公开记录
软件健康报告模式 0.26.0 · 指标 1.13.0 · 2026-07-22 11:54 UTC

0x80 / isolate-package

Isolate monorepo packages to form a self-contained deployable unit

TypeScriptMIT★ 192 星标⑂ 22 复刻始于 2023年5月在 GitHub 上查看 ↗

0x80/isolate-package 的健康指数为 100 分中的 68 分,处于「中等」区间。 其得分最高的类别是Vitality(84/100),最低的是Security(52/100)。 最近一次更新在 5 天前。 近期的大部分工作由 1 位贡献者完成。

68
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

68
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

Thijs Koerselman个人账户
99 关注者45 个公开仓库始于 2011年11月Codecompose

该仓库由个人账户拥有。相较于组织支持的项目,单一所有者项目的延续性风险更高。

软件包生态系统

注册表软件包版本月下载量版本数最近发布标签
npmisolate-package1.35.1140,2651455 天前cideploydockerfirebaseisolatelockfilemonorepopackagepruneturborepoworkspaceworkspaces

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

84良好 · 占总体的 22%
评分方式
36/36推送新近度 — 最近一次推送于 5 天前
11.1/36提交节奏 — 52 周中有 16 周有提交
16.2/18提交量 — 最近一年 63 次提交
10/10OpenSSF Scorecard:Maintained — 19 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10
所用输入
commits_last_year63
human_commit_share0.86
days_since_last_push5
active_weeks_last_year16

发布纪律

100优秀
评分方式
27/27有发布版本 — 已发布 42 个发布版本
36/36发布时效 — 最近一次发布版本于 5 天前
27/27发布节奏 — 约每 13.1 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — 无数据
所用输入
releases_count42
latest_release_tagv1.35.1
releases_from_tags
days_since_latest_release5
mean_days_between_releases13.1
已排除计分(无数据或不适用):OpenSSF Scorecard:Signed-Releases。 其余权重已重新归一化。

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

59中等 · 占总体的 18%
评分方式
37/60星标 — 192 个星标
11/25复刻 — 22 个复刻
3.3/15关注者 — 5 位关注者
所用输入
forks22
stars192
watchers5
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

社区健康

50中等
评分方式
22.5/22.5README
22.5/22.5许可证 — 可识别的许可证(MIT)
0/18CONTRIBUTING 指南
0/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template
评分方式
68.6/80月度下载量 — npm 合计每月 140,265 次下载
0/20注册表被依赖数 — 该生态系统不报告此项
所用输入
packagesisolate-package
dependents
ecosystemsnpm
total_downloads
monthly_downloads140,265
已排除计分(无数据或不适用):注册表被依赖数。 其余权重已重新归一化。

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

64中等 · 占总体的 24%
评分方式
9/54巴士系数 — 1 位贡献者贡献了半数提交
1/22.5提交分布 — 头号贡献者编写了 96% 的提交
12.2/13.5贡献者广度 — 9 位贡献者
6/10OpenSSF Scorecard:Contributors — project has 2 contributing companies or organizations -- score normalized to 6
所用输入
bus_factor1
contributors_sampled9
top_contributor_share0.956
评分方式
46.3/46.8议题解决 — 99% 的议题已关闭
33.2/38.3PR 接受 — 已裁定的 PR 中 86/99 已合并
0/15OpenSSF Scorecard:Code-Review — Found 0/30 approved changesets -- score normalized to 0
所用输入
merged_prs86
open_issues1
closed_issues95
issue_closed_ratio0.99
closed_unmerged_prs13
评分方式
10/30所有权背书 — 个人(用户)账户
0/20已验证域名 — 不适用于个人账户
14.4/25所有者影响力 — 0x80 有 99 位关注者
24.1/25既往记录 — 45 个公开仓库,账户约 14 年
所用输入
followers99
owner_typeUser
is_verified
owner_login0x80
public_repos45
account_age_days5,363
已排除计分(无数据或不适用):已验证域名。 其余权重已重新归一化。
评分方式
25/25已发布且可解析 — npm 上有 1 个软件包
35/35发布时效 — 最近一次发布于 5 天前
20/20版本历史 — 145 个已发布版本
20/20未被弃用 — 活跃,未被弃用或撤回
所用输入
packagesisolate-package
ecosystemsnpm
any_deprecated
min_days_since_publish5

工程质量

基础的工程与文档实践是否到位?

74良好 · 占总体的 20%

工程实践

74良好
评分方式
24/24CI 工作流 — 3 个工作流
24/24存在测试
0/16Linter 配置
0/9.6Pre-commit 钩子
6.4/6.4.editorconfig
20/20OpenSSF Scorecard:CI-Tests — 22 out of 22 merged PRs checked by a CI test -- score normalized to 10
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config

文档

75良好
评分方式
30/30README
25/25文档目录
0/15文档 / 主页站点
10/10仓库描述
10/10主题标签 — 10 个主题标签
0/10Wiki
所用输入
topicsci, deploy, firebase, isolate, monorepo, npm, package, pnpm, workspace, yarn
has_wiki
homepage
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

52中等 · 占总体的 16%

安全态势

40存在风险
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
2.2/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 22 out of 22 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/30 approved changesets -- score normalized to 0
1.5/2.5Contributors — project has 2 contributing companies or organizations -- score normalized to 6
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5许可证 — license file detected
7.5/7.5Maintained — 19 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — 无数据
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 17 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated17
scorecard_versionv5.5.0
checks_inconclusive1
scorecard_aggregate4
已排除计分(无数据或不适用):signed_releases。 其余权重已重新归一化。
评分方式
35/35直接依赖不含已知公告 — 没有直接依赖携带已知公告
0/25间接依赖不含已知公告 — 在此范围内,传递依赖集合无法与开发和测试依赖区分
0/40没有长期未处理的公告 — 没有公告带有发布日期
所用输入
sourceosv
advisories20
affected_packages10
assessed_packages579
unassessed_packages6
affected_by_severityhigh 7, moderate 3
direct_affected_packages0
已排除计分(无数据或不适用):间接依赖不含已知公告, 没有长期未处理的公告。 其余权重已重新归一化。 已将 579 个已解析依赖与 OSV 比对。 有 6 项无法评估——没有已解析的版本、生态系统不受支持,或超出所报告的软件包清单。 该仓库未发布任何索引可解析的软件包,因此改为评估仓库依赖图。该图将开发与测试版本固定同交付的依赖混在一起,因此仅对声明的运行时依赖计分;传递性发现仅作为背景信息列出,不计入评分。 未对可达性进行分析。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

72良好 · 占总体的 0%
评分方式
45/45代理指令 — .claude/CLAUDE.md, AGENTS.md
0/15机器可读文档(llms.txt)
37.2/40可读的提交历史 — 86 次人类提交中有 60 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.698
agent_instruction_files.claude/CLAUDE.md, AGENTS.md
agent_instruction_max_bytes7,680
评分方式
0/18一条命令的引导启动
22/22自动化测试
0/11Lint / 格式化配置
11/11静态类型检查 — tsconfig.json
10/10可复现环境 — lockfile
10/10已体现的代理实践 — 最近 100 次提交中有 7 次由代理编写或署名代理
0/8自动化维护 — 未观察到自动依赖更新
0/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
所用输入
has_nix
has_tests
lockfilespackage-lock.json, pnpm-lock.yaml
has_dockerfile
typed_language
bootstrap_files
has_devcontainer
has_linter_config
typecheck_configstsconfig.json
agent_commit_share0.07
toolchain_manifests
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — TypeScript(静态类型)
55/55可控的文件大小 — 采样的 96 个源文件中有 0 个超过 60KB
所用输入
primary_languageTypeScript
largest_source_bytes30,770
source_files_sampled96
oversized_source_files0

关键数据

192GitHub 星标
9贡献者
63最近 12 个月提交数
5距最近推送天数
42发布版本数
1巴士系数(bus factor)
1开放议题
npm软件包生态系统数

数据采集警告

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • deps.dev does not index npm:isolate-package@1.35.1; advisories assessed against the repository dependency graph instead

更多细节

Star 与 Fork 历史 0 ★ / 22 ⇿
0Star
22Fork
35发布

每颗 star 和每个 fork 的添加时间,来自 GitHub 并按天汇总。累计增长位于其构成来源——每日新增——的正上方,二者可相互对照:稳定的自然增长与短暂的突增形态截然不同。当这一差别可被衡量时,它会作为增长真实性予以报告。

048121620242122023-052024-102026-04
主版本 0次版本 28修订 7

每个点涵盖 3 天。

OpenSSF Scorecard 4.0 / 10
4.0综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-22 11:54 UTC

10Binary-Artifactsno binaries found in the repo
3Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests22 out of 22 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/30 approved changesets -- score normalized to 0
6Contributorsproject has 2 contributing companies or organizations -- score normalized to 6
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained19 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
不适用Signed-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities17 existing vulnerabilities detected
直接依赖 21
注册表软件包版本约束清单文件
npm@npmcli/arborist^9.4.2package.json
npm@npmcli/config^10.8.1package.json
npm@pnpm/logger^1100.0.0package.json
npm@pnpm/types^1001.3.0package.json
npmconsola^3.4.2package.json
npmdetect-monorepo^1.0.0package.json
npmfs-extra^11.3.4package.json
npmget-or-throw^3.0.1package.json
npmget-tsconfig^4.13.7package.json
npmglob^13.0.6package.json
npmmeow^14.1.0package.json
npmoutdent^0.8.0package.json
npmpnpm_lockfile_file_v8npm:@pnpm/lockfile-file@8package.json
npmpnpm_lockfile_file_v9npm:@pnpm/lockfile-file@9.0.0package.json
npmpnpm_prune_lockfile_v8npm:@pnpm/prune-lockfile@5package.json
npmpnpm_prune_lockfile_v9npm:@pnpm/prune-lockfile@6.0.0package.json
npmremeda^2.33.7package.json
npmsource-map-support^0.5.21package.json
npmstrip-json-comments^5.0.3package.json
npmtar-fs^3.1.2package.json
npmyaml^2.9.0package.json
全部依赖 585

来自 GitHub 依赖图的完整解析依赖集合:21 个直接依赖与 564 个间接(传递)软件包。仓库提交锁文件时,传递闭包才是完整的。

注册表软件包版本关系
npm@npmcli/arborist9.5.0直接
npm@npmcli/config10.9.0直接
npm@pnpm/logger1100.0.0直接
npm@pnpm/types10.0.0直接
npm@pnpm/types1001.3.0直接
npm@pnpm/types9.4.2直接
npmconsola3.4.2直接
npmdetect-monorepo1.2.0直接
npmfs-extra11.3.5直接
npmget-or-throw3.0.1直接
npmget-tsconfig4.14.0直接
npmget-tsconfig5.0.0-beta.5直接
npmglob13.0.6直接
npmglob7.2.3直接
npmmeow14.1.0直接
npmoutdent0.8.0直接
npmremeda2.34.0直接
npmsource-map-support0.5.21直接
npmstrip-json-comments5.0.3直接
npmtar-fs3.1.2直接
npmyaml2.9.0直接
npm@algolia/abtesting1.18.1间接
npm@algolia/autocomplete-core1.17.7间接
npm@algolia/autocomplete-plugin-algolia-insights1.17.7间接
npm@algolia/autocomplete-preset-algolia1.17.7间接
npm@algolia/autocomplete-shared1.17.7间接
npm@algolia/client-abtesting5.52.1间接
npm@algolia/client-analytics5.52.1间接
npm@algolia/client-common5.52.1间接
npm@algolia/client-insights5.52.1间接
npm@algolia/client-personalization5.52.1间接
npm@algolia/client-query-suggestions5.52.1间接
npm@algolia/client-search5.52.1间接
npm@algolia/ingestion1.52.1间接
npm@algolia/monitoring1.52.1间接
npm@algolia/recommend5.52.1间接
npm@algolia/requester-browser-xhr5.52.1间接
npm@algolia/requester-fetch5.52.1间接
npm@algolia/requester-node-http5.52.1间接
npm@babel/generator8.0.0-rc.4间接
npm@babel/helper-string-parser7.27.1间接
npm@babel/helper-string-parser8.0.0-rc.4间接
npm@babel/helper-validator-identifier7.28.5间接
npm@babel/helper-validator-identifier8.0.0-rc.4间接
npm@babel/parser7.29.3间接
npm@babel/parser8.0.0-rc.4间接
npm@babel/types7.29.0间接
npm@babel/types8.0.0-rc.4间接
npm@codecompose/typescript-config3.2.0间接
npm@docsearch/css3.8.2间接
npm@docsearch/js3.8.2间接
npm@docsearch/react3.8.2间接
npm@emnapi/core1.10.0间接
npm@emnapi/runtime1.10.0间接
npm@emnapi/wasi-threads1.2.1间接
npm@esbuild/aix-ppc640.21.5间接
npm@esbuild/android-arm0.21.5间接
npm@esbuild/android-arm640.21.5间接
npm@esbuild/android-x640.21.5间接
npm@esbuild/darwin-arm640.21.5间接
npm@esbuild/darwin-x640.21.5间接
npm@esbuild/freebsd-arm640.21.5间接
npm@esbuild/freebsd-x640.21.5间接
npm@esbuild/linux-arm0.21.5间接
npm@esbuild/linux-arm640.21.5间接
npm@esbuild/linux-ia320.21.5间接
npm@esbuild/linux-loong640.21.5间接
npm@esbuild/linux-mips64el0.21.5间接
npm@esbuild/linux-ppc640.21.5间接
npm@esbuild/linux-riscv640.21.5间接
npm@esbuild/linux-s390x0.21.5间接
npm@esbuild/linux-x640.21.5间接
npm@esbuild/netbsd-x640.21.5间接
npm@esbuild/openbsd-x640.21.5间接
npm@esbuild/sunos-x640.21.5间接
npm@esbuild/win32-arm640.21.5间接
npm@esbuild/win32-ia320.21.5间接
npm@esbuild/win32-x640.21.5间接
npm@gar/promise-retry1.0.3间接
npm@iconify-json/simple-icons1.2.81间接
npm@iconify/types2.0.0间接
npm@isaacs/fs-minipass4.0.1间接
npm@isaacs/string-locale-compare1.1.0间接
npm@jridgewell/gen-mapping0.3.13间接
npm@jridgewell/resolve-uri3.1.2间接
npm@jridgewell/sourcemap-codec1.5.5间接
npm@jridgewell/trace-mapping0.3.31间接
npm@napi-rs/wasm-runtime1.1.4间接
npm@npmcli/agent4.0.0间接
npm@npmcli/fs5.0.0间接
npm@npmcli/git7.0.2间接
npm@npmcli/installed-package-contents4.0.0间接
npm@npmcli/map-workspaces5.0.3间接
npm@npmcli/metavuln-calculator9.0.3间接
npm@npmcli/name-from-folder4.0.0间接
npm@npmcli/node-gyp5.0.0间接
npm@npmcli/package-json7.0.5间接
npm@npmcli/promise-spawn9.0.1间接
npm@npmcli/query5.0.0间接
npm@npmcli/redact4.0.0间接
npm@npmcli/run-script10.0.4间接
npm@oxc-project/types0.129.0间接
npm@oxfmt/binding-android-arm-eabi0.49.0间接
npm@oxfmt/binding-android-arm640.49.0间接
npm@oxfmt/binding-darwin-arm640.49.0间接
npm@oxfmt/binding-darwin-x640.49.0间接
npm@oxfmt/binding-freebsd-x640.49.0间接
npm@oxfmt/binding-linux-arm-gnueabihf0.49.0间接
npm@oxfmt/binding-linux-arm-musleabihf0.49.0间接
npm@oxfmt/binding-linux-arm64-gnu0.49.0间接
npm@oxfmt/binding-linux-arm64-musl0.49.0间接
npm@oxfmt/binding-linux-ppc64-gnu0.49.0间接
npm@oxfmt/binding-linux-riscv64-gnu0.49.0间接
npm@oxfmt/binding-linux-riscv64-musl0.49.0间接
npm@oxfmt/binding-linux-s390x-gnu0.49.0间接
npm@oxfmt/binding-linux-x64-gnu0.49.0间接
npm@oxfmt/binding-linux-x64-musl0.49.0间接
npm@oxfmt/binding-openharmony-arm640.49.0间接
npm@oxfmt/binding-win32-arm64-msvc0.49.0间接
npm@oxfmt/binding-win32-ia32-msvc0.49.0间接
npm@oxfmt/binding-win32-x64-msvc0.49.0间接
npm@oxlint-tsgolint/darwin-arm640.22.1间接
npm@oxlint-tsgolint/darwin-x640.22.1间接
npm@oxlint-tsgolint/linux-arm640.22.1间接
npm@oxlint-tsgolint/linux-x640.22.1间接
npm@oxlint-tsgolint/win32-arm640.22.1间接
npm@oxlint-tsgolint/win32-x640.22.1间接
npm@oxlint/binding-android-arm-eabi1.64.0间接
npm@oxlint/binding-android-arm641.64.0间接
npm@oxlint/binding-darwin-arm641.64.0间接
npm@oxlint/binding-darwin-x641.64.0间接
npm@oxlint/binding-freebsd-x641.64.0间接
npm@oxlint/binding-linux-arm-gnueabihf1.64.0间接
npm@oxlint/binding-linux-arm-musleabihf1.64.0间接
npm@oxlint/binding-linux-arm64-gnu1.64.0间接
npm@oxlint/binding-linux-arm64-musl1.64.0间接
npm@oxlint/binding-linux-ppc64-gnu1.64.0间接
npm@oxlint/binding-linux-riscv64-gnu1.64.0间接
npm@oxlint/binding-linux-riscv64-musl1.64.0间接
npm@oxlint/binding-linux-s390x-gnu1.64.0间接
npm@oxlint/binding-linux-x64-gnu1.64.0间接
npm@oxlint/binding-linux-x64-musl1.64.0间接
npm@oxlint/binding-openharmony-arm641.64.0间接
npm@oxlint/binding-win32-arm64-msvc1.64.0间接
npm@oxlint/binding-win32-ia32-msvc1.64.0间接
npm@oxlint/binding-win32-x64-msvc1.64.0间接
npm@pnpm/constants7.1.1间接
npm@pnpm/constants8.0.0间接
npm@pnpm/crypto.base32-hash2.0.0间接
npm@pnpm/crypto.base32-hash3.0.0间接
npm@pnpm/dependency-path2.1.8间接
npm@pnpm/dependency-path3.0.0间接
npm@pnpm/error5.0.3间接
npm@pnpm/error6.0.0间接
npm@pnpm/git-utils1.0.0间接
npm@pnpm/git-utils2.0.0间接
npm@pnpm/lockfile-file8.1.8间接
npm@pnpm/lockfile-file9.0.0间接
npm@pnpm/lockfile-types5.1.5间接
npm@pnpm/lockfile-types6.0.0间接
npm@pnpm/lockfile-utils10.0.0间接
npm@pnpm/merge-lockfile-changes5.0.7间接
npm@pnpm/merge-lockfile-changes6.0.0间接
npm@pnpm/pick-fetcher3.0.0间接
npm@pnpm/prune-lockfile5.0.10间接
npm@pnpm/prune-lockfile6.0.0间接
npm@pnpm/ramda0.28.1间接
npm@pnpm/resolver-base12.0.0间接
npm@pnpm/util.lex-comparator1.0.0间接
npm@quansync/fs1.0.0间接
npm@rolldown/binding-android-arm641.0.0间接
npm@rolldown/binding-darwin-arm641.0.0间接
npm@rolldown/binding-darwin-x641.0.0间接
npm@rolldown/binding-freebsd-x641.0.0间接
npm@rolldown/binding-linux-arm-gnueabihf1.0.0间接
npm@rolldown/binding-linux-arm64-gnu1.0.0间接
npm@rolldown/binding-linux-arm64-musl1.0.0间接
npm@rolldown/binding-linux-ppc64-gnu1.0.0间接
npm@rolldown/binding-linux-s390x-gnu1.0.0间接
npm@rolldown/binding-linux-x64-gnu1.0.0间接
npm@rolldown/binding-linux-x64-musl1.0.0间接
npm@rolldown/binding-openharmony-arm641.0.0间接
npm@rolldown/binding-wasm32-wasi1.0.0间接
npm@rolldown/binding-win32-arm64-msvc1.0.0间接
npm@rolldown/binding-win32-x64-msvc1.0.0间接
npm@rolldown/pluginutils1.0.0间接
npm@rollup/rollup-android-arm-eabi4.60.3间接
npm@rollup/rollup-android-arm644.60.3间接
npm@rollup/rollup-darwin-arm644.60.3间接
npm@rollup/rollup-darwin-x644.60.3间接
npm@rollup/rollup-freebsd-arm644.60.3间接
npm@rollup/rollup-freebsd-x644.60.3间接
npm@rollup/rollup-linux-arm-gnueabihf4.60.3间接
npm@rollup/rollup-linux-arm-musleabihf4.60.3间接
npm@rollup/rollup-linux-arm64-gnu4.60.3间接
npm@rollup/rollup-linux-arm64-musl4.60.3间接
npm@rollup/rollup-linux-loong64-gnu4.60.3间接
npm@rollup/rollup-linux-loong64-musl4.60.3间接
npm@rollup/rollup-linux-ppc64-gnu4.60.3间接
npm@rollup/rollup-linux-ppc64-musl4.60.3间接
npm@rollup/rollup-linux-riscv64-gnu4.60.3间接
npm@rollup/rollup-linux-riscv64-musl4.60.3间接
npm@rollup/rollup-linux-s390x-gnu4.60.3间接
npm@rollup/rollup-linux-x64-gnu4.60.3间接
npm@rollup/rollup-linux-x64-musl4.60.3间接
npm@rollup/rollup-openbsd-x644.60.3间接
npm@rollup/rollup-openharmony-arm644.60.3间接
npm@rollup/rollup-win32-arm64-msvc4.60.3间接
npm@rollup/rollup-win32-ia32-msvc4.60.3间接
npm@rollup/rollup-win32-x64-gnu4.60.3间接
npm@rollup/rollup-win32-x64-msvc4.60.3间接
npm@shikijs/core2.5.0间接
npm@shikijs/engine-javascript2.5.0间接
npm@shikijs/engine-oniguruma2.5.0间接
npm@shikijs/langs2.5.0间接
npm@shikijs/themes2.5.0间接
npm@shikijs/transformers2.5.0间接
npm@shikijs/types2.5.0间接
npm@shikijs/vscode-textmate10.0.2间接
npm@sigstore/bundle4.0.0间接
npm@sigstore/core3.2.0间接
npm@sigstore/protobuf-specs0.5.1间接
npm@sigstore/sign4.1.1间接
npm@sigstore/tuf4.0.2间接
npm@sigstore/verify3.1.0间接
npm@standard-schema/spec1.1.0间接
npm@tufjs/canonical-json2.0.0间接
npm@tufjs/models4.1.0间接
npm@tybys/wasm-util0.10.2间接
npm@types/chai5.2.3间接
npm@types/deep-eql4.0.2间接
npm@types/estree1.0.8间接
npm@types/estree1.0.9间接
npm@types/fs-extra11.0.4间接
npm@types/hast3.0.4间接
npm@types/jsesc2.5.1间接
npm@types/jsonfile6.1.4间接
npm@types/linkify-it5.0.0间接
npm@types/markdown-it14.1.2间接
npm@types/mdast4.0.4间接
npm@types/mdurl2.0.0间接
npm@types/node25.7.0间接
npm@types/npmcli__config6.0.3间接
npm@types/semver7.7.1间接
npm@types/source-map-support0.5.10间接
npm@types/tar-fs2.0.4间接
npm@types/tar-stream3.1.4间接
npm@types/unist3.0.3间接
npm@types/web-bluetooth0.0.21间接
npm@ungap/structured-clone1.3.1间接
npm@vitejs/plugin-vue5.2.4间接
npm@vitest/expect4.1.6间接
npm@vitest/mocker4.1.6间接
npm@vitest/pretty-format4.1.6间接
npm@vitest/runner4.1.6间接
npm@vitest/snapshot4.1.6间接
npm@vitest/spy4.1.6间接
npm@vitest/utils4.1.6间接
npm@vue/compiler-core3.5.34间接
npm@vue/compiler-dom3.5.34间接
npm@vue/compiler-sfc3.5.34间接
npm@vue/compiler-ssr3.5.34间接
npm@vue/devtools-api7.7.9间接
npm@vue/devtools-kit7.7.9间接
npm@vue/devtools-shared7.7.9间接
npm@vue/reactivity3.5.34间接
npm@vue/runtime-core3.5.34间接
npm@vue/runtime-dom3.5.34间接
npm@vue/server-renderer3.5.34间接
npm@vue/shared3.5.34间接
npm@vueuse/core12.8.2间接
npm@vueuse/integrations12.8.2间接
npm@vueuse/metadata12.8.2间接
npm@vueuse/shared12.8.2间接
npm@zkochan/js-yaml0.0.6间接
npm@zkochan/js-yaml0.0.7间接
npm@zkochan/rimraf2.1.3间接
npm@zkochan/which2.0.3间接
npmabbrev4.0.0间接
npmagent-base7.1.4间接
npmalgoliasearch5.52.1间接
npmansi-escapes7.3.0间接
npmansi-regex6.2.2间接
npmansi-styles6.2.3间接
npmansis4.2.0间接
npmargparse2.0.1间接
npmassertion-error2.0.1间接
npmast-kit3.0.0-beta.1间接
npmb4a1.8.1间接
npmbalanced-match1.0.2间接
npmbalanced-match4.0.4间接
npmbare-events2.8.2间接
npmbare-fs4.7.1间接
npmbare-os3.9.1间接
npmbare-path3.0.0间接
npmbare-stream2.13.1间接
npmbare-url2.4.3间接
npmbin-links6.0.0间接
npmbirpc2.9.0间接
npmbirpc4.0.0间接
npmbole5.0.29间接
npmbrace-expansion1.1.14间接
npmbrace-expansion5.0.6间接
npmbuffer-from1.1.2间接
npmcac7.0.0间接
npmcacache20.0.4间接
npmccount2.0.1间接
npmchai6.2.2间接
npmcharacter-entities-html42.1.0间接
npmcharacter-entities-legacy3.0.0间接
npmchownr3.0.0间接
npmci-info4.4.0间接
npmcli-cursor5.0.0间接
npmcli-truncate5.2.0间接
npmcmd-shim8.0.0间接
npmcomma-separated-tokens2.0.3间接
npmcommon-ancestor-path2.0.0间接
npmcomver-to-semver1.0.0间接
npmconcat-map0.0.1间接
npmconvert-source-map2.0.0间接
npmcopy-anything4.0.5间接
npmcross-spawn7.0.6间接
npmcssesc3.0.0间接
npmcsstype3.2.3间接
npmdebug4.4.3间接
npmdebug^4.3.0间接
npmdefu6.1.7间接
npmdequal2.0.3间接
npmdetect-libc2.1.2间接
npmdevlop1.1.0间接
npmdts-resolver3.0.0间接
npmemoji-regex10.6.0间接
npmemoji-regex-xs1.0.0间接
npmempathic2.0.1间接
npmencode-registry3.0.1间接
npmend-of-stream1.4.5间接
npmentities7.0.1间接
npmenv-paths2.2.1间接
npmenvironment1.1.0间接
npmes-module-lexer2.1.0间接
npmesbuild0.21.5间接
npmestree-walker2.0.2间接
npmestree-walker3.0.3间接
npmeventemitter35.0.4间接
npmevents-universal1.0.1间接
npmexeca5.1.1间接
npmexpect-type1.3.0间接
npmexponential-backoff3.1.3间接
npmfast-fifo1.3.2间接
npmfast-safe-stringify2.1.1间接
npmfdir6.5.0间接
npmfocus-trap7.8.0间接
npmfs-minipass3.0.3间接
npmfs.realpath1.0.0间接
npmfsevents2.3.3间接
npmget-east-asian-width1.6.0间接
npmget-npm-tarball-url2.1.0间接
npmget-stream6.0.1间接
npmgraceful-fs4.2.11间接
npmhast-util-to-html9.0.5间接
npmhast-util-whitespace3.0.0间接
npmhookable5.5.3间接
npmhookable6.1.1间接
npmhosted-git-info9.0.3间接
npmhtml-void-elements3.0.0间接
npmhttp-cache-semantics4.2.0间接
npmhttp-proxy-agent7.0.2间接
npmhttps-proxy-agent7.0.6间接
npmhuman-signals2.1.0间接
npmhusky9.1.7间接
npmiconv-lite0.7.2间接
npmignore-walk8.0.0间接
npmimport-without-cache0.4.0间接
npmimurmurhash0.1.4间接
npmindividual3.0.0间接
npminflight1.0.6间接
npminherits2.0.4间接
npmini6.0.0间接
npmip-address10.2.0间接
npmis-fullwidth-code-point5.1.0间接
npmis-plain-obj2.1.0间接
npmis-stream2.0.1间接
npmis-what5.5.0间接
npmisexe2.0.0间接
npmisexe4.0.0间接
npmjsesc3.1.0间接
npmjson-parse-even-better-errors5.0.0间接
npmjson-stringify-nice1.1.4间接
npmjsonfile6.2.1间接
npmjsonparse1.3.1间接
npmjust-diff6.0.2间接
npmjust-diff-apply5.5.0间接
npmlightningcss1.32.0间接
npmlightningcss-android-arm641.32.0间接
npmlightningcss-darwin-arm641.32.0间接
npmlightningcss-darwin-x641.32.0间接
npmlightningcss-freebsd-x641.32.0间接
npmlightningcss-linux-arm-gnueabihf1.32.0间接
npmlightningcss-linux-arm64-gnu1.32.0间接
npmlightningcss-linux-arm64-musl1.32.0间接
npmlightningcss-linux-x64-gnu1.32.0间接
npmlightningcss-linux-x64-musl1.32.0间接
npmlightningcss-win32-arm64-msvc1.32.0间接
npmlightningcss-win32-x64-msvc1.32.0间接
npmlint-staged17.0.4间接
npmlistr210.2.1间接
npmlog-update6.1.0间接
npmlru-cache11.3.6间接
npmmagic-string0.30.21间接
npmmake-fetch-happen15.0.5间接
npmmap-age-cleaner0.1.3间接
npmmark.js8.11.1间接
npmmdast-util-to-hast13.2.1间接
npmmem8.1.1间接
npmmerge-stream2.0.0间接
npmmicromark-util-character2.1.1间接
npmmicromark-util-encode2.0.1间接
npmmicromark-util-sanitize-uri2.0.1间接
npmmicromark-util-symbol2.0.1间接
npmmicromark-util-types2.0.2间接
npmmimic-fn2.1.0间接
npmmimic-fn3.1.0间接
npmmimic-function5.0.1间接
npmminimatch10.2.5间接
npmminimatch3.1.5间接
npmminipass3.3.6间接
npmminipass7.1.3间接
npmminipass-collect2.0.1间接
npmminipass-fetch5.0.2间接
npmminipass-flush1.0.7间接
npmminipass-pipeline1.2.4间接
npmminipass-sized2.0.0间接
npmminisearch7.2.0间接
npmminizlib3.1.0间接
npmmitt3.0.1间接
npmms2.1.3间接
npmms^2.1.3间接
npmnanoid3.3.12间接
npmnegotiator1.0.0间接
npmnode-gyp12.3.0间接
npmnopt9.0.0间接
npmnormalize-path3.0.0间接
npmnpm-bundled5.0.0间接
npmnpm-install-checks8.0.0间接
npmnpm-normalize-package-bin5.0.0间接
npmnpm-package-arg13.0.2间接
npmnpm-packlist10.0.4间接
npmnpm-pick-manifest11.0.3间接
npmnpm-registry-fetch19.1.1间接
npmnpm-run-path4.0.1间接
npmobug2.1.1间接
npmonce1.4.0间接
npmonetime5.1.2间接
npmonetime7.0.0间接
npmoniguruma-to-es3.1.1间接
npmoxfmt0.49.0间接
npmoxlint1.64.0间接
npmoxlint-tsgolint0.22.1间接
npmp-defer1.0.0间接
npmp-map7.0.4间接
npmpackages/api1.0.0间接
npmpackages/other1.0.0间接
npmpackages/shared1.0.0间接
npmpackages/utils1.0.0间接
npmpacote21.5.0间接
npmparse-conflict-json5.0.1间接
npmpath-is-absolute1.0.1间接
npmpath-key3.1.1间接
npmpath-name1.0.0间接
npmpath-scurry2.0.2间接
npmpathe2.0.3间接
npmperfect-debounce1.0.0间接
npmpicocolors1.1.1间接
npmpicomatch4.0.4间接
npmpostcss8.5.14间接
npmpostcss-selector-parser7.1.1间接
npmpreact10.29.1间接
npmproc-log6.1.0间接
npmproggy4.0.0间接
npmpromise-all-reject-late1.0.1间接
npmpromise-call-limit3.0.2间接
npmproperty-information7.1.0间接
npmpump3.0.4间接
npmquansync1.0.0间接
npmread-cmd-shim6.0.0间接
npmregex6.1.0间接
npmregex-recursion6.0.2间接
npmregex-utilities2.3.0间接
npmresolve-pkg-maps1.0.0间接
npmrestore-cursor5.1.0间接
npmrfc46481.5.4间接
npmrfdc1.4.1间接
npmrimraf3.0.2间接
npmrolldown1.0.0间接
npmrolldown-plugin-dts0.25.0间接
npmrollup4.60.3间接
npmsafe-execa0.1.2间接
npmsafer-buffer2.1.2间接
npmsearch-insights2.17.3间接
npmsemver6.3.1间接
npmsemver7.7.4间接
npmsemver^6.3.0间接
npmsemver^7.6.0间接
npmshared*间接
npmshebang-command2.0.0间接
npmshebang-regex3.0.0间接
npmshiki2.5.0间接
npmsiginfo2.0.0间接
npmsignal-exit3.0.7间接
npmsignal-exit4.1.0间接
npmsigstore4.1.0间接
npmslice-ansi7.1.2间接
npmslice-ansi8.0.0间接
npmsmart-buffer4.2.0间接
npmsocks2.8.8间接
npmsocks-proxy-agent8.0.5间接
npmsort-keys4.2.0间接
npmsource-map0.6.1间接
npmsource-map-js1.2.1间接
npmspace-separated-tokens2.0.2间接
npmspdx-exceptions2.5.0间接
npmspdx-expression-parse4.0.0间接
npmspdx-license-ids3.0.23间接
npmspeakingurl14.0.1间接
npmsplit24.2.0间接
npmssri13.0.1间接
npmstackback0.0.2间接
npmstd-env4.1.0间接
npmstreamx2.25.0间接
npmstring-argv0.3.2间接
npmstring-width7.2.0间接
npmstring-width8.2.1间接
npmstringify-entities4.0.4间接
npmstrip-ansi7.2.0间接
npmstrip-bom4.0.0间接
npmstrip-final-newline2.0.0间接
npmsuperjson2.2.6间接
npmtabbable6.4.0间接
npmtar7.5.15间接
npmtar-stream3.2.0间接
npmteex1.0.1间接
npmtext-decoder1.2.7间接
npmtinybench2.9.0间接
npmtinyexec1.1.2间接
npmtinyglobby0.2.16间接
npmtinypool2.1.0间接
npmtinyrainbow3.1.0间接
npmtree-kill1.2.2间接
npmtreeverse3.0.0间接
npmtrim-lines3.0.1间接
npmtsdown0.22.0间接
npmtslib2.8.1间接
npmtuf-js4.1.0间接
npmtypescript6.0.3间接
npmunconfig-core7.5.0间接
npmundici6.25.0间接
npmundici-types7.21.0间接
npmunist-util-is6.0.1间接
npmunist-util-position5.0.0间接
npmunist-util-stringify-position4.0.0间接
npmunist-util-visit5.1.0间接
npmunist-util-visit-parents6.0.2间接
npmuniversalify2.0.1间接
npmutil-deprecate1.0.2间接
npmutils*间接
npmvalidate-npm-package-name7.0.2间接
npmvfile6.0.3间接
npmvfile-message4.0.3间接
npmvite5.4.21间接
npmvite8.0.12间接
npmvitepress1.6.4间接
npmvitest4.1.6间接
npmvue3.5.34间接
npmwalk-up-path4.0.0间接
npmwhich2.0.2间接
npmwhich6.0.1间接
npmwhy-is-node-running2.3.0间接
npmwrap-ansi10.0.0间接
npmwrap-ansi9.0.2间接
npmwrappy1.0.2间接
npmwrite-file-atomic5.0.1间接
npmwrite-file-atomic7.0.1间接
npmyallist4.0.0间接
npmyallist5.0.0间接
npmzwitch2.0.4间接
依赖安全公告 10

该仓库未发布可被索引解析的包,因此评估的是其自身的依赖图——共 579 个包,其中也包含从不交付的开发与测试版本固定:10 个存在已知公告,0 个为直接依赖。 有 6 个无法评估——没有已解析的版本、生态系统不受支持,或不在所列包清单之内。

软件包版本关系严重程度公告数修复版本
brace-expansion1.1.14间接15.0.7
brace-expansion5.0.6间接15.0.7
sigstore4.1.0间接14.1.1
tar7.5.15间接57.5.19
undici6.25.0间接48.5.0
vite5.4.21间接38.0.16
vite8.0.12间接28.0.16
@sigstore/core3.2.0间接13.2.1
@sigstore/verify3.1.0间接13.1.1
esbuild0.21.5间接10.25.0

公告表示依赖图中记录的版本落入某条公告的受影响范围。可达性未经分析,且依赖图包含开发与测试的版本固定——某项发现可能只涉及工具链而非交付的软件。

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [
        "ci",
        "deploy",
        "firebase",
        "isolate",
        "monorepo",
        "npm",
        "package",
        "pnpm",
        "workspace",
        "yarn"
      ],
      "is_fork": false,
      "size_kb": 1180,
      "has_wiki": false,
      "homepage": null,
      "languages": {
        "JavaScript": 3080,
        "TypeScript": 377098
      },
      "pushed_at": "2026-07-17T11:48:05Z",
      "created_at": "2023-05-06T12:35:21Z",
      "owner_type": "User",
      "updated_at": "2026-07-17T11:48:17Z",
      "description": "Isolate monorepo packages to form a self-contained deployable unit",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "MIT",
      "default_branch": "main",
      "license_spdx_raw": "MIT",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "http://codecompose.com",
      "name": "Thijs Koerselman",
      "type": "User",
      "login": "0x80",
      "company": "Codecompose",
      "location": "Utrecht, Netherlands",
      "followers": 99,
      "avatar_url": "https://avatars.githubusercontent.com/u/1193520?v=4",
      "created_at": "2011-11-14T12:29:43Z",
      "is_verified": null,
      "public_repos": 45,
      "account_age_days": 5363
    },
    "license": {
      "state": "standard",
      "spdx_id": "MIT",
      "raw_spdx": "MIT",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v1.35.1",
          "kind": "patch",
          "published_at": "2026-07-17T11:48:08Z"
        },
        {
          "tag": "v1.35.0",
          "kind": "minor",
          "published_at": "2026-05-29T10:10:29Z"
        },
        {
          "tag": "v1.34.0",
          "kind": "minor",
          "published_at": "2026-05-21T18:51:53Z"
        },
        {
          "tag": "v1.33.0",
          "kind": "minor",
          "published_at": "2026-05-08T10:59:50Z"
        },
        {
          "tag": "v1.33.0-0",
          "kind": "prerelease",
          "published_at": "2026-05-05T06:13:48Z"
        },
        {
          "tag": "v1.32.1",
          "kind": "patch",
          "published_at": "2026-04-30T15:35:59Z"
        },
        {
          "tag": "v1.32.0",
          "kind": "minor",
          "published_at": "2026-04-22T10:15:27Z"
        },
        {
          "tag": "v1.31.0",
          "kind": "minor",
          "published_at": "2026-04-10T17:05:06Z"
        },
        {
          "tag": "v1.30.0",
          "kind": "minor",
          "published_at": "2026-04-09T07:26:40Z"
        },
        {
          "tag": "v1.29.0",
          "kind": "minor",
          "published_at": "2026-03-21T10:18:18Z"
        },
        {
          "tag": "v1.28.3",
          "kind": "patch",
          "published_at": "2026-03-06T09:19:03Z"
        },
        {
          "tag": "v1.28.2",
          "kind": "patch",
          "published_at": "2026-02-20T08:53:15Z"
        },
        {
          "tag": "v1.28.1",
          "kind": "patch",
          "published_at": "2026-02-19T10:42:28Z"
        },
        {
          "tag": "v1.28.0",
          "kind": "minor",
          "published_at": "2026-02-19T09:38:32Z"
        },
        {
          "tag": "v1.27.0",
          "kind": "minor",
          "published_at": "2026-02-12T17:05:03Z"
        },
        {
          "tag": "v1.26.1",
          "kind": "patch",
          "published_at": "2025-09-14T17:59:01Z"
        },
        {
          "tag": "v1.25.0",
          "kind": "minor",
          "published_at": "2025-09-14T17:27:26Z"
        },
        {
          "tag": "v1.24.0",
          "kind": "minor",
          "published_at": "2025-07-14T07:31:42Z"
        },
        {
          "tag": "v1.23.0",
          "kind": "minor",
          "published_at": "2025-01-12T12:54:43Z"
        },
        {
          "tag": "v1.22.0",
          "kind": "minor",
          "published_at": "2025-01-11T14:03:35Z"
        },
        {
          "tag": "v1.20.0",
          "kind": "minor",
          "published_at": "2024-11-20T10:48:04Z"
        },
        {
          "tag": "v1.19.0",
          "kind": "minor",
          "published_at": "2024-07-15T10:45:50Z"
        },
        {
          "tag": "v1.18.0",
          "kind": "minor",
          "published_at": "2024-07-15T10:41:11Z"
        },
        {
          "tag": "v1.17.0",
          "kind": "minor",
          "published_at": "2024-06-09T16:51:10Z"
        },
        {
          "tag": "v1.16.0",
          "kind": "minor",
          "published_at": "2024-05-19T20:36:40Z"
        },
        {
          "tag": "v1.15.0",
          "kind": "minor",
          "published_at": "2024-04-24T06:06:00Z"
        },
        {
          "tag": "v1.14.0",
          "kind": "minor",
          "published_at": "2024-04-20T10:04:15Z"
        },
        {
          "tag": "v1.13.1",
          "kind": "patch",
          "published_at": "2024-04-01T13:45:42Z"
        },
        {
          "tag": "v1.13.0",
          "kind": "minor",
          "published_at": "2024-03-31T08:01:44Z"
        },
        {
          "tag": "v1.12.0",
          "kind": "minor",
          "published_at": "2024-03-30T17:31:22Z"
        },
        {
          "tag": "v1.11.0",
          "kind": "minor",
          "published_at": "2024-03-30T14:31:06Z"
        },
        {
          "tag": "v1.10.0",
          "kind": "minor",
          "published_at": "2024-02-25T19:21:56Z"
        },
        {
          "tag": "v1.9.1",
          "kind": "patch",
          "published_at": "2023-12-18T16:23:35Z"
        },
        {
          "tag": "v1.9.0",
          "kind": "minor",
          "published_at": "2023-12-18T15:27:42Z"
        },
        {
          "tag": "v1.8.0",
          "kind": "minor",
          "published_at": "2023-12-17T17:55:26Z"
        },
        {
          "tag": "v1.7.0",
          "kind": "minor",
          "published_at": "2023-12-17T07:50:41Z"
        },
        {
          "tag": "v1.6.0",
          "kind": "minor",
          "published_at": "2023-11-28T20:00:00Z"
        },
        {
          "tag": "v1.5.0",
          "kind": "minor",
          "published_at": "2023-11-27T14:01:48Z"
        },
        {
          "tag": "v1.4.0",
          "kind": "minor",
          "published_at": "2023-11-26T17:25:35Z"
        },
        {
          "tag": "v1.3.3",
          "kind": "patch",
          "published_at": "2023-08-15T18:52:20Z"
        },
        {
          "tag": "v1.3.0",
          "kind": "minor",
          "published_at": "2023-07-17T18:44:46Z"
        },
        {
          "tag": "v1.2.0",
          "kind": "minor",
          "published_at": "2023-07-16T12:01:26Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "f1c29f98dd2f8319f0104d1fe7a7007ba7825ca7",
          "body": null,
          "is_bot": true,
          "headline": "1.35.1",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-17T11:47:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "866ce29eebdfa70df51f1c9e6d9c0e752a24af81",
          "body": "pnpm 11 simplified the lockfile `patchedDependencies` format from\n`Record<string, { path, hash }>` to `Record<string, string>` (selector\nto hash), and existing lockfiles are migrated automatically.\n`@pnpm/lockfile-file@9` passes this field through unchanged, so reading\na pnpm 11 lockfile yields bare\n[…]\naccepted.\nSerializing the new string format would require post-processing YAML the\nlibrary does not emit, for no functional gain.\n\nFixes #201\n\nScope: packages (isolate-package)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Fix empty patch hash on pnpm 11 lockfiles (#202)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-07-17T11:38:34Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "4dea547503f77ebe539759538f5ffd1bdb75006c",
          "body": null,
          "is_bot": true,
          "headline": "1.35.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-29T10:10:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4297507f6831e07d3d764cf0e6292555fc638df",
          "body": "When isolating a pnpm workspace package that uses `catalog:` dependency\nspecifiers, the adapted manifest had its `catalog:` refs resolved to\nconcrete versions while the generated lockfile importers kept\n`catalog:`. This desync made `pnpm install --frozen-lockfile` fail with\n`ERR_PNPM_OUTDATED_LOCKFI\n[…]\ners to\nmirror what pnpm itself writes, so catalog entries belonging to\nunrelated workspace packages do not leak into the output.\n\nCloses #198\n\nScope: packages (isolate-package)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Preserve catalog: specifiers for pnpm isolates (#200)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-29T09:55:58Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "80498804619c79c7140378a8e2a181cdeae7172e",
          "body": null,
          "is_bot": true,
          "headline": "1.34.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-21T18:25:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "39eb03915f1a503faee8c885343693a31f724318",
          "body": "Two independent changes on this branch.\n\n## Publish workflow fix\n\nThe publish workflow (`.github/workflows/publish.yml`) was failing at\nthe `Bump version` step with:\n\n```\nnpm error Git working directory not clean.\n```\n\nRoot cause: `tsdown.config.ts` had `exports: true`, which makes tsdown\nrewrite `p\n[…]\nhe source\nof truth at runtime.\n\nEngines is already `>=22.22.1`, well above the 14.6 cutoff for stable\nsubpath imports.\n\nScope: packages (isolate-package), infra (publish workflow)\nVisibility: internal",
          "is_bot": false,
          "headline": "Fix publish workflow + switch internal alias to subpath imports (#197)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T18:23:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "673508a9c3d8e2a2933229c9c2e658742530a331",
          "body": "Resolves the 28 outstanding oxlint warnings, then flips the relevant\ncategories (`suspicious`, `perf`, `pedantic`) and per-rule entries\n(`import/no-cycle`, `import/no-duplicates`, `typescript/no-unused-vars`,\n`no-console`) from `warn` to `error` so future regressions fail CI\ninstead of silently pili\n[…]\nive walk to cut\nnesting depth.\n- Rename `stdout` callbacks in `pack.ts` and the inner `isolate`\nfunction plus its `config` binding to silence `no-shadow`.\n\nScope: tooling (oxlint)\nVisibility: internal",
          "is_bot": false,
          "headline": "Promote oxlint warnings to errors (#196)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T16:50:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2c9a5209bafd87729a6cd2b7223dc97c6129def7",
          "body": "Expand the oxlint configuration with type-aware safety rules\n(`no-unsafe-*`, `no-floating-promises`, `strict-void-return`,\n`no-confusing-void-expression`, `no-deprecated`,\n`prefer-nullish-coalescing`), consistency rules\n(`consistent-type-imports/exports/definitions`, `array-type`,\n`promise-function-\n[…]\nt.\n- For the `pack()` cwd fix, used `exec`'s `cwd` option instead of\n  the reviewer-suggested try/finally — eliminates the bug class\n  rather than patching it, and makes the function concurrency-safe.",
          "is_bot": false,
          "headline": "Adopt stricter oxlint config (#194)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T14:36:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "41e61a2a778046557fddaf51737a193921c9ea24",
          "body": "When the target workspace has its own nested `node_modules/X` (a version\noverride) and the originally-hoisted `node_modules/X` (a different\nversion) is still reachable through some other transitive dep of the\ntarget, both source entries remapped to the same path in the isolate\noutput. The generator \n[…]\nive dep is also\na loser) would need a second pass. The code throws a clear error if it\ndetects a secondary slot conflict during re-nesting.\n\nCloses #187.\n\nScope: lockfile (npm)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Re-nest displaced hoisted dep when target pins a nested override (#195)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T12:54:40Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "88b0b34447570ffbcd63f86a144339a0137f8d8f",
          "body": "Issue #189 reports that pnpm 11's `allowBuilds` (the replacement for\n`pnpm.onlyBuiltDependencies` / `ignoredBuiltDependencies`, which were\nremoved in pnpm 11) is not propagated into the isolate output, so the\ndownstream `pnpm install` runs in default-deny mode and drops every\ndependency `postinstall\n[…]\nds explicit regression tests that pin that behavior so a future\npatch-filter refactor cannot silently drop pnpm-11-only fields.\n\nCloses #189.\n\nScope: packages (isolate-package)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Lock in pnpm 11 allowBuilds propagation via workspace yaml copy (#193)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T12:13:49Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6613230586a07118c51b670c0bcc4a9331e360c3",
          "body": "Builds on the work in #186 (credit to @ChromeQ for the original commit)\nand addresses the review feedback that surfaced there.\n\n## Problem\n\nWhen `isolate` ran while another process (e.g. the Firebase Functions\nemulator, a file watcher) was reading or writing inside `isolateDir`,\nthe recursive `fs.re\n[…]\ntrash\nsweep, stem-scoped sweep isolation, and the rename-fallback path.\n\nCloses #185\n\nScope: cli (isolate-package)\nVisibility: user-facing\n\n---------\n\nCo-authored-by: Dav Hill <originaldavz@gmail.com>",
          "is_bot": false,
          "headline": "Avoid ENOTEMPTY race when resetting the isolate output directory (#190)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T10:46:53Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "11a1ec9a974189df566c2f885e74b8d58739f20e",
          "body": "Two independent bugs combined to produce the intermittent zlib crash\ndescribed in #183:\n\n- `pnpm pack` could return before its tarball was fully flushed to disk.\nThe directory entry would appear before the data was written, so the\nexisting `fs.existsSync` wait in `processBuildOutputFiles` was not\nsu\n[…]\ncope: lib (pack/unpack)\nVisibility: user-facing\n\n---------\n\nCo-authored-by: Dav Hill <originaldavz@gmail.com>\nCo-authored-by: Copilot Autofix powered by AI <175728472+Copilot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Fix intermittent \"unexpected end of file\" during unpack (#191)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T10:45:45Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4bd3f0aea30e16c17a30335cc6345db0f88137a3",
          "body": "Finishes the work from #168 by @royalty37 (cherry-picked to preserve\nattribution) and addresses the remaining Copilot review feedback.\n\nWhen using `forceNpm` inside a pnpm workspace,\n`resolveCatalogDependencies` only inspected the root `package.json` for\n`catalog` definitions and failed to resolve `\n[…]\ner defines the package.\n\nScope: packages (isolate-package)\nVisibility: user-facing\n\n---------\n\nCo-authored-by: Liam <patu_maori@hotmail.com>\nCo-authored-by: Liam Hardy <liam@Liams-MacBook-Pro-2.local>",
          "is_bot": false,
          "headline": "Resolve catalog dependencies from pnpm-workspace.yaml (#192)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-21T10:43:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "d6041da41a571402cbc4cd08bf20f7afabbfa1fc",
          "body": "## Problem\n\n`pnpm.patchedDependencies` and `bun`'s `patchedDependencies` are dropped\nduring isolation when the patched package is reachable only through an\nexternal transitive dep. The follow-up case from issue #167 shows the\nshape: target depends on `@react-pdf/renderer`, which depends on the\npatch\n[…]\nnd skipped entirely under `forceNpm`.\n\nScope: packages (isolate-package)\nVisibility: user-facing\n\n---------\n\nCo-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Detect transitive external patches via the workspace lockfile (#181)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-19T18:54:08Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e6962023884406ee87ae8197763ae833cd6eb30e",
          "body": "A recent change renamed the CLI bin from `isolate` to `isolate-package`,\nwhich is a breaking change for anyone invoking the bin directly\n(scripts, CI, Dockerfiles, `npx isolate`, etc.). Restore the original\n`isolate` bin so it is exposed in parallel with `isolate-package`, both\npointing at the same entry. This avoids breaking existing users on a\nminor version bump.\n\nScope: packages (isolate-package)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Restore isolate bin alongside isolate-package (#188)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-19T16:07:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ed75e9b0d5c7add21a72db5f6cb02d6a9ef6be3d",
          "body": "Bumps direct deps within their current major (`detect-monorepo` 1.0.0 →\n1.2.0 picks up the new VCS-root walk boundary), `@pnpm/logger` to\n^1100.0.0, and dev tooling: typescript 6.0.3, vitest 4.1.5, lint-staged\n17, vite 8, tsdown 0.22.0, oxfmt 0.48, oxlint 1.63, oxlint-tsgolint\n0.22.1.\n\n`engines.node\n[…]\nnpm_prune_lockfile_v8`)\nstay where they are; they exist specifically to support the legacy\nlockfile format and are already at the latest within their pinned major.\n\nScope: deps\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Update dependencies (#182)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-05-19T15:53:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "1885700560fd57f04cea62735d00a39c6ca7bca0",
          "body": null,
          "is_bot": true,
          "headline": "1.33.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-05-08T10:59:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f2dcc8738499a853468f1ba2b58d5ba61ec2a493",
          "body": null,
          "is_bot": true,
          "headline": "1.32.1",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-30T15:35:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f2075b374e034347a53ee05491c8ac5b9c8455e3",
          "body": "Fixes #178.\n\nWhen a pnpm workspace declares `patchedDependencies` for packages that\naren't reachable from the target, `copyPatches` correctly skips those\npatch files but the workspace config was still copied verbatim. The\nresulting isolate referenced patch files that didn't exist on disk, so\n`pnpm i\n[…]\nto parse,\nit falls back to a verbatim copy as before. The lockfile and target\nmanifest were already filtered, so this brings the workspace config in\nline.\n\nScope: cli (patches)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Filter patchedDependencies in isolated pnpm-workspace.yaml (#180)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-30T15:34:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "728b05f82ae407658122cf904c9c500ce3e6835c",
          "body": null,
          "is_bot": true,
          "headline": "1.32.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-22T10:15:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3d66d6f0f4d44a697066b17e5ad68c63e2cf3012",
          "body": "…177)\n\nFixes #167.\n\nWhen a workspace declares `pnpm.patchedDependencies` for a package that\nis not a direct dependency of the isolate target but *is* reachable\nthrough an internal workspace package, the patch was silently dropped\nfrom the isolated output. `filterPatchedDependencies` checked only the\n[…]\nget → externalA → externalB-patched). Addressing those\nrequires lockfile-based pruning, which hasn't been observed as a\npractical need yet.\n\nScope: `packages (isolate-package)`\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Preserve patches for transitive dependencies via internal packages (#…",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-22T10:13:22Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "42a5b067b32279f683bb3120951d44c59606c2da",
          "body": "Closes #111.\n\nThe NPM lockfile generator previously called `arborist.buildIdealTree()`\non the isolate directory, which ignores the monorepo's root\n`package-lock.json` and resolves dependencies against the isolate's\nadapted manifest. The isolated lockfile could therefore contain\ndifferent versions an\n[…]\ngenerateNpmLockfile` against it and asserts the\nisolated lockfile surfaces the nested 6.3.1 at the isolate root and\nexcludes the sibling's hoisted 7.7.4.\n\nScope: lockfile (npm)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Preserve resolved versions when generating NPM lockfile (#176)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-22T06:17:02Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "eea203f80ade506d2a65bc17168af3630e8b82cb",
          "body": null,
          "is_bot": true,
          "headline": "1.31.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-10T17:04:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d30eec4bd477433a60f1ffcf7fff6eb1ce37c04e",
          "body": "Use `detect-monorepo` to auto-detect the workspace root, replacing the\nhardcoded `workspaceRoot: \"../..\"` default.\n\nWhen `workspaceRoot` is not set explicitly (and `targetPackagePath` is\nnot used), `resolveWorkspacePaths` now walks upward from the target\npackage directory looking for `pnpm-workspace\n[…]\nlockfile importer ids or other paths relative to the same\ndirectory.\n\nDocs and CLI help text updated to reflect the new auto-detect behavior.\n\nScope: packages (isolate-package)\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Use detect-monorepo for workspace root and rush detection (#175)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-10T17:03:57Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2495daa7842038b55003f8d376578bd3232e3470",
          "body": "Runs `oxfmt` and `oxlint` on staged JS/TS files before each commit so\nformatting and lint issues are caught locally instead of only in CI. The\nexisting `prepare` script keeps building the package and now also\ninstalls the husky git hooks.\n\nScope: packages (isolate-package)\nVisibility: internal",
          "is_bot": false,
          "headline": "Add husky pre-commit hook running lint-staged (#174)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-10T14:48:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b557a34cb69a06051fe1c7618bf1ac1820b8d0a5",
          "body": "When a workspace package is referenced as a devDependency (e.g.\n`\"@repo/shared-config\": \"workspace:*\"`) and lacks a `version` field in\nits package.json, `pnpm pack` fails with an opaque error. This happens\nbecause `pnpm pack` resolves all `workspace:*` specifiers — including\ndevDependencies — and ne\n[…]\nManifestMandatoryFields` with `requireFilesField = false`,\nproducing the same clear error message and documentation URL that\nregular dependencies get.\n\nRef #128\n\nScope: isolate\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Validate version field for workspace devDependencies (#172)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-09T19:40:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "666decd55137e2d1b98505513417074fe1f2fa9f",
          "body": null,
          "is_bot": true,
          "headline": "1.30.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-04-09T07:26:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b8de6d72c4f7c429da7fd7b596c3c45f0f8c1a14",
          "body": "Adds a native Bun lockfile generator instead of falling back to npm. The\ngenerator parses `bun.lock` as JSONC, filters workspaces and packages to\nonly those relevant to the isolated package, and writes back with\ntrailing commas matching Bun's native format. The isolate output becomes\na Bun workspace\n[…]\nn-main branches in the\npublish workflow. Stable releases remain restricted to main.\n\nCloses #110\n\n---------\n\nCo-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Add native Bun lockfile support (#161)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-08T19:23:50Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0fdfb3603595fe6622e7632b3b53a8f855dd655c",
          "body": "Upgrade all dependencies to their latest compatible versions.\n\nNotable updates:\n- typescript: 6.0.0-beta -> 6.0.2\n- tsdown: 0.20.3 -> 0.21.7\n- oxlint: 1.48.0 -> 1.59.0\n- oxfmt: 0.33.0 -> 0.44.0\n- vitest: 4.0.18 -> 4.1.3\n- get-or-throw: 2.1.0 -> 3.0.1\n\nAlso bumps `engines.node` to `>=22.12.0` to matc\n[…]\nement, and adds `vite` as an explicit devDependency to satisfy\nvitest 4.x's peer dependency (previously it resolved to vite 5.x from\nVitePress).\n\nScope: packages (isolate-package)\nVisibility: internal",
          "is_bot": false,
          "headline": "Upgrade dependencies (#171)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-08T16:35:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "c3da9ef02ef8260a51818fd594a7f314463b9bdb",
          "body": "In v1.28.3, scripts were preserved in internal dependency manifests to\nsupport lifecycle hooks like `postinstall` (e.g. Prisma client\ngeneration). However, the `prepare` script is problematic because it\nruns during `pnpm install` and typically depends on devDependency\nbinaries (e.g. `tsdown`, `del-c\n[…]\ns\nwhile preserving all other scripts. Documentation has been updated to\nexplain this behavior.\n\nFixes https://github.com/0x80/isolate-package/issues/169\n\nScope: isolate-package\nVisibility: user-facing",
          "is_bot": false,
          "headline": "Strip prepare script from internal dependency manifests (#170)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-04-08T13:33:21Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "990893f7dd0dab078d473889ae4e7e8f7ba36db0",
          "body": null,
          "is_bot": true,
          "headline": "1.29.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-03-21T10:18:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f2f6ee88559b3fc833fd1ddd81d7d7b530a3398",
          "body": "- Read patch definitions from `pnpm-workspace.yaml`\n- Falls back to original behavior of checking the root `package.json`\n- Should fix https://github.com/0x80/isolate-package/issues/164",
          "is_bot": false,
          "headline": "Read patches from pnpm-workspace.yaml (#166)",
          "author_name": "Barry Shevlin",
          "author_login": "barryShevlin",
          "committed_at": "2026-03-21T10:16:58Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f92dd61922221b63548de8dd7b92b404af79eb7b",
          "body": null,
          "is_bot": true,
          "headline": "1.28.3",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-03-06T09:18:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "307ce3881bacdc316fee11008d89d70356d97ba5",
          "body": "Regression fix for #17.\n\nPR #52 re-introduced the stripping of `scripts` from internal dependency\n`package.json` files during isolation. This was originally fixed in\nv1.3.2 but the `omit()` call in `adaptInternalPackageManifests` started\nstripping both `scripts` and `devDependencies`.\n\nOnly `devDepe\n[…]\nes` should be stripped. Scripts need to be preserved\nbecause packages like Prisma rely on `postinstall` hooks to function\ncorrectly.\n\n---------\n\nCo-authored-by: Claude Opus 4.6 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "Preserve scripts in internal dependency manifests (#163)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-03-06T09:17:35Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9897ae156c8b2a5330649705eb5852485c8b8bbc",
          "body": null,
          "is_bot": true,
          "headline": "1.28.2",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-02-20T08:53:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "91e590c29e36ac4ec923d4c838b5326898227f6a",
          "body": "Improve the error message when package.json is missing required fields\n(`version`, `files`) by linking directly to the relevant getting-started\nsection on the docs site.\n\nSingle missing field example:\n```\nPackage at (root)/apps/cli is missing the \"files\" field in its package.json. See https://isolat\n[…]\nle missing fields example:\n```\nPackage at (root)/apps/cli is missing mandatory fields in its package.json: version, files. See https://isolate-package.codecompose.dev/getting-started#prerequisites\n```",
          "is_bot": false,
          "headline": "Add documentation URLs to manifest validation errors (#162)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-20T07:56:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "95c07954022505412219f086f01e712fe9a53b4a",
          "body": "…input\n\nPre-release bumps (prepatch/preminor/premajor/prerelease) and explicit\nversions can now be triggered from any branch. Stable releases remain\nrestricted to main. The explicit_version input overrides bump and preid.",
          "is_bot": false,
          "headline": "Allow pre-release publishes from any branch and add explicit version …",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T12:38:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00369d2f989c1bfa5d19b6b60cea8633b8fb1e7a",
          "body": null,
          "is_bot": false,
          "headline": "Clarify hero tagline to mention internal dependencies",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T10:47:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "080ac670a1d8fd31f9e74d08aae10d17aa7f30da",
          "body": null,
          "is_bot": true,
          "headline": "1.28.1",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-02-19T10:42:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "36474f354796426ec2a6243ac8a6972d35964c54",
          "body": "Fixes #138\n\n`listInternalPackages` recursively resolves internal dependencies by\nchecking if dependency names exist in the workspace packages registry.\nWhen a workspace package has the same name as an external npm dependency\n(e.g., an internal package named `config` while other packages depend on\nnp\n[…]\ne\nhandled silently via the visited set.\n\nAdded unit tests covering: no deps, simple resolution, transitive deps,\ndiamond deduplication, two-node cycles, longer cycles, and\ndevDependencies with cycles.",
          "is_bot": false,
          "headline": "Fix internal package name clashing with external dependency names (#159)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T10:40:28Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "df13026784ca0fda34ac169a5665793d565160bf",
          "body": "Align the VitePress site description with the GitHub repo description\nand simplify the Firebase Compatible feature text.",
          "is_bot": false,
          "headline": "Improve docs site description and feature text (#158)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T10:22:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7175947fdf288d5e13cadb4030a8da1b751b5e32",
          "body": null,
          "is_bot": true,
          "headline": "1.28.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-02-19T09:38:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "021fe3fea78f8a2fd3d134c41be2d2280b726135",
          "body": "Migrates the README.md and docs/firebase.md into a multi-page VitePress\ndocumentation site with two sidebar sections: Guide (Getting Started,\nConfiguration, CLI Reference, API) and Topics (Deploying to Firebase,\nInternal Packages, Patched Dependencies, Comparison with pnpm deploy,\nTroubleshooting).\n\n[…]\n workflow to deploy to GitHub Pages on pushes to main.\n\nAdds a \"Comparison with pnpm deploy\" page explaining the differences in\napproach, output, and compatibility, and when to use which.\n\nCloses #143",
          "is_bot": false,
          "headline": "Convert documentation to VitePress and extend (#157)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T09:37:10Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "eb6ddd1de6fda1a516045675ca6dd63d620cb06a",
          "body": "Adds a public `getInternalPackageNames()` async function that returns\nthe list of internal workspace packages that the target package depends\non. It composes existing internals (`resolveConfig`,\n`createPackagesRegistry`, `listInternalPackages`) so there is no new\nlogic.\n\nThis is useful for tools lik\n[…]\ns,js,json}` already exists.\n\nAlso updates the README to document JS/TS config file support (from\n#155) and the new `getInternalPackageNames` API, including a\n`defineConfig` usage example.\n\nCloses #104",
          "is_bot": false,
          "headline": "Add getInternalPackageNames helper for listing internal packages (#156)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T08:06:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "8fa9c1c3498c64dcb377262e32543a6ce43b6ce1",
          "body": "Support `isolate.config.ts` and `isolate.config.js` alongside\n`isolate.config.json`, giving users type checking (TS) or simple ESM\n(JS) options for their configuration.\n\nUses a Node subprocess to load JS/TS config files, with\n`--experimental-strip-types` added for TypeScript. No new dependencies\nreq\n[…]\nthat the default export is a plain object, and surfaces\nsubprocess errors (syntax issues, missing exports) directly in the error\nmessage.\n\nSets minimum Node version to 22.6.0 via `engines`.\n\nFixes #80",
          "is_bot": false,
          "headline": "Add JS/TS config file support (#155)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T06:46:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "321a023bc7b541c1922771af699dbe8cc7289e9d",
          "body": "Upgrade dependencies, replace Prettier with oxfmt, and improve CI\nworkflows.\n\n- Upgrade glob, meow, oxlint, oxlint-tsgolint, typescript, and\n@codecompose/typescript-config\n- Replace prettier and prettier-plugin-jsdoc with oxfmt\n- Reformat codebase with oxfmt\n- Improve CI workflows: fix concurrency deadlock on workflow_call, add\nmain branch guard to checks job in publish, add explicit build step, use\nenv vars for inputs, separate push steps for commit and tag, run checks\non push to main",
          "is_bot": false,
          "headline": "Replace Prettier with oxfmt and upgrade deps (#154)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-19T05:24:55Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "07f759022fc9a3f8d42898c27238b3b6171e7f7b",
          "body": null,
          "is_bot": true,
          "headline": "1.27.0",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-02-12T17:04:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "25e57722c6169e44ae510d8ea29891c6a988442a",
          "body": "Adds a `workflow_dispatch` publish workflow that automates the full\nrelease flow: run checks, bump version, publish to npm, push the version\ncommit and tag, and create a GitHub Release.\n\nUses npm trusted publishing (OIDC) so no `NPM_TOKEN` secret is needed.\nRequires one-time setup on npmjs.com to link the GitHub repo as a\ntrusted publisher.\n\nInputs: version bump type, optional prerelease identifier, and a dry-run\ntoggle.",
          "is_bot": false,
          "headline": "Add publish workflow with npm trusted publishing (#153)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-12T17:01:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "93836f22f26072029732046a9b7010fadb4db7db",
          "body": "Add a minimal `.oxlintrc.json` that enables the `suspicious` and `perf`\ncategories alongside `correctness`, and adds type-aware rules for\ncatching floating promises, misused promises, and unnecessary await on\nnon-thenables.\n\nFixes surfaced by the new rules:\n- Preserve error cause chain with `{ cause: err }` in re-thrown errors\nacross json, yaml, and package manager utilities\n- Remove unnecessary non-null assertions in the PNPM lockfile generator",
          "is_bot": false,
          "headline": "Add oxlint configuration and fix lint violations (#152)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-12T15:16:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "35d5096d6d0c7d0f93cf653f56878a5f1f9a0a01",
          "body": "Upgrades all dependencies to their latest versions.\n\nNotable changes:\n- `glob` major version bump from v11 to v13\n- `@types/node` major version bump from v24 to v25\n- Removed redundant `main` and `module` fields from package.json",
          "is_bot": false,
          "headline": "Upgrade dependencies (#151)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-12T14:57:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6574f484db08296ef28eabb2e4e18ea9d649319f",
          "body": "All `isolate.config.json` options can now be overridden via CLI flags\nusing meow for argument parsing. Priority order: defaults < config file\n< CLI flags.\n\nCloses #54\n\n```\n$ isolate --help\n\nOptions\n  -b, --build-dir-name <name>            Build output directory name\n  -d, --include-dev-dependencies \n[…]\nion when `includeDevDependencies` is\nenabled: non-internal `link:` entries (e.g. locally linked external\npackages) are now removed from lockfile importers instead of crashing or\nproducing stale paths.",
          "is_bot": false,
          "headline": "Support CLI flags for all configuration options (#150)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-02-11T12:49:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2b074e7e5992e00e9c944da36db1d4f6612484b7",
          "body": null,
          "is_bot": false,
          "headline": "1.27.0-3",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-01-20T08:42:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4a3557621d5e6818ddf68d139b952b690509e1be",
          "body": "When `includePatchedDependencies` is enabled, copy relevant patch files\nfrom the workspace root to the isolated directory and update the\nisolated `package.json` with patch references.\n\nPatches are filtered based on the target package's dependencies:\n- Production dependency patches are always include\n[…]\npe\n- Used TypeScript generics in `filterPatchedDependencies<T>` to preserve\nthe value type through filtering operations\n\n---------\n\nCo-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Copy PNPM patches to isolated directory (#145)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-01-20T08:41:03Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a5b6ea43d204a28aaa22b5cbf70d6c74ba534ea5",
          "body": "Fixes #147\n\nVibecoded so unfortunately I could not confirm that its working. But it\nlooks ok.",
          "is_bot": false,
          "headline": "Support catalog versions (#149)",
          "author_name": "Otto Bretz",
          "author_login": "ottob",
          "committed_at": "2026-01-20T08:38:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8555ed034782c20b1967e7e92ea8580896da2da",
          "body": "Fixes #141\n\nRan into this issue after adding packageExtensions to my pnpm-workspace.\nInstalls in isolated directory fail with\n\n> ERR_PNPM_LOCKFILE_CONFIG_MISMATCH  Cannot proceed with the frozen\ninstallation. The current \"packageExtensionsChecksum\" configuration\ndoesn't match the value found in the lockfile",
          "is_bot": false,
          "headline": "Include packageExtensionsChecksum in generated lockfile (#148)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2026-01-08T20:04:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d5f3fa1d5fb0cc43b176babe5702081e427aa358",
          "body": "Some things should have been in gitignore",
          "is_bot": false,
          "headline": "Git ignore some files (#146)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-11-27T20:21:06Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ee53909a2f6fd936109b0d81611092038674fafe",
          "body": "Replace legacy tooling with modern alternatives:\n\n- Replace tsup with tsdown for bundling\n- Replace chalk with consola for logging\n- Replace eslint with oxlint for linting\n- Simplify logger wrapper implementation\n- Enable stricter TypeScript checks with `noUncheckedIndexedAccess`\n- Upgrade dependencies\n- Update CLAUDE.md with improved project documentation",
          "is_bot": false,
          "headline": "Upgrade to modern tooling; tsdown, oxlint, consola (#144)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-11-27T19:59:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d9426975faa7d8dff4837f5324a2b500dfe37b1a",
          "body": null,
          "is_bot": false,
          "headline": "1.26.1",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-09-14T17:55:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ded8b036c996789e3bb493ada31e159601d1f3b4",
          "body": null,
          "is_bot": false,
          "headline": "1.26.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-09-14T17:55:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1eee149f867e1713b5fecf5723690356cd9e9079",
          "body": null,
          "is_bot": false,
          "headline": "Upgrade dependencies (#140)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-09-14T17:50:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8020df856ef52fb04f1728c1ff3303e918c9b808",
          "body": null,
          "is_bot": false,
          "headline": "1.25.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-09-14T17:17:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "38f4eb1594a2b751fddb288c9cb2474f3aaf3330",
          "body": null,
          "is_bot": false,
          "headline": "Update docs",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-09-14T17:16:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b6794f944d7c1eeba940f0537204174109ee06be",
          "body": null,
          "is_bot": false,
          "headline": "Fix logic to include dev dependencies (#137)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-09-14T17:07:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fbf1ab9f2ef3388ee1d5377374eda30d70fd84f5",
          "body": null,
          "is_bot": false,
          "headline": "1.24.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-14T07:29:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6135a88f7281bc2d2fa7aa9b3b5cdb0719b3886d",
          "body": null,
          "is_bot": false,
          "headline": "Only validate package fields for internal packages (#136)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T21:51:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b9d59b8de92e4d63b432f7a7c090fac782f1332c",
          "body": null,
          "is_bot": false,
          "headline": "1.24.0-0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T20:58:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ab03b196a842dac6455fdf85dc7db43cdcc28cc6",
          "body": "Co-authored-by: Cursor Agent <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "Fix pnpm workspace validation bug (#134)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T20:55:58Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "50fd3c35a321ed07d451f13f85cfbc6e54b9c262",
          "body": "Co-authored-by: Cursor Agent <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "Add support for new PNPM 10 manifest fields (#135)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T20:40:58Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2ff7b68e4a4a7d2b1a0bb250623c0ae9f7456660",
          "body": null,
          "is_bot": false,
          "headline": "Delete issue implementation doc",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T20:13:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e771c34689d8547789486708f85c5bef79e43d3b",
          "body": "Co-authored-by: Cursor Agent <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "Prevent empty pnpm-workspace file (#133)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T20:07:45Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "54ef36277fbc39c37497a61d9aad4387b83724be",
          "body": null,
          "is_bot": false,
          "headline": "Update bun lock file name (#130)",
          "author_name": "Otto Bretz",
          "author_login": "ottob",
          "committed_at": "2025-07-13T20:02:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "715ba2b35b3e31dab066677fa34f09c6200df2ce",
          "body": "Co-authored-by: Cursor Agent <cursoragent@cursor.com>",
          "is_bot": false,
          "headline": "Add manifest validation for mandatory package.json fields (#132)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T19:46:51Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "ee79ad0794d1f91225b5015705949ac02c9ae90c",
          "body": null,
          "is_bot": false,
          "headline": "Add agents.md file",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-07-13T19:39:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "59e56f66069574ebbe1610ccbc83a48897924ff1",
          "body": null,
          "is_bot": false,
          "headline": "1.23.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-01-12T12:53:13Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c71bb2d54a2aba24c44196c1d4587d497e283668",
          "body": null,
          "is_bot": false,
          "headline": "Move info logs to debug",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-01-12T12:52:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ec66f018caf20549a3acf36906ed534370b179d2",
          "body": null,
          "is_bot": false,
          "headline": "Refactor isolate to support multiple simultaneous executions (#126)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-01-12T10:03:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "85cbdd1bbe3d30fa0e60864fd21566c3d3e484a5",
          "body": null,
          "is_bot": false,
          "headline": "1.22.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-01-11T14:01:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6e1495e077c7a8d30b7c56a0ff4fd2bb16c21ac8",
          "body": null,
          "is_bot": false,
          "headline": "Use get-tsconfig to resolve tsconfig settings (#122)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2025-01-11T13:58:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a3632458939b470ce47fc244501b5488b318951",
          "body": null,
          "is_bot": false,
          "headline": "Fix for Windows Git Bash w/ pnpm (#116)",
          "author_name": "jack1323",
          "author_login": "jack1323",
          "committed_at": "2024-12-17T05:27:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "97efce92736c2881cda5cfd0d1a1407786c36d95",
          "body": null,
          "is_bot": false,
          "headline": "Use assert and add extra check for filename",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-11-28T17:24:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "76e165d69340959b3ceb7c9a6d09a816a51e2077",
          "body": null,
          "is_bot": false,
          "headline": "1.21.0-1",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-11-28T17:04:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b3cd98d783084aa3c39d55813e2c756f7e99b603",
          "body": null,
          "is_bot": false,
          "headline": "Only use last line as fileName when packing (#115)",
          "author_name": "Knut Eirik Leira Hjelle",
          "author_login": "hjellek",
          "committed_at": "2024-11-28T17:01:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "82d623036e9eaa10eb75ee01ce42abfe17298f18",
          "body": null,
          "is_bot": false,
          "headline": "1.20.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-11-20T09:54:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "17b5e794fad7621bad4de4d6bf8948ab7c9611d3",
          "body": null,
          "is_bot": false,
          "headline": "Upgrade dependencies",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-11-20T09:54:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d8cc0a1f1407a1b705ed8c50c89d70359dbae1d8",
          "body": null,
          "is_bot": false,
          "headline": "Bring back the forceNpm option (#112)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-11-17T09:24:09Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5c703d2d15ecb91f1c8bfe0baf411ccb9facd1af",
          "body": null,
          "is_bot": false,
          "headline": "Use npm config when generating the npm lockfile (#108)",
          "author_name": "Laurence Hartgill",
          "author_login": "laurence79",
          "committed_at": "2024-10-23T14:26:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00f40a2596a7781fcdf844e67a2ffc7bc869a2e3",
          "body": null,
          "is_bot": false,
          "headline": "Fix github actions",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-08-04T10:39:22Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c39f9fa01d31bf0084d428a6a432f85ba53672f4",
          "body": null,
          "is_bot": false,
          "headline": "Update readme",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-08-04T10:33:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6c58cdfe201537d4982bca18eb25c7b76fe2fc76",
          "body": null,
          "is_bot": false,
          "headline": "Upgrade dependencies",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-08-04T10:33:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b9f544e605e0cc2b59df9107ff4dfd9771c14037",
          "body": null,
          "is_bot": false,
          "headline": "Add basic support for Bun package manager (#99)",
          "author_name": "Harvey Lee",
          "author_login": "harveylee",
          "committed_at": "2024-08-04T09:51:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c332456aa2bcbddefa28fb7964c9285725cc0e54",
          "body": null,
          "is_bot": false,
          "headline": "1.19.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-07-15T10:39:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9b85ad589c1fa208cd8cc66465703636ae24e698",
          "body": "Co-authored-by: Danny Kim <0916dhkim@gmail.com>\r\nCo-authored-by: Evan Suhyeong Lee <sounmind@users.noreply.github.com>",
          "is_bot": false,
          "headline": "Fix relative paths in lockfile (#98)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-07-15T10:38:11Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "22ef4691577e91edd517406805ba09fc1a7b9cf3",
          "body": null,
          "is_bot": false,
          "headline": "Re-trow original error with lockfile fails",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-07-15T10:35:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6c5668a24459526291b11cb69c01b50992741952",
          "body": null,
          "is_bot": false,
          "headline": "1.18.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-06-09T17:34:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "877b05a9e6b15a25985d276883ca168cab37b8f0",
          "body": null,
          "is_bot": false,
          "headline": "Improve support for windows (#96)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-06-09T17:33:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5dbd60bcd3a957bc5fbee44f58a68dea26981f97",
          "body": null,
          "is_bot": false,
          "headline": "1.17.0",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-06-09T16:44:35Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "95715a1b2da5d1388b25258f4c762744001b988f",
          "body": null,
          "is_bot": false,
          "headline": "Only detect version for expected package manager (#94)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-06-09T16:32:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d14f61c360beddd8b3c3ce407a2ffca01ca53f48",
          "body": null,
          "is_bot": false,
          "headline": "Add eslint",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-06-09T13:41:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "174a8c96cb538abc683cf145e2509bb4b4b8e5c5",
          "body": null,
          "is_bot": false,
          "headline": "Add overrides to isolated pnpm lockfile  (#88)",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-06-09T13:28:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9372344ae864010df94b90f44886db46e63e201",
          "body": null,
          "is_bot": false,
          "headline": "Shrink the toc in readme",
          "author_name": "Thijs Koerselman",
          "author_login": "0x80",
          "committed_at": "2024-05-19T21:12:23Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 42,
      "commits_last_year": 63,
      "latest_release_at": "2026-07-17T11:48:08Z",
      "latest_release_tag": "v1.35.1",
      "releases_from_tags": false,
      "days_since_last_push": 5,
      "active_weeks_last_year": 16,
      "days_since_latest_release": 5,
      "mean_days_between_releases": 13.1
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": false,
      "health_percentage": 42,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "isolate-package",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "ci",
            "deploy",
            "docker",
            "firebase",
            "isolate",
            "lockfile",
            "monorepo",
            "package",
            "prune",
            "turborepo",
            "workspace",
            "workspaces"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/isolate-package",
          "is_deprecated": false,
          "latest_version": "1.35.1",
          "repository_url": "https://github.com/0x80/isolate-package",
          "versions_count": 145,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 140265,
          "first_published_at": "2023-05-06T12:56:21.723000Z",
          "latest_published_at": "2026-07-17T11:48:02.292000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 5
        }
      ]
    },
    "popularity": {
      "forks": 22,
      "stars": 192,
      "watchers": 5,
      "fork_history": {
        "days": [
          {
            "date": "2023-05-14",
            "count": 1
          },
          {
            "date": "2023-07-04",
            "count": 1
          },
          {
            "date": "2023-08-15",
            "count": 1
          },
          {
            "date": "2024-01-11",
            "count": 1
          },
          {
            "date": "2024-05-08",
            "count": 1
          },
          {
            "date": "2024-06-08",
            "count": 2
          },
          {
            "date": "2024-07-31",
            "count": 1
          },
          {
            "date": "2024-10-17",
            "count": 1
          },
          {
            "date": "2024-11-25",
            "count": 1
          },
          {
            "date": "2024-12-01",
            "count": 1
          },
          {
            "date": "2024-12-12",
            "count": 1
          },
          {
            "date": "2024-12-30",
            "count": 1
          },
          {
            "date": "2025-06-18",
            "count": 1
          },
          {
            "date": "2025-09-25",
            "count": 1
          },
          {
            "date": "2026-01-07",
            "count": 1
          },
          {
            "date": "2026-01-19",
            "count": 1
          },
          {
            "date": "2026-03-18",
            "count": 1
          },
          {
            "date": "2026-03-26",
            "count": 1
          },
          {
            "date": "2026-04-02",
            "count": 1
          },
          {
            "date": "2026-04-16",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 21,
        "total_forks": 22
      },
      "star_history": null,
      "open_issues_and_prs": 1
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 30770,
      "source_files_sampled": 96,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        ".claude/CLAUDE.md",
        "AGENTS.md"
      ],
      "agent_instruction_max_bytes": 7680
    },
    "dependencies": {
      "manifests": [
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "repository_graph",
        "source": "osv",
        "findings": [
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.14",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp"
            ],
            "fixed_version": "5.0.7",
            "advisory_count": 1,
            "oldest_advisory_days": 1
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "5.0.6",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-3jxr-9vmj-r5cp"
            ],
            "fixed_version": "5.0.7",
            "advisory_count": 1,
            "oldest_advisory_days": 1
          },
          {
            "name": "sigstore",
            "direct": false,
            "version": "4.1.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-52v5-jr5w-gjxr"
            ],
            "fixed_version": "4.1.1",
            "advisory_count": 1,
            "oldest_advisory_days": 20
          },
          {
            "name": "tar",
            "direct": false,
            "version": "7.5.15",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-23hp-3jrh-7fpw",
              "GHSA-8x88-c5mf-7j5w",
              "GHSA-gvwx-54wh-qm9j",
              "GHSA-vmf3-w455-68vh",
              "GHSA-w8wr-v893-vjvp"
            ],
            "fixed_version": "7.5.19",
            "advisory_count": 5,
            "oldest_advisory_days": 36
          },
          {
            "name": "undici",
            "direct": false,
            "version": "6.25.0",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-35p6-xmwp-9g52",
              "GHSA-g8m3-5g58-fq7m",
              "GHSA-p88m-4jfj-68fv",
              "GHSA-vxpw-j846-p89q"
            ],
            "fixed_version": "8.5.0",
            "advisory_count": 4,
            "oldest_advisory_days": 32
          },
          {
            "name": "vite",
            "direct": false,
            "version": "5.4.21",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-4w7w-66w2-5vf9",
              "GHSA-fx2h-pf6j-xcff",
              "GHSA-v6wh-96g9-6wx3"
            ],
            "fixed_version": "8.0.16",
            "advisory_count": 3,
            "oldest_advisory_days": 106
          },
          {
            "name": "vite",
            "direct": false,
            "version": "8.0.12",
            "severity": "high",
            "ecosystem": "npm",
            "cvss_score": 7.5,
            "advisory_ids": [
              "GHSA-fx2h-pf6j-xcff",
              "GHSA-v6wh-96g9-6wx3"
            ],
            "fixed_version": "8.0.16",
            "advisory_count": 2,
            "oldest_advisory_days": 36
          },
          {
            "name": "@sigstore/core",
            "direct": false,
            "version": "3.2.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.4,
            "advisory_ids": [
              "GHSA-jfc7-64v2-mr8c"
            ],
            "fixed_version": "3.2.1",
            "advisory_count": 1,
            "oldest_advisory_days": 25
          },
          {
            "name": "@sigstore/verify",
            "direct": false,
            "version": "3.1.0",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 6.5,
            "advisory_ids": [
              "GHSA-xgjw-pm74-86q4"
            ],
            "fixed_version": "3.1.1",
            "advisory_count": 1,
            "oldest_advisory_days": 20
          },
          {
            "name": "esbuild",
            "direct": false,
            "version": "0.21.5",
            "severity": "moderate",
            "ecosystem": "npm",
            "cvss_score": 5.3,
            "advisory_ids": [
              "GHSA-67mh-4wv8-2f99"
            ],
            "fixed_version": "0.25.0",
            "advisory_count": 1,
            "oldest_advisory_days": 526
          }
        ],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {
          "high": 7,
          "moderate": 3
        },
        "advisory_count": 20,
        "affected_count": 10,
        "assessed_count": 579,
        "malicious_count": 0,
        "assessed_package": null,
        "unassessed_count": 6,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@npmcli/arborist",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.4.2"
        },
        {
          "name": "@npmcli/config",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.8.1"
        },
        {
          "name": "@pnpm/logger",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1100.0.0"
        },
        {
          "name": "@pnpm/types",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1001.3.0"
        },
        {
          "name": "consola",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.4.2"
        },
        {
          "name": "detect-monorepo",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.0.0"
        },
        {
          "name": "fs-extra",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^11.3.4"
        },
        {
          "name": "get-or-throw",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.0.1"
        },
        {
          "name": "get-tsconfig",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.13.7"
        },
        {
          "name": "glob",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^13.0.6"
        },
        {
          "name": "meow",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^14.1.0"
        },
        {
          "name": "outdent",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.8.0"
        },
        {
          "name": "pnpm_lockfile_file_v8",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "npm:@pnpm/lockfile-file@8"
        },
        {
          "name": "pnpm_lockfile_file_v9",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "npm:@pnpm/lockfile-file@9.0.0"
        },
        {
          "name": "pnpm_prune_lockfile_v8",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "npm:@pnpm/prune-lockfile@5"
        },
        {
          "name": "pnpm_prune_lockfile_v9",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "npm:@pnpm/prune-lockfile@6.0.0"
        },
        {
          "name": "remeda",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.33.7"
        },
        {
          "name": "source-map-support",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.5.21"
        },
        {
          "name": "strip-json-comments",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.0.3"
        },
        {
          "name": "tar-fs",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.2"
        },
        {
          "name": "yaml",
          "manifest": "package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.9.0"
        }
      ],
      "all_dependencies": {
        "error": null,
        "source": "github-sbom",
        "packages": [
          {
            "name": "@npmcli/arborist",
            "direct": true,
            "version": "9.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/config",
            "direct": true,
            "version": "10.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/logger",
            "direct": true,
            "version": "1100.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/types",
            "direct": true,
            "version": "10.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/types",
            "direct": true,
            "version": "1001.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/types",
            "direct": true,
            "version": "9.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "consola",
            "direct": true,
            "version": "3.4.2",
            "ecosystem": "npm"
          },
          {
            "name": "detect-monorepo",
            "direct": true,
            "version": "1.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs-extra",
            "direct": true,
            "version": "11.3.5",
            "ecosystem": "npm"
          },
          {
            "name": "get-or-throw",
            "direct": true,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "get-tsconfig",
            "direct": true,
            "version": "4.14.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-tsconfig",
            "direct": true,
            "version": "5.0.0-beta.5",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": true,
            "version": "13.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "glob",
            "direct": true,
            "version": "7.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "meow",
            "direct": true,
            "version": "14.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "outdent",
            "direct": true,
            "version": "0.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "remeda",
            "direct": true,
            "version": "2.34.0",
            "ecosystem": "npm"
          },
          {
            "name": "source-map-support",
            "direct": true,
            "version": "0.5.21",
            "ecosystem": "npm"
          },
          {
            "name": "strip-json-comments",
            "direct": true,
            "version": "5.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "tar-fs",
            "direct": true,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "yaml",
            "direct": true,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/abtesting",
            "direct": false,
            "version": "1.18.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/autocomplete-core",
            "direct": false,
            "version": "1.17.7",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/autocomplete-plugin-algolia-insights",
            "direct": false,
            "version": "1.17.7",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/autocomplete-preset-algolia",
            "direct": false,
            "version": "1.17.7",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/autocomplete-shared",
            "direct": false,
            "version": "1.17.7",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/client-abtesting",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/client-analytics",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/client-common",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/client-insights",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/client-personalization",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/client-query-suggestions",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/client-search",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/ingestion",
            "direct": false,
            "version": "1.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/monitoring",
            "direct": false,
            "version": "1.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/recommend",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/requester-browser-xhr",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/requester-fetch",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@algolia/requester-node-http",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/generator",
            "direct": false,
            "version": "8.0.0-rc.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-string-parser",
            "direct": false,
            "version": "7.27.1",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-string-parser",
            "direct": false,
            "version": "8.0.0-rc.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-identifier",
            "direct": false,
            "version": "7.28.5",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/helper-validator-identifier",
            "direct": false,
            "version": "8.0.0-rc.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "7.29.3",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/parser",
            "direct": false,
            "version": "8.0.0-rc.4",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "7.29.0",
            "ecosystem": "npm"
          },
          {
            "name": "@babel/types",
            "direct": false,
            "version": "8.0.0-rc.4",
            "ecosystem": "npm"
          },
          {
            "name": "@codecompose/typescript-config",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@docsearch/css",
            "direct": false,
            "version": "3.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "@docsearch/js",
            "direct": false,
            "version": "3.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "@docsearch/react",
            "direct": false,
            "version": "3.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/core",
            "direct": false,
            "version": "1.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/runtime",
            "direct": false,
            "version": "1.10.0",
            "ecosystem": "npm"
          },
          {
            "name": "@emnapi/wasi-threads",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/aix-ppc64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-arm64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/android-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-arm64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/darwin-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-arm64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/freebsd-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-arm64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ia32",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-loong64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-mips64el",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-ppc64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-riscv64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-s390x",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/linux-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/netbsd-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/openbsd-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/sunos-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-arm64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-ia32",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@esbuild/win32-x64",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "@gar/promise-retry",
            "direct": false,
            "version": "1.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@iconify-json/simple-icons",
            "direct": false,
            "version": "1.2.81",
            "ecosystem": "npm"
          },
          {
            "name": "@iconify/types",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/fs-minipass",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@isaacs/string-locale-compare",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/gen-mapping",
            "direct": false,
            "version": "0.3.13",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/resolve-uri",
            "direct": false,
            "version": "3.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/sourcemap-codec",
            "direct": false,
            "version": "1.5.5",
            "ecosystem": "npm"
          },
          {
            "name": "@jridgewell/trace-mapping",
            "direct": false,
            "version": "0.3.31",
            "ecosystem": "npm"
          },
          {
            "name": "@napi-rs/wasm-runtime",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/agent",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/fs",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/git",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/installed-package-contents",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/map-workspaces",
            "direct": false,
            "version": "5.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/metavuln-calculator",
            "direct": false,
            "version": "9.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/name-from-folder",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/node-gyp",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/package-json",
            "direct": false,
            "version": "7.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/promise-spawn",
            "direct": false,
            "version": "9.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/query",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/redact",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@npmcli/run-script",
            "direct": false,
            "version": "10.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@oxc-project/types",
            "direct": false,
            "version": "0.129.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-android-arm-eabi",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-android-arm64",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-darwin-arm64",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-darwin-x64",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-freebsd-x64",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-arm-musleabihf",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-arm64-gnu",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-arm64-musl",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-riscv64-gnu",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-riscv64-musl",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-s390x-gnu",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-x64-gnu",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-linux-x64-musl",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-openharmony-arm64",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-win32-arm64-msvc",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-win32-ia32-msvc",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxfmt/binding-win32-x64-msvc",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint-tsgolint/darwin-arm64",
            "direct": false,
            "version": "0.22.1",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint-tsgolint/darwin-x64",
            "direct": false,
            "version": "0.22.1",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint-tsgolint/linux-arm64",
            "direct": false,
            "version": "0.22.1",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint-tsgolint/linux-x64",
            "direct": false,
            "version": "0.22.1",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint-tsgolint/win32-arm64",
            "direct": false,
            "version": "0.22.1",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint-tsgolint/win32-x64",
            "direct": false,
            "version": "0.22.1",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-android-arm-eabi",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-android-arm64",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-darwin-arm64",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-darwin-x64",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-freebsd-x64",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-arm-musleabihf",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-arm64-gnu",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-arm64-musl",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-riscv64-gnu",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-riscv64-musl",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-s390x-gnu",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-x64-gnu",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-linux-x64-musl",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-openharmony-arm64",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-win32-arm64-msvc",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-win32-ia32-msvc",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@oxlint/binding-win32-x64-msvc",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/constants",
            "direct": false,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/constants",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/crypto.base32-hash",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/crypto.base32-hash",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/dependency-path",
            "direct": false,
            "version": "2.1.8",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/dependency-path",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/error",
            "direct": false,
            "version": "5.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/error",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/git-utils",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/git-utils",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/lockfile-file",
            "direct": false,
            "version": "8.1.8",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/lockfile-file",
            "direct": false,
            "version": "9.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/lockfile-types",
            "direct": false,
            "version": "5.1.5",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/lockfile-types",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/lockfile-utils",
            "direct": false,
            "version": "10.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/merge-lockfile-changes",
            "direct": false,
            "version": "5.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/merge-lockfile-changes",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/pick-fetcher",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/prune-lockfile",
            "direct": false,
            "version": "5.0.10",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/prune-lockfile",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/ramda",
            "direct": false,
            "version": "0.28.1",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/resolver-base",
            "direct": false,
            "version": "12.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@pnpm/util.lex-comparator",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@quansync/fs",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-android-arm64",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-arm64",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-darwin-x64",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-freebsd-x64",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-gnu",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-arm64-musl",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-ppc64-gnu",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-s390x-gnu",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-gnu",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-linux-x64-musl",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-openharmony-arm64",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-wasm32-wasi",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-arm64-msvc",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/binding-win32-x64-msvc",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rolldown/pluginutils",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-android-arm-eabi",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-android-arm64",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-darwin-arm64",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-darwin-x64",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-freebsd-arm64",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-freebsd-x64",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-arm-gnueabihf",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-arm-musleabihf",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-arm64-gnu",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-arm64-musl",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-loong64-gnu",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-loong64-musl",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-ppc64-gnu",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-ppc64-musl",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-riscv64-gnu",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-riscv64-musl",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-s390x-gnu",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-x64-gnu",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-linux-x64-musl",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-openbsd-x64",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-openharmony-arm64",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-win32-arm64-msvc",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-win32-ia32-msvc",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-win32-x64-gnu",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@rollup/rollup-win32-x64-msvc",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/core",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/engine-javascript",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/engine-oniguruma",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/langs",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/themes",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/transformers",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/types",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "@shikijs/vscode-textmate",
            "direct": false,
            "version": "10.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/bundle",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/core",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/protobuf-specs",
            "direct": false,
            "version": "0.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/sign",
            "direct": false,
            "version": "4.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/tuf",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@sigstore/verify",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@standard-schema/spec",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tufjs/canonical-json",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tufjs/models",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "@tybys/wasm-util",
            "direct": false,
            "version": "0.10.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/chai",
            "direct": false,
            "version": "5.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/deep-eql",
            "direct": false,
            "version": "4.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/estree",
            "direct": false,
            "version": "1.0.8",
            "ecosystem": "npm"
          },
          {
            "name": "@types/estree",
            "direct": false,
            "version": "1.0.9",
            "ecosystem": "npm"
          },
          {
            "name": "@types/fs-extra",
            "direct": false,
            "version": "11.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/hast",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/jsesc",
            "direct": false,
            "version": "2.5.1",
            "ecosystem": "npm"
          },
          {
            "name": "@types/jsonfile",
            "direct": false,
            "version": "6.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/linkify-it",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/markdown-it",
            "direct": false,
            "version": "14.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "@types/mdast",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/mdurl",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/node",
            "direct": false,
            "version": "25.7.0",
            "ecosystem": "npm"
          },
          {
            "name": "@types/npmcli__config",
            "direct": false,
            "version": "6.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/semver",
            "direct": false,
            "version": "7.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "@types/source-map-support",
            "direct": false,
            "version": "0.5.10",
            "ecosystem": "npm"
          },
          {
            "name": "@types/tar-fs",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/tar-stream",
            "direct": false,
            "version": "3.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "@types/unist",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "@types/web-bluetooth",
            "direct": false,
            "version": "0.0.21",
            "ecosystem": "npm"
          },
          {
            "name": "@ungap/structured-clone",
            "direct": false,
            "version": "1.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "@vitejs/plugin-vue",
            "direct": false,
            "version": "5.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/expect",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/mocker",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/pretty-format",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/runner",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/snapshot",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/spy",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vitest/utils",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/compiler-core",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/compiler-dom",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/compiler-sfc",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/compiler-ssr",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/devtools-api",
            "direct": false,
            "version": "7.7.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/devtools-kit",
            "direct": false,
            "version": "7.7.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/devtools-shared",
            "direct": false,
            "version": "7.7.9",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/reactivity",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/runtime-core",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/runtime-dom",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/server-renderer",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vue/shared",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "@vueuse/core",
            "direct": false,
            "version": "12.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "@vueuse/integrations",
            "direct": false,
            "version": "12.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "@vueuse/metadata",
            "direct": false,
            "version": "12.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "@vueuse/shared",
            "direct": false,
            "version": "12.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "@zkochan/js-yaml",
            "direct": false,
            "version": "0.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "@zkochan/js-yaml",
            "direct": false,
            "version": "0.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "@zkochan/rimraf",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "@zkochan/which",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "abbrev",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "agent-base",
            "direct": false,
            "version": "7.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "algoliasearch",
            "direct": false,
            "version": "5.52.1",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-escapes",
            "direct": false,
            "version": "7.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-regex",
            "direct": false,
            "version": "6.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "ansi-styles",
            "direct": false,
            "version": "6.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "ansis",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "argparse",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "assertion-error",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ast-kit",
            "direct": false,
            "version": "3.0.0-beta.1",
            "ecosystem": "npm"
          },
          {
            "name": "b4a",
            "direct": false,
            "version": "1.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "balanced-match",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "bare-events",
            "direct": false,
            "version": "2.8.2",
            "ecosystem": "npm"
          },
          {
            "name": "bare-fs",
            "direct": false,
            "version": "4.7.1",
            "ecosystem": "npm"
          },
          {
            "name": "bare-os",
            "direct": false,
            "version": "3.9.1",
            "ecosystem": "npm"
          },
          {
            "name": "bare-path",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "bare-stream",
            "direct": false,
            "version": "2.13.1",
            "ecosystem": "npm"
          },
          {
            "name": "bare-url",
            "direct": false,
            "version": "2.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "bin-links",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "birpc",
            "direct": false,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "birpc",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "bole",
            "direct": false,
            "version": "5.0.29",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "1.1.14",
            "ecosystem": "npm"
          },
          {
            "name": "brace-expansion",
            "direct": false,
            "version": "5.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "buffer-from",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "cac",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cacache",
            "direct": false,
            "version": "20.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "ccount",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "chai",
            "direct": false,
            "version": "6.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "character-entities-html4",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "character-entities-legacy",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "chownr",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ci-info",
            "direct": false,
            "version": "4.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "cli-cursor",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "cli-truncate",
            "direct": false,
            "version": "5.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "cmd-shim",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "comma-separated-tokens",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "common-ancestor-path",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "comver-to-semver",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "concat-map",
            "direct": false,
            "version": "0.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "convert-source-map",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "copy-anything",
            "direct": false,
            "version": "4.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "cross-spawn",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "cssesc",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "csstype",
            "direct": false,
            "version": "3.2.3",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "4.4.3",
            "ecosystem": "npm"
          },
          {
            "name": "debug",
            "direct": false,
            "version": "^4.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "defu",
            "direct": false,
            "version": "6.1.7",
            "ecosystem": "npm"
          },
          {
            "name": "dequal",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "detect-libc",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "devlop",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "dts-resolver",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex",
            "direct": false,
            "version": "10.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "emoji-regex-xs",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "empathic",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "encode-registry",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "end-of-stream",
            "direct": false,
            "version": "1.4.5",
            "ecosystem": "npm"
          },
          {
            "name": "entities",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "env-paths",
            "direct": false,
            "version": "2.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "environment",
            "direct": false,
            "version": "1.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "es-module-lexer",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "esbuild",
            "direct": false,
            "version": "0.21.5",
            "ecosystem": "npm"
          },
          {
            "name": "estree-walker",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "estree-walker",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "eventemitter3",
            "direct": false,
            "version": "5.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "events-universal",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "execa",
            "direct": false,
            "version": "5.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "expect-type",
            "direct": false,
            "version": "1.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "exponential-backoff",
            "direct": false,
            "version": "3.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "fast-fifo",
            "direct": false,
            "version": "1.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "fast-safe-stringify",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "fdir",
            "direct": false,
            "version": "6.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "focus-trap",
            "direct": false,
            "version": "7.8.0",
            "ecosystem": "npm"
          },
          {
            "name": "fs-minipass",
            "direct": false,
            "version": "3.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "fs.realpath",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "fsevents",
            "direct": false,
            "version": "2.3.3",
            "ecosystem": "npm"
          },
          {
            "name": "get-east-asian-width",
            "direct": false,
            "version": "1.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-npm-tarball-url",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "get-stream",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "graceful-fs",
            "direct": false,
            "version": "4.2.11",
            "ecosystem": "npm"
          },
          {
            "name": "hast-util-to-html",
            "direct": false,
            "version": "9.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "hast-util-whitespace",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "hookable",
            "direct": false,
            "version": "5.5.3",
            "ecosystem": "npm"
          },
          {
            "name": "hookable",
            "direct": false,
            "version": "6.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "hosted-git-info",
            "direct": false,
            "version": "9.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "html-void-elements",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "http-cache-semantics",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "http-proxy-agent",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "https-proxy-agent",
            "direct": false,
            "version": "7.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "human-signals",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "husky",
            "direct": false,
            "version": "9.1.7",
            "ecosystem": "npm"
          },
          {
            "name": "iconv-lite",
            "direct": false,
            "version": "0.7.2",
            "ecosystem": "npm"
          },
          {
            "name": "ignore-walk",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "import-without-cache",
            "direct": false,
            "version": "0.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "imurmurhash",
            "direct": false,
            "version": "0.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "individual",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "inflight",
            "direct": false,
            "version": "1.0.6",
            "ecosystem": "npm"
          },
          {
            "name": "inherits",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "ini",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "ip-address",
            "direct": false,
            "version": "10.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-fullwidth-code-point",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-plain-obj",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "is-stream",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "is-what",
            "direct": false,
            "version": "5.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "isexe",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "jsesc",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-parse-even-better-errors",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "json-stringify-nice",
            "direct": false,
            "version": "1.1.4",
            "ecosystem": "npm"
          },
          {
            "name": "jsonfile",
            "direct": false,
            "version": "6.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "jsonparse",
            "direct": false,
            "version": "1.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "just-diff",
            "direct": false,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "just-diff-apply",
            "direct": false,
            "version": "5.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-android-arm64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-arm64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-darwin-x64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-freebsd-x64",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm-gnueabihf",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-gnu",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-arm64-musl",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-gnu",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-linux-x64-musl",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-arm64-msvc",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lightningcss-win32-x64-msvc",
            "direct": false,
            "version": "1.32.0",
            "ecosystem": "npm"
          },
          {
            "name": "lint-staged",
            "direct": false,
            "version": "17.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "listr2",
            "direct": false,
            "version": "10.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "log-update",
            "direct": false,
            "version": "6.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "lru-cache",
            "direct": false,
            "version": "11.3.6",
            "ecosystem": "npm"
          },
          {
            "name": "magic-string",
            "direct": false,
            "version": "0.30.21",
            "ecosystem": "npm"
          },
          {
            "name": "make-fetch-happen",
            "direct": false,
            "version": "15.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "map-age-cleaner",
            "direct": false,
            "version": "0.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "mark.js",
            "direct": false,
            "version": "8.11.1",
            "ecosystem": "npm"
          },
          {
            "name": "mdast-util-to-hast",
            "direct": false,
            "version": "13.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "mem",
            "direct": false,
            "version": "8.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "merge-stream",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "micromark-util-character",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "micromark-util-encode",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "micromark-util-sanitize-uri",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "micromark-util-symbol",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "micromark-util-types",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-fn",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-fn",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "mimic-function",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "10.2.5",
            "ecosystem": "npm"
          },
          {
            "name": "minimatch",
            "direct": false,
            "version": "3.1.5",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": false,
            "version": "3.3.6",
            "ecosystem": "npm"
          },
          {
            "name": "minipass",
            "direct": false,
            "version": "7.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-collect",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-fetch",
            "direct": false,
            "version": "5.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-flush",
            "direct": false,
            "version": "1.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-pipeline",
            "direct": false,
            "version": "1.2.4",
            "ecosystem": "npm"
          },
          {
            "name": "minipass-sized",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "minisearch",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "minizlib",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "mitt",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "ms",
            "direct": false,
            "version": "^2.1.3",
            "ecosystem": "npm"
          },
          {
            "name": "nanoid",
            "direct": false,
            "version": "3.3.12",
            "ecosystem": "npm"
          },
          {
            "name": "negotiator",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "node-gyp",
            "direct": false,
            "version": "12.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "nopt",
            "direct": false,
            "version": "9.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "normalize-path",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-bundled",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-install-checks",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-normalize-package-bin",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "npm-package-arg",
            "direct": false,
            "version": "13.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "npm-packlist",
            "direct": false,
            "version": "10.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "npm-pick-manifest",
            "direct": false,
            "version": "11.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "npm-registry-fetch",
            "direct": false,
            "version": "19.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "npm-run-path",
            "direct": false,
            "version": "4.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "obug",
            "direct": false,
            "version": "2.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "once",
            "direct": false,
            "version": "1.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "onetime",
            "direct": false,
            "version": "5.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "onetime",
            "direct": false,
            "version": "7.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "oniguruma-to-es",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "oxfmt",
            "direct": false,
            "version": "0.49.0",
            "ecosystem": "npm"
          },
          {
            "name": "oxlint",
            "direct": false,
            "version": "1.64.0",
            "ecosystem": "npm"
          },
          {
            "name": "oxlint-tsgolint",
            "direct": false,
            "version": "0.22.1",
            "ecosystem": "npm"
          },
          {
            "name": "p-defer",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "p-map",
            "direct": false,
            "version": "7.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "packages/api",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "packages/other",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "packages/shared",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "packages/utils",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "pacote",
            "direct": false,
            "version": "21.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "parse-conflict-json",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-is-absolute",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-key",
            "direct": false,
            "version": "3.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "path-name",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "path-scurry",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "pathe",
            "direct": false,
            "version": "2.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "perfect-debounce",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "picocolors",
            "direct": false,
            "version": "1.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "picomatch",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "postcss",
            "direct": false,
            "version": "8.5.14",
            "ecosystem": "npm"
          },
          {
            "name": "postcss-selector-parser",
            "direct": false,
            "version": "7.1.1",
            "ecosystem": "npm"
          },
          {
            "name": "preact",
            "direct": false,
            "version": "10.29.1",
            "ecosystem": "npm"
          },
          {
            "name": "proc-log",
            "direct": false,
            "version": "6.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "proggy",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "promise-all-reject-late",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "promise-call-limit",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "property-information",
            "direct": false,
            "version": "7.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "pump",
            "direct": false,
            "version": "3.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "quansync",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "read-cmd-shim",
            "direct": false,
            "version": "6.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "regex",
            "direct": false,
            "version": "6.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "regex-recursion",
            "direct": false,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "regex-utilities",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "resolve-pkg-maps",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "restore-cursor",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "rfc4648",
            "direct": false,
            "version": "1.5.4",
            "ecosystem": "npm"
          },
          {
            "name": "rfdc",
            "direct": false,
            "version": "1.4.1",
            "ecosystem": "npm"
          },
          {
            "name": "rimraf",
            "direct": false,
            "version": "3.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "rolldown",
            "direct": false,
            "version": "1.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "rolldown-plugin-dts",
            "direct": false,
            "version": "0.25.0",
            "ecosystem": "npm"
          },
          {
            "name": "rollup",
            "direct": false,
            "version": "4.60.3",
            "ecosystem": "npm"
          },
          {
            "name": "safe-execa",
            "direct": false,
            "version": "0.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "safer-buffer",
            "direct": false,
            "version": "2.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "search-insights",
            "direct": false,
            "version": "2.17.3",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "6.3.1",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "7.7.4",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "^6.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "semver",
            "direct": false,
            "version": "^7.6.0",
            "ecosystem": "npm"
          },
          {
            "name": "shared",
            "direct": false,
            "version": "*",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-command",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shebang-regex",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "shiki",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "siginfo",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "3.0.7",
            "ecosystem": "npm"
          },
          {
            "name": "signal-exit",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "sigstore",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "slice-ansi",
            "direct": false,
            "version": "7.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "slice-ansi",
            "direct": false,
            "version": "8.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "smart-buffer",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "socks",
            "direct": false,
            "version": "2.8.8",
            "ecosystem": "npm"
          },
          {
            "name": "socks-proxy-agent",
            "direct": false,
            "version": "8.0.5",
            "ecosystem": "npm"
          },
          {
            "name": "sort-keys",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "source-map",
            "direct": false,
            "version": "0.6.1",
            "ecosystem": "npm"
          },
          {
            "name": "source-map-js",
            "direct": false,
            "version": "1.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "space-separated-tokens",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-exceptions",
            "direct": false,
            "version": "2.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-expression-parse",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "spdx-license-ids",
            "direct": false,
            "version": "3.0.23",
            "ecosystem": "npm"
          },
          {
            "name": "speakingurl",
            "direct": false,
            "version": "14.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "split2",
            "direct": false,
            "version": "4.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "ssri",
            "direct": false,
            "version": "13.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "stackback",
            "direct": false,
            "version": "0.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "std-env",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "streamx",
            "direct": false,
            "version": "2.25.0",
            "ecosystem": "npm"
          },
          {
            "name": "string-argv",
            "direct": false,
            "version": "0.3.2",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "string-width",
            "direct": false,
            "version": "8.2.1",
            "ecosystem": "npm"
          },
          {
            "name": "stringify-entities",
            "direct": false,
            "version": "4.0.4",
            "ecosystem": "npm"
          },
          {
            "name": "strip-ansi",
            "direct": false,
            "version": "7.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-bom",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "strip-final-newline",
            "direct": false,
            "version": "2.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "superjson",
            "direct": false,
            "version": "2.2.6",
            "ecosystem": "npm"
          },
          {
            "name": "tabbable",
            "direct": false,
            "version": "6.4.0",
            "ecosystem": "npm"
          },
          {
            "name": "tar",
            "direct": false,
            "version": "7.5.15",
            "ecosystem": "npm"
          },
          {
            "name": "tar-stream",
            "direct": false,
            "version": "3.2.0",
            "ecosystem": "npm"
          },
          {
            "name": "teex",
            "direct": false,
            "version": "1.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "text-decoder",
            "direct": false,
            "version": "1.2.7",
            "ecosystem": "npm"
          },
          {
            "name": "tinybench",
            "direct": false,
            "version": "2.9.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinyexec",
            "direct": false,
            "version": "1.1.2",
            "ecosystem": "npm"
          },
          {
            "name": "tinyglobby",
            "direct": false,
            "version": "0.2.16",
            "ecosystem": "npm"
          },
          {
            "name": "tinypool",
            "direct": false,
            "version": "2.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "tinyrainbow",
            "direct": false,
            "version": "3.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "tree-kill",
            "direct": false,
            "version": "1.2.2",
            "ecosystem": "npm"
          },
          {
            "name": "treeverse",
            "direct": false,
            "version": "3.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "trim-lines",
            "direct": false,
            "version": "3.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "tsdown",
            "direct": false,
            "version": "0.22.0",
            "ecosystem": "npm"
          },
          {
            "name": "tslib",
            "direct": false,
            "version": "2.8.1",
            "ecosystem": "npm"
          },
          {
            "name": "tuf-js",
            "direct": false,
            "version": "4.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "typescript",
            "direct": false,
            "version": "6.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "unconfig-core",
            "direct": false,
            "version": "7.5.0",
            "ecosystem": "npm"
          },
          {
            "name": "undici",
            "direct": false,
            "version": "6.25.0",
            "ecosystem": "npm"
          },
          {
            "name": "undici-types",
            "direct": false,
            "version": "7.21.0",
            "ecosystem": "npm"
          },
          {
            "name": "unist-util-is",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "unist-util-position",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "unist-util-stringify-position",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "unist-util-visit",
            "direct": false,
            "version": "5.1.0",
            "ecosystem": "npm"
          },
          {
            "name": "unist-util-visit-parents",
            "direct": false,
            "version": "6.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "universalify",
            "direct": false,
            "version": "2.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "util-deprecate",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "utils",
            "direct": false,
            "version": "*",
            "ecosystem": "npm"
          },
          {
            "name": "validate-npm-package-name",
            "direct": false,
            "version": "7.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "vfile",
            "direct": false,
            "version": "6.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "vfile-message",
            "direct": false,
            "version": "4.0.3",
            "ecosystem": "npm"
          },
          {
            "name": "vite",
            "direct": false,
            "version": "5.4.21",
            "ecosystem": "npm"
          },
          {
            "name": "vite",
            "direct": false,
            "version": "8.0.12",
            "ecosystem": "npm"
          },
          {
            "name": "vitepress",
            "direct": false,
            "version": "1.6.4",
            "ecosystem": "npm"
          },
          {
            "name": "vitest",
            "direct": false,
            "version": "4.1.6",
            "ecosystem": "npm"
          },
          {
            "name": "vue",
            "direct": false,
            "version": "3.5.34",
            "ecosystem": "npm"
          },
          {
            "name": "walk-up-path",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "2.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "which",
            "direct": false,
            "version": "6.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "why-is-node-running",
            "direct": false,
            "version": "2.3.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "10.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "wrap-ansi",
            "direct": false,
            "version": "9.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "wrappy",
            "direct": false,
            "version": "1.0.2",
            "ecosystem": "npm"
          },
          {
            "name": "write-file-atomic",
            "direct": false,
            "version": "5.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "write-file-atomic",
            "direct": false,
            "version": "7.0.1",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "4.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "yallist",
            "direct": false,
            "version": "5.0.0",
            "ecosystem": "npm"
          },
          {
            "name": "zwitch",
            "direct": false,
            "version": "2.0.4",
            "ecosystem": "npm"
          }
        ],
        "collected": true,
        "truncated": false,
        "total_count": 585,
        "direct_count": 21,
        "indirect_count": 564
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 86,
        "open_issues": 1,
        "closed_ratio": 0.99,
        "closed_issues": 95,
        "closed_unmerged_prs": 13
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "0x80",
          "commits": 218,
          "avatar_url": "https://avatars.githubusercontent.com/u/1193520?v=4"
        },
        {
          "type": "User",
          "login": "ottob",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/67104?v=4"
        },
        {
          "type": "User",
          "login": "vajahath",
          "commits": 2,
          "avatar_url": "https://avatars.githubusercontent.com/u/12165822?v=4"
        },
        {
          "type": "User",
          "login": "barryShevlin",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/162778112?v=4"
        },
        {
          "type": "User",
          "login": "harveylee",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/5846733?v=4"
        },
        {
          "type": "User",
          "login": "jieey1140",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/85172908?v=4"
        },
        {
          "type": "User",
          "login": "hjellek",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/1640160?v=4"
        },
        {
          "type": "User",
          "login": "laurence79",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/8775228?v=4"
        },
        {
          "type": "User",
          "login": "jack1323",
          "commits": 1,
          "avatar_url": "https://avatars.githubusercontent.com/u/14366054?v=4"
        }
      ],
      "contributors_sampled": 9,
      "top_contributor_share": 0.956
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "checks.yml",
        "docs.yml",
        "publish.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [],
      "has_editorconfig": true,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "package-lock.json",
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 3,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/30 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 6,
            "reason": "project has 2 contributing companies or organizations -- score normalized to 6",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "19 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "17 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "f1c29f98dd2f8319f0104d1fe7a7007ba7825ca7",
        "ran_at": "2026-07-22T11:54:13Z",
        "aggregate_score": 4,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-17T11:48:05Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-17T11:38:34Z",
      "ci_last_conclusion": null,
      "oldest_open_issues": [
        {
          "number": 160,
          "created_at": "2026-02-19T10:22:07Z",
          "last_comment_at": null,
          "last_comment_author": null
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/0x80/isolate-package",
    "host": "github.com",
    "name": "isolate-package",
    "owner": "0x80"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 68,
      "inputs": {
        "security": 52,
        "vitality": 84,
        "community": 59,
        "governance": 64,
        "engineering": 74
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 84,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 73,
            "inputs": {
              "commits_last_year": 63,
              "human_commit_share": 0.86,
              "days_since_last_push": 5,
              "active_weeks_last_year": 16
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 5 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 5
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "16/52 weeks with commits",
                "points": 11.1,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 16
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "63 commits in the last year",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 63
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "19 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 42,
              "latest_release_tag": "v1.35.1",
              "releases_from_tags": false,
              "days_since_latest_release": 5,
              "mean_days_between_releases": 13.1
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "42 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 42
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 5 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 5
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~13.1 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 13.1
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 5,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 5 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 5
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 59,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "moderate",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 51,
            "inputs": {
              "forks": 22,
              "stars": 192,
              "watchers": 5,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "192 stars",
                "points": 37,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 192
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "22 forks",
                "points": 11,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 22
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "5 watchers",
                "points": 3.3,
                "status": "partial",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 5
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "moderate",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 50,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": false,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (MIT)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "MIT"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "excellent",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 86,
            "inputs": {
              "packages": [
                "isolate-package"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 140265
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "140,265 downloads/month across npm",
                "points": 68.6,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 140265,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 64,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 28,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 9,
              "top_contributor_share": 0.956
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 96% of commits",
                "points": 1,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 96
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "9 contributors",
                "points": 12.2,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 9
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 80,
            "inputs": {
              "merged_prs": 86,
              "open_issues": 1,
              "closed_issues": 95,
              "issue_closed_ratio": 0.99,
              "closed_unmerged_prs": 13
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "99% of issues closed",
                "points": 46.3,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 99
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "86/99 decided PRs merged",
                "points": 33.2,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 86,
                      "decided": 99
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 61,
            "inputs": {
              "followers": 99,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "0x80",
              "public_repos": 45,
              "account_age_days": 5363
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "99 followers of 0x80",
                "points": 14.4,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 99,
                      "login": "0x80"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "45 public repos, account ~14 yr old",
                "points": 24.1,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 45
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 14
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "isolate-package"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 5
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 5 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 5
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "145 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 145
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 74,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 74,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": true,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "3 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 6.4,
                "status": "met",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "good",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 75,
            "inputs": {
              "topics": [
                "ci",
                "deploy",
                "firebase",
                "isolate",
                "monorepo",
                "npm",
                "package",
                "pnpm",
                "workspace",
                "yarn"
              ],
              "has_wiki": false,
              "homepage": null,
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "10 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 10
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 52,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 40,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 17,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 1,
              "scorecard_aggregate": 4
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 2.2,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "22 out of 22 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/30 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 2 contributing companies or organizations -- score normalized to 6",
                "points": 1.5,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "19 commit(s) and 7 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "17 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): Indirect dependencies free of known advisories, No advisories left outstanding. Remaining weights renormalized. Matched 579 resolved dependencies against OSV; 6 could not be assessed (no resolved version, an unsupported ecosystem, or beyond the reported package list). This repository publishes no package the index resolves, so the repository dependency graph was assessed instead. That graph mixes development and test pins with shipped dependencies, so only the declared runtime dependencies are scored; transitive findings are reported as context and excluded from the score. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "indirect_dependencies_free_of_known_advisories",
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_repository",
                "params": {
                  "assessed": 579
                }
              },
              {
                "code": "advisories_unassessed",
                "params": {
                  "count": 6
                }
              },
              {
                "code": "advisories_repo_graph_caveat",
                "params": {}
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 20,
              "affected_packages": 10,
              "assessed_packages": 579,
              "unassessed_packages": 6,
              "affected_by_severity": "high 7, moderate 3",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "transitive set not separable from development and test dependencies in this scope",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_scope_not_separable",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 579,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 13
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 72,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "good",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 82,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.698,
              "agent_instruction_files": [
                ".claude/CLAUDE.md",
                "AGENTS.md"
              ],
              "agent_instruction_max_bytes": 7680
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".claude/CLAUDE.md, AGENTS.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".claude/CLAUDE.md, AGENTS.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "60 of 86 human commits state their intent (structured subject or explanatory body)",
                "points": 37.2,
                "status": "partial",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 60,
                      "sampled": 86
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 53,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "package-lock.json",
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "tsconfig.json"
              ],
              "agent_commit_share": 0.07,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "7 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 7,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 30770,
              "source_files_sampled": 96,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/96 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 96,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "deps.dev does not index npm:isolate-package@1.35.1; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-22T11:54:32.561584Z",
  "schema_version": "0.26.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/0/0x80/isolate-package.svg",
  "full_name": "0x80/isolate-package",
  "license_state": "standard",
  "license_spdx": "MIT"
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.26.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计npm.