/junit-framework/compare/r6.0.3...r6.1.0)\n\n---\nupdated-dependencies:\n- depend\n[…]\ne: org.junit.jupiter:junit-jupiter\n  dependency-version: 6.1.0\n  dependency-type: direct:development\n  update-type: version-update:semver-minor\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump org.junit.jupiter:junit-jupiter from 6.0.3 to 6.1.0",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-26T21:06:54Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "189d0bc990c7ac41263904ba36b6acfc5c83bbfd",
          "body": "…core/zizmor-action-0.5.6\n\nBump zizmorcore/zizmor-action from 0.5.5 to 0.5.6",
          "is_bot": false,
          "headline": "Merge pull request #708 from maxmind/dependabot/github_actions/zizmor…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-05-26T15:04:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "103cb814f3ce3ae003000e696f80bff1e21fefb1",
          "body": "Bumps [zizmorcore/zizmor-action](https://github.com/zizmorcore/zizmor-action) from 0.5.5 to 0.5.6.\n- [Release notes](https://github.com/zizmorcore/zizmor-action/releases)\n- [Commits](https://github.com/zizmorcore/zizmor-action/compare/a16621b09c6db4281f81a93cb393b05dcd7b7165...5f14fd08f7cf1cb1609c1e\n[…]\nency-name: zizmorcore/zizmor-action\n  dependency-version: 0.5.6\n  dependency-type: direct:production\n  update-type: version-update:semver-patch\n...\n\nSigned-off-by: dependabot[bot] <support@github.com>",
          "is_bot": true,
          "headline": "Bump zizmorcore/zizmor-action from 0.5.5 to 0.5.6",
          "author_name": "dependabot[bot]",
          "author_login": "dependabot[bot]",
          "committed_at": "2026-05-25T20:10:59Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "af8dc3b180c36b8399e2c1ce6703b80e30347874",
          "body": "…core/zizmor-action-0.5.5\n\nBump zizmorcore/zizmor-action from 0.5.3 to 0.5.5",
          "is_bot": false,
          "headline": "Merge pull request #703 from maxmind/dependabot/github_actions/zizmor…",
          "author_name": "William Storey",
          "author_login": "horgh",
          "committed_at": "2026-05-22T15:41:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 55,
      "commits_last_year": 386,
      "latest_release_at": "2026-07-16T21:58:02Z",
      "latest_release_tag": "v5.2.0",
      "releases_from_tags": false,
      "days_since_last_push": 4,
      "active_weeks_last_year": 47,
      "days_since_latest_release": 10,
      "mean_days_between_releases": 106
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 37,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "com.maxmind.geoip2:geoip2",
          "exists": true,
          "license": "Apache License, Version 2.0",
          "keywords": [],
          "ecosystem": "maven",
          "matches_repo": true,
          "registry_url": "https://central.sonatype.com/artifact/com.maxmind.geoip2/geoip2",
          "is_deprecated": false,
          "latest_version": "5.2.0",
          "repository_url": "https://github.com/maxmind/GeoIP2-java",
          "versions_count": 54,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-16T22:05:14Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 10
        }
      ]
    },
    "popularity": {
      "forks": 207,
      "stars": 860,
      "watchers": 58,
      "fork_history": {
        "days": [
          {
            "date": "2013-09-23",
            "count": 1
          },
          {
            "date": "2013-10-31",
            "count": 1
          },
          {
            "date": "2013-11-27",
            "count": 1
          },
          {
            "date": "2013-12-11",
            "count": 1
          },
          {
            "date": "2013-12-17",
            "count": 1
          },
          {
            "date": "2014-01-06",
            "count": 1
          },
          {
            "date": "2014-01-28",
            "count": 1
          },
          {
            "date": "2014-04-29",
            "count": 1
          },
          {
            "date": "2014-05-15",
            "count": 1
          },
          {
            "date": "2014-06-18",
            "count": 1
          },
          {
            "date": "2014-07-22",
            "count": 1
          },
          {
            "date": "2014-08-22",
            "count": 1
          },
          {
            "date": "2014-08-28",
            "count": 1
          },
          {
            "date": "2014-08-30",
            "count": 1
          },
          {
            "date": "2014-09-03",
            "count": 1
          },
          {
            "date": "2014-09-04",
            "count": 1
          },
          {
            "date": "2014-09-22",
            "count": 1
          },
          {
            "date": "2014-10-09",
            "count": 2
          },
          {
            "date": "2014-10-15",
            "count": 1
          },
          {
            "date": "2014-10-31",
            "count": 1
          },
          {
            "date": "2014-12-11",
            "count": 1
          },
          {
            "date": "2015-01-21",
            "count": 1
          },
          {
            "date": "2015-01-28",
            "count": 1
          },
          {
            "date": "2015-01-29",
            "count": 2
          },
          {
            "date": "2015-03-11",
            "count": 1
          },
          {
            "date": "2015-04-20",
            "count": 1
          },
          {
            "date": "2015-05-25",
            "count": 1
          },
          {
            "date": "2015-06-06",
            "count": 1
          },
          {
            "date": "2015-06-21",
            "count": 1
          },
          {
            "date": "2015-08-11",
            "count": 1
          },
          {
            "date": "2015-09-14",
            "count": 1
          },
          {
            "date": "2015-10-26",
            "count": 1
          },
          {
            "date": "2015-10-30",
            "count": 1
          },
          {
            "date": "2015-12-01",
            "count": 1
          },
          {
            "date": "2015-12-08",
            "count": 1
          },
          {
            "date": "2016-01-03",
            "count": 1
          },
          {
            "date": "2016-02-07",
            "count": 1
          },
          {
            "date": "2016-02-25",
            "count": 1
          },
          {
            "date": "2016-02-29",
            "count": 1
          },
          {
            "date": "2016-03-02",
            "count": 1
          },
          {
            "date": "2016-03-18",
            "count": 1
          },
          {
            "date": "2016-04-22",
            "count": 1
          },
          {
            "date": "2016-04-25",
            "count": 2
          },
          {
            "date": "2016-04-28",
            "count": 1
          },
          {
            "date": "2016-05-04",
            "count": 1
          },
          {
            "date": "2016-05-10",
            "count": 1
          },
          {
            "date": "2016-06-03",
            "count": 1
          },
          {
            "date": "2016-06-12",
            "count": 1
          },
          {
            "date": "2016-06-21",
            "count": 1
          },
          {
            "date": "2016-06-23",
            "count": 1
          },
          {
            "date": "2016-07-07",
            "count": 1
          },
          {
            "date": "2016-07-08",
            "count": 1
          },
          {
            "date": "2016-07-19",
            "count": 1
          },
          {
            "date": "2016-07-25",
            "count": 1
          },
          {
            "date": "2016-08-16",
            "count": 1
          },
          {
            "date": "2016-08-23",
            "count": 1
          },
          {
            "date": "2016-09-25",
            "count": 1
          },
          {
            "date": "2016-10-19",
            "count": 1
          },
          {
            "date": "2016-10-20",
            "count": 1
          },
          {
            "date": "2016-11-15",
            "count": 1
          },
          {
            "date": "2016-12-02",
            "count": 1
          },
          {
            "date": "2016-12-12",
            "count": 1
          },
          {
            "date": "2016-12-30",
            "count": 1
          },
          {
            "date": "2017-01-06",
            "count": 1
          },
          {
            "date": "2017-02-06",
            "count": 1
          },
          {
            "date": "2017-02-07",
            "count": 1
          },
          {
            "date": "2017-03-02",
            "count": 1
          },
          {
            "date": "2017-03-20",
            "count": 1
          },
          {
            "date": "2017-04-03",
            "count": 1
          },
          {
            "date": "2017-04-24",
            "count": 1
          },
          {
            "date": "2017-05-24",
            "count": 1
          },
          {
            "date": "2017-05-25",
            "count": 1
          },
          {
            "date": "2017-06-12",
            "count": 1
          },
          {
            "date": "2017-08-01",
            "count": 1
          },
          {
            "date": "2017-09-04",
            "count": 1
          },
          {
            "date": "2017-09-05",
            "count": 1
          },
          {
            "date": "2017-10-12",
            "count": 1
          },
          {
            "date": "2017-10-27",
            "count": 1
          },
          {
            "date": "2017-11-02",
            "count": 1
          },
          {
            "date": "2017-12-02",
            "count": 1
          },
          {
            "date": "2017-12-12",
            "count": 1
          },
          {
            "date": "2018-01-06",
            "count": 1
          },
          {
            "date": "2018-01-10",
            "count": 1
          },
          {
            "date": "2018-02-06",
            "count": 1
          },
          {
            "date": "2018-02-26",
            "count": 1
          },
          {
            "date": "2018-03-23",
            "count": 1
          },
          {
            "date": "2018-04-10",
            "count": 1
          },
          {
            "date": "2018-04-23",
            "count": 1
          },
          {
            "date": "2018-06-13",
            "count": 1
          },
          {
            "date": "2018-08-03",
            "count": 1
          },
          {
            "date": "2018-08-29",
            "count": 1
          },
          {
            "date": "2018-09-04",
            "count": 1
          },
          {
            "date": "2018-09-18",
            "count": 1
          },
          {
            "date": "2018-10-05",
            "count": 1
          },
          {
            "date": "2018-10-25",
            "count": 1
          },
          {
            "date": "2018-12-05",
            "count": 1
          },
          {
            "date": "2018-12-18",
            "count": 1
          },
          {
            "date": "2018-12-21",
            "count": 1
          },
          {
            "date": "2019-01-10",
            "count": 1
          },
          {
            "date": "2019-01-21",
            "count": 1
          },
          {
            "date": "2019-01-27",
            "count": 1
          },
          {
            "date": "2019-02-12",
            "count": 1
          },
          {
            "date": "2019-03-20",
            "count": 1
          },
          {
            "date": "2019-03-24",
            "count": 1
          },
          {
            "date": "2019-03-25",
            "count": 1
          },
          {
            "date": "2019-05-10",
            "count": 1
          },
          {
            "date": "2019-05-24",
            "count": 1
          },
          {
            "date": "2019-05-30",
            "count": 1
          },
          {
            "date": "2019-06-04",
            "count": 1
          },
          {
            "date": "2019-07-02",
            "count": 1
          },
          {
            "date": "2019-07-03",
            "count": 1
          },
          {
            "date": "2019-07-24",
            "count": 2
          },
          {
            "date": "2019-09-03",
            "count": 3
          },
          {
            "date": "2019-09-21",
            "count": 1
          },
          {
            "date": "2019-09-27",
            "count": 1
          },
          {
            "date": "2019-09-29",
            "count": 1
          },
          {
            "date": "2019-10-04",
            "count": 1
          },
          {
            "date": "2019-10-17",
            "count": 1
          },
          {
            "date": "2019-10-23",
            "count": 1
          },
          {
            "date": "2019-11-27",
            "count": 1
          },
          {
            "date": "2019-12-05",
            "count": 1
          },
          {
            "date": "2019-12-12",
            "count": 1
          },
          {
            "date": "2019-12-26",
            "count": 1
          },
          {
            "date": "2020-01-21",
            "count": 1
          },
          {
            "date": "2020-02-15",
            "count": 1
          },
          {
            "date": "2020-02-22",
            "count": 1
          },
          {
            "date": "2020-02-23",
            "count": 1
          },
          {
            "date": "2020-03-05",
            "count": 1
          },
          {
            "date": "2020-04-22",
            "count": 1
          },
          {
            "date": "2020-04-28",
            "count": 1
          },
          {
            "date": "2020-05-07",
            "count": 1
          },
          {
            "date": "2020-05-23",
            "count": 1
          },
          {
            "date": "2020-06-05",
            "count": 1
          },
          {
            "date": "2020-07-09",
            "count": 1
          },
          {
            "date": "2020-07-10",
            "count": 1
          },
          {
            "date": "2020-07-20",
            "count": 1
          },
          {
            "date": "2020-07-29",
            "count": 1
          },
          {
            "date": "2020-08-07",
            "count": 1
          },
          {
            "date": "2020-09-14",
            "count": 1
          },
          {
            "date": "2020-09-16",
            "count": 1
          },
          {
            "date": "2020-10-11",
            "count": 1
          },
          {
            "date": "2020-10-16",
            "count": 1
          },
          {
            "date": "2020-12-04",
            "count": 1
          },
          {
            "date": "2020-12-09",
            "count": 1
          },
          {
            "date": "2021-01-12",
            "count": 1
          },
          {
            "date": "2021-03-15",
            "count": 1
          },
          {
            "date": "2021-03-17",
            "count": 1
          },
          {
            "date": "2021-04-13",
            "count": 1
          },
          {
            "date": "2021-04-25",
            "count": 1
          },
          {
            "date": "2021-04-28",
            "count": 1
          },
          {
            "date": "2021-06-04",
            "count": 1
          },
          {
            "date": "2021-07-05",
            "count": 1
          },
          {
            "date": "2021-08-24",
            "count": 1
          },
          {
            "date": "2021-09-19",
            "count": 1
          },
          {
            "date": "2021-10-21",
            "count": 1
          },
          {
            "date": "2021-10-28",
            "count": 1
          },
          {
            "date": "2021-11-20",
            "count": 1
          },
          {
            "date": "2021-12-14",
            "count": 1
          },
          {
            "date": "2021-12-30",
            "count": 1
          },
          {
            "date": "2022-01-17",
            "count": 1
          },
          {
            "date": "2022-03-25",
            "count": 1
          },
          {
            "date": "2022-04-20",
            "count": 1
          },
          {
            "date": "2022-07-11",
            "count": 1
          },
          {
            "date": "2022-07-18",
            "count": 1
          },
          {
            "date": "2022-07-21",
            "count": 1
          },
          {
            "date": "2022-07-23",
            "count": 1
          },
          {
            "date": "2022-07-26",
            "count": 1
          },
          {
            "date": "2022-09-02",
            "count": 1
          },
          {
            "date": "2022-09-30",
            "count": 1
          },
          {
            "date": "2022-10-21",
            "count": 1
          },
          {
            "date": "2022-12-22",
            "count": 1
          },
          {
            "date": "2023-02-21",
            "count": 1
          },
          {
            "date": "2023-04-04",
            "count": 1
          },
          {
            "date": "2023-04-26",
            "count": 1
          },
          {
            "date": "2023-05-23",
            "count": 1
          },
          {
            "date": "2023-06-06",
            "count": 1
          },
          {
            "date": "2023-06-14",
            "count": 1
          },
          {
            "date": "2023-09-26",
            "count": 1
          },
          {
            "date": "2023-12-20",
            "count": 1
          },
          {
            "date": "2024-01-10",
            "count": 1
          },
          {
            "date": "2024-03-07",
            "count": 1
          },
          {
            "date": "2024-03-26",
            "count": 1
          },
          {
            "date": "2024-04-07",
            "count": 1
          },
          {
            "date": "2024-06-14",
            "count": 1
          },
          {
            "date": "2024-07-29",
            "count": 1
          },
          {
            "date": "2024-09-05",
            "count": 1
          },
          {
            "date": "2024-11-30",
            "count": 1
          },
          {
            "date": "2025-03-01",
            "count": 1
          },
          {
            "date": "2025-03-21",
            "count": 1
          },
          {
            "date": "2025-03-23",
            "count": 1
          },
          {
            "date": "2025-04-12",
            "count": 1
          },
          {
            "date": "2025-08-21",
            "count": 1
          },
          {
            "date": "2025-09-19",
            "count": 1
          },
          {
            "date": "2025-09-26",
            "count": 1
          },
          {
            "date": "2025-12-19",
            "count": 1
          },
          {
            "date": "2026-03-02",
            "count": 1
          },
          {
            "date": "2026-03-30",
            "count": 1
          },
          {
            "date": "2026-04-10",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 204,
        "total_forks": 207
      },
      "star_history": null,
      "open_issues_and_prs": 4
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "sample"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "mise.toml"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [],
      "toolchain_manifests": [
        "pom.xml"
      ],
      "largest_source_bytes": 30367,
      "source_files_sampled": 52,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 14368
    },
    "dependencies": {
      "manifests": [
        "pom.xml"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 5,
        "malicious_count": 0,
        "assessed_package": "maven:com.maxmind.geoip2:geoip2@5.2.0",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "maven"
      ],
      "dependencies": [
        {
          "name": "com.maxmind.db:maxmind-db",
          "manifest": "pom.xml",
          "ecosystem": "maven",
          "version_constraint": "4.1.0"
        },
        {
          "name": "com.fasterxml.jackson.core:jackson-databind",
          "manifest": "pom.xml",
          "ecosystem": "maven",
          "version_constraint": "2.22.1"
        },
        {
          "name": "com.fasterxml.jackson.datatype:jackson-datatype-jsr310",
          "manifest": "pom.xml",
          "ecosystem": "maven",
          "version_constraint": "2.22.1"
        },
        {
          "name": "com.fasterxml.jackson.core:jackson-core",
          "manifest": "pom.xml",
          "ecosystem": "maven",
          "version_constraint": "2.22.1"
        },
        {
          "name": "com.fasterxml.jackson.core:jackson-annotations",
          "manifest": "pom.xml",
          "ecosystem": "maven",
          "version_constraint": "2.22"
        },
        {
          "name": "com.puppycrawl.tools:checkstyle",
          "manifest": "pom.xml",
          "ecosystem": "maven",
          "version_constraint": "13.8.0"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "com.fasterxml.jackson.core:jackson-annotations",
            "direct": true,
            "version": "2.22",
            "ecosystem": "maven"
          },
          {
            "name": "com.fasterxml.jackson.core:jackson-core",
            "direct": true,
            "version": "2.22.1",
            "ecosystem": "maven"
          },
          {
            "name": "com.fasterxml.jackson.core:jackson-databind",
            "direct": true,
            "version": "2.22.1",
            "ecosystem": "maven"
          },
          {
            "name": "com.fasterxml.jackson.datatype:jackson-datatype-jsr310",
            "direct": true,
            "version": "2.22.1",
            "ecosystem": "maven"
          },
          {
            "name": "com.maxmind.db:maxmind-db",
            "direct": true,
            "version": "4.1.0",
            "ecosystem": "maven"
          },
          {
            "name": "com.ethlo.time:itu",
            "direct": false,
            "version": "1.14.0",
            "ecosystem": "maven"
          },
          {
            "name": "com.fasterxml.jackson.dataformat:jackson-dataformat-yaml",
            "direct": false,
            "version": "2.18.3",
            "ecosystem": "maven"
          },
          {
            "name": "com.fasterxml.jackson.jr:jackson-jr-objects",
            "direct": false,
            "version": "2.22.1",
            "ecosystem": "maven"
          },
          {
            "name": "com.github.jknack:handlebars",
            "direct": false,
            "version": "4.3.1",
            "ecosystem": "maven"
          },
          {
            "name": "com.github.jknack:handlebars-helpers",
            "direct": false,
            "version": "4.3.1",
            "ecosystem": "maven"
          },
          {
            "name": "com.google.errorprone:error_prone_annotations",
            "direct": false,
            "version": "2.41.0",
            "ecosystem": "maven"
          },
          {
            "name": "com.google.guava:failureaccess",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "maven"
          },
          {
            "name": "com.google.guava:guava",
            "direct": false,
            "version": "33.5.0-jre",
            "ecosystem": "maven"
          },
          {
            "name": "com.google.guava:listenablefuture",
            "direct": false,
            "version": "9999.0-empty-to-avoid-conflict-with-guava",
            "ecosystem": "maven"
          },
          {
            "name": "com.google.j2objc:j2objc-annotations",
            "direct": false,
            "version": "3.1",
            "ecosystem": "maven"
          },
          {
            "name": "com.jayway.jsonpath:json-path",
            "direct": false,
            "version": "2.10.0",
            "ecosystem": "maven"
          },
          {
            "name": "com.jcabi:jcabi-aspects",
            "direct": false,
            "version": "0.26.0",
            "ecosystem": "maven"
          },
          {
            "name": "com.jcabi:jcabi-log",
            "direct": false,
            "version": "0.24.3",
            "ecosystem": "maven"
          },
          {
            "name": "com.jcabi:jcabi-matchers",
            "direct": false,
            "version": "1.9.0",
            "ecosystem": "maven"
          },
          {
            "name": "com.networknt:json-schema-validator",
            "direct": false,
            "version": "1.5.9",
            "ecosystem": "maven"
          },
          {
            "name": "commons-fileupload:commons-fileupload",
            "direct": false,
            "version": "1.6.0",
            "ecosystem": "maven"
          },
          {
            "name": "commons-io:commons-io",
            "direct": false,
            "version": "2.19.0",
            "ecosystem": "maven"
          },
          {
            "name": "jakarta.activation:jakarta.activation-api",
            "direct": false,
            "version": "1.2.2",
            "ecosystem": "maven"
          },
          {
            "name": "jakarta.xml.bind:jakarta.xml.bind-api",
            "direct": false,
            "version": "2.3.3",
            "ecosystem": "maven"
          },
          {
            "name": "javax.validation:validation-api",
            "direct": false,
            "version": "2.0.1.Final",
            "ecosystem": "maven"
          },
          {
            "name": "net.javacrumbs.json-unit:json-unit-core",
            "direct": false,
            "version": "2.40.1",
            "ecosystem": "maven"
          },
          {
            "name": "net.minidev:accessors-smart",
            "direct": false,
            "version": "2.6.0",
            "ecosystem": "maven"
          },
          {
            "name": "net.minidev:json-smart",
            "direct": false,
            "version": "2.6.0",
            "ecosystem": "maven"
          },
          {
            "name": "net.sf.jopt-simple:jopt-simple",
            "direct": false,
            "version": "5.0.4",
            "ecosystem": "maven"
          },
          {
            "name": "org.apache.httpcomponents.client5:httpclient5",
            "direct": false,
            "version": "5.5.1",
            "ecosystem": "maven"
          },
          {
            "name": "org.apache.httpcomponents.core5:httpcore5",
            "direct": false,
            "version": "5.3.6",
            "ecosystem": "maven"
          },
          {
            "name": "org.apache.httpcomponents.core5:httpcore5-h2",
            "direct": false,
            "version": "5.3.6",
            "ecosystem": "maven"
          },
          {
            "name": "org.apiguardian:apiguardian-api",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.aspectj:aspectjrt",
            "direct": false,
            "version": "1.9.21.1",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty.http2:http2-common",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty.http2:http2-hpack",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty.http2:http2-server",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty.toolchain:jetty-jakarta-servlet-api",
            "direct": false,
            "version": "5.0.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-alpn-client",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-alpn-java-client",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-alpn-java-server",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-alpn-server",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-client",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-http",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-io",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-proxy",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-security",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-server",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-servlet",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-servlets",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-util",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-webapp",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.eclipse.jetty:jetty-xml",
            "direct": false,
            "version": "11.0.26",
            "ecosystem": "maven"
          },
          {
            "name": "org.hamcrest:hamcrest",
            "direct": false,
            "version": "3.0",
            "ecosystem": "maven"
          },
          {
            "name": "org.hamcrest:hamcrest-core",
            "direct": false,
            "version": "2.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.jspecify:jspecify",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "maven"
          },
          {
            "name": "org.junit.jupiter:junit-jupiter",
            "direct": false,
            "version": "6.1.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.junit.jupiter:junit-jupiter-api",
            "direct": false,
            "version": "6.1.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.junit.jupiter:junit-jupiter-engine",
            "direct": false,
            "version": "6.1.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.junit.jupiter:junit-jupiter-params",
            "direct": false,
            "version": "6.1.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.junit.platform:junit-platform-commons",
            "direct": false,
            "version": "6.1.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.junit.platform:junit-platform-engine",
            "direct": false,
            "version": "6.1.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.opentest4j:opentest4j",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "maven"
          },
          {
            "name": "org.slf4j:slf4j-api",
            "direct": false,
            "version": "2.0.17",
            "ecosystem": "maven"
          },
          {
            "name": "org.wiremock:wiremock",
            "direct": false,
            "version": "3.13.2",
            "ecosystem": "maven"
          },
          {
            "name": "org.xmlunit:xmlunit-core",
            "direct": false,
            "version": "2.11.0",
            "ecosystem": "maven"
          },
          {
            "name": "org.xmlunit:xmlunit-legacy",
            "direct": false,
            "version": "2.11.0",
            "ecosystem": "maven"
          },
          {
            "name": "org.xmlunit:xmlunit-placeholders",
            "direct": false,
            "version": "2.11.0",
            "ecosystem": "maven"
          },
          {
            "name": "org.yaml:snakeyaml",
            "direct": false,
            "version": "2.3",
            "ecosystem": "maven"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 69,
        "direct_count": 5,
        "indirect_count": 64
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 2,
        "merged_prs": 605,
        "open_issues": 2,
        "closed_ratio": 0.983,
        "closed_issues": 118,
        "closed_unmerged_prs": 23
      },
      "bus_factor": 1,
      "bot_contributors": 2,
      "top_contributors": [
        {
          "type": "User",
          "login": "oschwald",
          "commits": 947,
          "avatar_url": "https://avatars.githubusercontent.com/u/278835?v=4"
        },
        {
          "type": "User",
          "login": "horgh",
          "commits": 276,
          "avatar_url": "https://avatars.githubusercontent.com/u/282924?v=4"
        },
        {
          "type": "User",
          "login": "shadromani",
          "commits": 28,
          "avatar_url": "https://avatars.githubusercontent.com/u/7746449?v=4"
        },
        {
          "type": "User",
          "login": "2shortplanks",
          "commits": 23,
          "avatar_url": "https://avatars.githubusercontent.com/u/46818?v=4"
        },
        {
          "type": "User",
          "login": "ugexe",
          "commits": 15,
          "avatar_url": "https://avatars.githubusercontent.com/u/239748?v=4"
        },
        {
          "type": "User",
          "login": "rafl",
          "commits": 13,
          "avatar_url": "https://avatars.githubusercontent.com/u/25669?v=4"
        },
        {
          "type": "User",
          "login": "andyjack",
          "commits": 13,
          "avatar_url": "https://avatars.githubusercontent.com/u/8292769?v=4"
        },
        {
          "type": "User",
          "login": "wesrice",
          "commits": 13,
          "avatar_url": "https://avatars.githubusercontent.com/u/397711?v=4"
        },
        {
          "type": "User",
          "login": "faktas2",
          "commits": 10,
          "avatar_url": "https://avatars.githubusercontent.com/u/104642023?v=4"
        },
        {
          "type": "User",
          "login": "oalders",
          "commits": 10,
          "avatar_url": "https://avatars.githubusercontent.com/u/96205?v=4"
        }
      ],
      "contributors_sampled": 36,
      "top_contributor_share": 0.669
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "api-compat.yml",
        "checkstyle.yml",
        "codeql-analysis.yml",
        "dependabot-failure-watcher.yml",
        "links.yml",
        "pages.yml",
        "test.yml",
        "zizmor.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": null,
            "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "13 out of 13 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 10,
            "reason": "all changesets reviewed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 10,
            "reason": "project has 31 contributing companies or organizations",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 10,
            "reason": "all dependencies are pinned",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 10,
            "reason": "SAST tool is run on all commits",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 8,
            "reason": "5 out of the last 5 releases have a total of 5 signed artifacts.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 9,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 4,
            "reason": "6 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "8864952cc6f4f44bc7b0be88188a00adbabe5778",
        "ran_at": "2026-07-27T03:18:25Z",
        "aggregate_score": 7.9,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": true,
      "has_security_policy": false,
      "has_dependabot_config": true
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-23T00:01:08Z",
      "oldest_open_prs": [
        {
          "number": 685,
          "created_at": "2026-03-30T11:11:36Z",
          "last_comment_at": "2026-04-08T07:36:34Z",
          "last_comment_author": "cigaly"
        },
        {
          "number": 749,
          "created_at": "2026-07-21T14:06:51Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ],
      "last_merged_pr_at": "2026-07-22T17:42:13Z",
      "ci_last_conclusion": "FAILURE",
      "oldest_open_issues": [
        {
          "number": 108,
          "created_at": "2018-05-23T23:40:00Z",
          "last_comment_at": "2018-05-24T14:31:14Z",
          "last_comment_author": "oschwald"
        },
        {
          "number": 681,
          "created_at": "2026-03-09T14:25:41Z",
          "last_comment_at": "2026-03-30T11:13:31Z",
          "last_comment_author": "cigaly"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/maxmind/GeoIP2-java",
    "host": "github.com",
    "name": "GeoIP2-java",
    "owner": "maxmind"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "good",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 79,
      "inputs": {
        "security": 83,
        "vitality": 94,
        "community": 64,
        "governance": 75,
        "engineering": 77
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 94,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "excellent",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 96,
            "inputs": {
              "commits_last_year": 386,
              "human_commit_share": 0.67,
              "days_since_last_push": 4,
              "active_weeks_last_year": 47
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "47/52 weeks with commits",
                "points": 32.5,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 47
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "386 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 386
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 91,
            "inputs": {
              "releases_count": 55,
              "latest_release_tag": "v5.2.0",
              "releases_from_tags": false,
              "days_since_latest_release": 10,
              "mean_days_between_releases": 106
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "55 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 55
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 10 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~106 days",
                "points": 19.8,
                "status": "partial",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 106
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "5 out of the last 5 releases have a total of 5 signed artifacts.",
                "points": 8,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 4,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 4 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 64,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "good",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 77,
            "inputs": {
              "forks": 207,
              "stars": 860,
              "watchers": 58,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "860 stars",
                "points": 47.6,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 860
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "207 forks",
                "points": 19.3,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 207
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "58 watchers",
                "points": 9.8,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 58
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (Apache-2.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "Apache-2.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "good",
        "name": "Sustainability & Governance",
        "value": 75,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "at_risk",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 36,
              "top_contributor_share": 0.669
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 67% of commits",
                "points": 7.4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 67
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "36 contributors",
                "points": 13.5,
                "status": "met",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 36
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 31 contributing companies or organizations",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "excellent",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 98,
            "inputs": {
              "merged_prs": 605,
              "open_issues": 2,
              "closed_issues": 118,
              "issue_closed_ratio": 0.983,
              "closed_unmerged_prs": 23
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "98% of issues closed",
                "points": 46,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 98
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "605/628 decided PRs merged",
                "points": 36.8,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 605,
                      "decided": 628
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "all changesets reviewed",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "good",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 73,
            "inputs": {
              "followers": 331,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "maxmind",
              "public_repos": 100,
              "account_age_days": 5374
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "331 followers of maxmind",
                "points": 18.1,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 331,
                      "login": "maxmind"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "100 public repos, account ~14 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 100
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 14
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "com.maxmind.geoip2:geoip2"
              ],
              "ecosystems": "maven",
              "any_deprecated": false,
              "min_days_since_publish": 10
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on maven",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "maven"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 10 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 10
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "54 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 54
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 77,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 68,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "8 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 8
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "13 out of 13 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "geoip",
                "mmdb",
                "geoip2",
                "maxmind"
              ],
              "has_wiki": false,
              "homepage": "https://maxmind.github.io/GeoIP2-java/",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://maxmind.github.io/GeoIP2-java/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "4 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 4
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "good",
        "name": "Security",
        "value": 83,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "good",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Branch-Protection, Packaging. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "branch_protection",
                    "packaging"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 79,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 7.9
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "13 out of 13 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "all changesets reviewed",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 31 contributing companies or organizations",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "all dependencies are pinned",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is run on all commits",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "5 out of the last 5 releases have a total of 5 signed artifacts.",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 6.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "6 existing vulnerabilities detected",
                "points": 3,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the maven:com.maxmind.geoip2:geoip2@5.2.0 runtime dependency closure — what installing the published package pulls in — 5 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "maven:com.maxmind.geoip2:geoip2@5.2.0",
                  "assessed": 5
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 5,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 5,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 10
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 78,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.91,
              "agent_instruction_files": [
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 14368
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "61 of 67 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 61,
                      "sampled": 67
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "good",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 79,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [
                "mise.toml"
              ],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [],
              "agent_commit_share": 0.19,
              "toolchain_manifests": [
                "pom.xml"
              ],
              "dependency_bot_commit_share": 0.33
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "mise.toml",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "mise.toml"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "Java (statically typed)",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Java"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "19 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 19,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "33 of the last 100 commits are automated dependency updates",
                "points": 8,
                "status": "met",
                "details": [
                  {
                    "code": "dependency_bot_commits",
                    "params": {
                      "count": 33,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "all dependencies are pinned",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Java",
              "largest_source_bytes": 30367,
              "source_files_sampled": 52,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Java (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Java"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/52 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 52,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "sample"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "sample",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "sample"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-27T03:18:51.936935Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/m/maxmind/GeoIP2-java.svg",
  "full_name": "maxmind/GeoIP2-java",
  "license_state": "standard",
  "license_spdx": "Apache-2.0"
}

Оцінки — це сигнали, а не гарантії. Вони відображають публічно видимі практики на GitHub — це не аудит коду й не гарантія безпеки.

Відсутні дані виключаються, а ваги перенормовуються — нуль за відсутність ніколи не ставиться. Методологія версіонована й відкрита: метрики v1.13.0, схема v0.27.0 — повна методологія · вікі метрик.

Як окремий результат виглядає на тлі всього реєстру: сукупна статистикаMaven.