公开记录
软件健康报告模式 0.23.0 · 指标 1.13.0 · 2026-07-21 18:38 UTC

CoderLambert / filevista

React file viewer for PDF, DOCX, PPTX, XLSX, EPUB, Markdown, code and media—20+ formats, rendered entirely in the browser.

TypeScript · CSSLGPL-3.0★ 1 星标⑂ 0 复刻始于 2026年6月在 GitHub 上查看 ↗

CoderLambert/filevista 的健康指数为 100 分中的 57 分,处于「中等」区间。 其得分最高的类别是Engineering Quality(79/100),最低的是Security(28/100)。 最近一次更新在 4 天前。 近期的大部分工作由 1 位贡献者完成。

57
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

57
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

CoderLambert个人账户
7 关注者151 个公开仓库始于 2017年3月

该仓库由个人账户拥有。相较于组织支持的项目,单一所有者项目的延续性风险更高。

软件包生态系统

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

76良好 · 占总体的 22%
评分方式
36/36推送新近度 — 最近一次推送于 4 天前
5.5/36提交节奏 — 52 周中有 8 周有提交
18/18提交量 — 最近一年 234 次提交
0/10OpenSSF Scorecard:Maintained — project was created within the last 90 days. Please review its contents carefully
所用输入
commits_last_year234
human_commit_share0.86
days_since_last_push4
active_weeks_last_year8

发布纪律

100优秀
评分方式
27/27有发布版本 — 已发布 18 个发布版本
36/36发布时效 — 最近一次发布版本于 4 天前
27/27发布节奏 — 约每 0.8 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — 无数据
所用输入
releases_count18
latest_release_tag@lamberl-lee/file-preview@0.8.0
releases_from_tags
days_since_latest_release4
mean_days_between_releases0.8
已排除计分(无数据或不适用):OpenSSF Scorecard:Signed-Releases。 其余权重已重新归一化。

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

39存在风险 · 占总体的 18%
评分方式
0/60星标 — 1 个星标
0/25复刻 — 0 个复刻
0/15关注者 — 0 位关注者
所用输入
forks0
stars1
watchers0
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonbelow_threshold

社区健康

70良好
评分方式
22.5/22.5README
22.5/22.5许可证 — 可识别的许可证(LGPL-3.0)
18/18CONTRIBUTING 指南
0/13.5行为准则
0/7.2议题模板
0/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template
评分方式
45.9/80月度下载量 — npm 合计每月 2,746 次下载
0/20注册表被依赖数 — 该生态系统不报告此项
所用输入
packages@lamberl-lee/file-preview
dependents
ecosystemsnpm
total_downloads
monthly_downloads2,746
已排除计分(无数据或不适用):注册表被依赖数。 其余权重已重新归一化。

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

54中等 · 占总体的 24%
评分方式
9/54巴士系数 — 1 位贡献者贡献了半数提交
0/22.5提交分布 — 头号贡献者编写了 100% 的提交
1.4/13.5贡献者广度 — 1 位贡献者
0/10OpenSSF Scorecard:Contributors — project has 0 contributing companies or organizations -- score normalized to 0
所用输入
bus_factor1
contributors_sampled1
top_contributor_share1
评分方式
0/46.8议题解决 — 没有议题或无数据
38.2/38.3PR 接受 — 已裁定的 PR 中 19/19 已合并
0/15OpenSSF Scorecard:Code-Review — Found 0/16 approved changesets -- score normalized to 0
所用输入
merged_prs19
open_issues0
closed_issues0
issue_closed_ratio
closed_unmerged_prs0
已排除计分(无数据或不适用):议题解决。 其余权重已重新归一化。
评分方式
10/30所有权背书 — 个人(用户)账户
0/20已验证域名 — 不适用于个人账户
6.5/25所有者影响力 — CoderLambert 有 7 位关注者
25/25既往记录 — 151 个公开仓库,账户约 9 年
所用输入
followers7
owner_typeUser
is_verified
owner_loginCoderLambert
public_repos151
account_age_days3,410
已排除计分(无数据或不适用):已验证域名。 其余权重已重新归一化。
评分方式
25/25已发布且可解析 — npm 上有 1 个软件包
35/35发布时效 — 最近一次发布于 4 天前
20/20版本历史 — 19 个已发布版本
20/20未被弃用 — 活跃,未被弃用或撤回
所用输入
packages@lamberl-lee/file-preview
ecosystemsnpm
any_deprecated
min_days_since_publish4

工程质量

基础的工程与文档实践是否到位?

79良好 · 占总体的 20%

工程实践

72良好
评分方式
24/24CI 工作流 — 3 个工作流
24/24存在测试
16/16Linter 配置 — eslint.config.mjs
0/9.6Pre-commit 钩子
0/6.4.editorconfig
8/20OpenSSF Scorecard:CI-Tests — 6 out of 13 merged PRs checked by a CI test -- score normalized to 4
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config

文档

90优秀
评分方式
30/30README
25/25文档目录
15/15文档 / 主页站点 — https://coderlambert.github.io/filevista/
10/10仓库描述
10/10主题标签 — 17 个主题标签
0/10Wiki
所用输入
topicsbrowser-only, client-side, document-preview, document-viewer, docx, epub, file-preview, file-viewer, office-viewer, pdf-viewer, plugin-system, pptx, privacy, react, react-file-viewer, typescript, xlsx
has_wiki
homepagehttps://coderlambert.github.io/filevista/
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

28危急 · 占总体的 16%

安全态势

28危急
评分方式
7.5/7.5Binary-Artifacts — no binaries found in the repo
0/7.5Branch-Protection — branch protection not enabled on development/release branches
1/2.5CI-Tests — 6 out of 13 merged PRs checked by a CI test -- score normalized to 4
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
0/7.5Code-Review — Found 0/16 approved changesets -- score normalized to 0
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
0/7.5Dependency-Update-Tool — no update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5许可证 — license file detected
0/7.5Maintained — project was created within the last 90 days. Please review its contents carefully
0/5Packaging — 无数据
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
5/5Security-Policy — security policy file detected
0/7.5Signed-Releases — 无数据
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 12 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated16
scorecard_versionv5.5.0
checks_inconclusive2
scorecard_aggregate2.8
已排除计分(无数据或不适用):packaging, signed_releases。 其余权重已重新归一化。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

78良好 · 占总体的 0%
评分方式
45/45代理指令 — CLAUDE.md
0/15机器可读文档(llms.txt)
40/40可读的提交历史 — 86 次人类提交中有 86 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share1
agent_instruction_filesCLAUDE.md
agent_instruction_max_bytes7,117
评分方式
0/18一条命令的引导启动
22/22自动化测试
11/11Lint / 格式化配置 — eslint.config.mjs
11/11静态类型检查 — apps/playground/tsconfig.json, packages/file-preview/tsconfig.json
10/10可复现环境 — Dockerfile, lockfile
10/10已体现的代理实践 — 最近 100 次提交中有 36 次由代理编写或署名代理
0/8自动化维护 — 未观察到自动依赖更新
0/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
所用输入
has_nix
has_tests
lockfilespnpm-lock.yaml
has_dockerfile
typed_language
bootstrap_files
has_devcontainer
has_linter_config
typecheck_configsapps/playground/tsconfig.json, packages/file-preview/tsconfig.json
agent_commit_share0.36
toolchain_manifests
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — TypeScript(静态类型)
55/55可控的文件大小 — 采样的 190 个源文件中有 0 个超过 60KB
所用输入
primary_languageTypeScript
largest_source_bytes30,078
source_files_sampled190
oversized_source_files0

关键数据

1GitHub 星标
1贡献者
234最近 12 个月提交数
4距最近推送天数
18发布版本数
1巴士系数(bus factor)
0开放议题
npm软件包生态系统数

数据采集警告

  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository
  • deps.dev does not index npm:@lamberl-lee/file-preview@0.8.0; advisories assessed against the repository dependency graph instead

更多细节

OpenSSF Scorecard 2.8 / 10
2.8综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-21 18:37 UTC

10Binary-Artifactsno binaries found in the repo
0Branch-Protectionbranch protection not enabled on development/release branches
4CI-Tests6 out of 13 merged PRs checked by a CI test -- score normalized to 4
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
0Code-ReviewFound 0/16 approved changesets -- score normalized to 0
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
0Dependency-Update-Toolno update tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
0Maintainedproject was created within the last 90 days. Please review its contents carefully
不适用Packagingpackaging workflow not detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
10Security-Policysecurity policy file detected
不适用Signed-Releasesno releases found
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities12 existing vulnerabilities detected
直接依赖 50
注册表软件包版本约束清单文件
npm@lamberl-lee/file-previewworkspace:*apps/playground/package.json
npm@radix-ui/react-accordion^1.2.11apps/playground/package.json
npm@radix-ui/react-alert-dialog^1.1.14apps/playground/package.json
npm@radix-ui/react-aspect-ratio^1.1.7apps/playground/package.json
npm@radix-ui/react-avatar^1.1.10apps/playground/package.json
npm@radix-ui/react-checkbox^1.3.2apps/playground/package.json
npm@radix-ui/react-collapsible^1.1.11apps/playground/package.json
npm@radix-ui/react-context-menu^2.2.15apps/playground/package.json
npm@radix-ui/react-dialog^1.1.14apps/playground/package.json
npm@radix-ui/react-dropdown-menu^2.1.15apps/playground/package.json
npm@radix-ui/react-hover-card^1.1.14apps/playground/package.json
npm@radix-ui/react-label^2.1.7apps/playground/package.json
npm@radix-ui/react-menubar^1.1.15apps/playground/package.json
npm@radix-ui/react-navigation-menu^1.2.13apps/playground/package.json
npm@radix-ui/react-popover^1.1.14apps/playground/package.json
npm@radix-ui/react-progress^1.1.7apps/playground/package.json
npm@radix-ui/react-radio-group^1.3.7apps/playground/package.json
npm@radix-ui/react-scroll-area^1.2.9apps/playground/package.json
npm@radix-ui/react-select^2.2.5apps/playground/package.json
npm@radix-ui/react-separator^1.1.7apps/playground/package.json
npm@radix-ui/react-slider^1.3.5apps/playground/package.json
npm@radix-ui/react-slot^1.2.3apps/playground/package.json
npm@radix-ui/react-switch^1.2.5apps/playground/package.json
npm@radix-ui/react-tabs^1.1.12apps/playground/package.json
npm@radix-ui/react-toast^1.2.14apps/playground/package.json
npm@radix-ui/react-toggle^1.1.9apps/playground/package.json
npm@radix-ui/react-toggle-group^1.1.10apps/playground/package.json
npm@radix-ui/react-tooltip^1.2.7apps/playground/package.json
npm@tailwindcss/typography^0.5.19apps/playground/package.json
npmclass-variance-authority^0.7.1apps/playground/package.json
npmclsx^2.1.1apps/playground/package.json
npmdocx-preview^0.3.7apps/playground/package.json
npmexceljs^4.4.0apps/playground/package.json
npmjszip^3.10.1apps/playground/package.json
npmlucide-react^0.525.0apps/playground/package.json
npmnext^16.1.1apps/playground/package.json
npmnext-themes^0.4.6apps/playground/package.json
npmpdfjs-dist4.4.168apps/playground/package.json
npm@aiden0z/pptx-renderer^1.2.0apps/playground/package.json
npmreact^19.0.0apps/playground/package.json
npmreact-dom^19.0.0apps/playground/package.json
npmrtf.js^3.0.9apps/playground/package.json
npmsharp^0.34.3apps/playground/package.json
npmsonner^2.0.6apps/playground/package.json
npmtailwind-merge^3.3.1apps/playground/package.json
npmtailwindcss-animate^1.0.7apps/playground/package.json
npmdompurify^3.4.8packages/file-preview/package.json
npmreact-markdown^10.1.0packages/file-preview/package.json
npmremark-gfm^4.0.1packages/file-preview/package.json
npmshiki^4.1.0packages/file-preview/package.json
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [
        "browser-only",
        "client-side",
        "document-preview",
        "document-viewer",
        "docx",
        "epub",
        "file-preview",
        "file-viewer",
        "office-viewer",
        "pdf-viewer",
        "plugin-system",
        "pptx",
        "privacy",
        "react",
        "react-file-viewer",
        "typescript",
        "xlsx"
      ],
      "is_fork": false,
      "size_kb": 33511,
      "has_wiki": false,
      "homepage": "https://coderlambert.github.io/filevista/",
      "languages": {
        "CSS": 97848,
        "HTML": 22101,
        "Shell": 19291,
        "Dockerfile": 3535,
        "JavaScript": 9928,
        "TypeScript": 654781
      },
      "pushed_at": "2026-07-17T01:47:59Z",
      "created_at": "2026-06-02T05:59:21Z",
      "owner_type": "User",
      "updated_at": "2026-07-20T01:19:06Z",
      "description": "React file viewer for PDF, DOCX, PPTX, XLSX, EPUB, Markdown, code and media—20+ formats, rendered entirely in the browser.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "LGPL-3.0",
      "default_branch": "main",
      "license_spdx_raw": "LGPL-3.0",
      "primary_language": "TypeScript",
      "significant_languages": [
        "TypeScript",
        "CSS"
      ]
    },
    "owner": {
      "blog": null,
      "name": null,
      "type": "User",
      "login": "CoderLambert",
      "company": null,
      "location": null,
      "followers": 7,
      "avatar_url": "https://avatars.githubusercontent.com/u/26545933?v=4",
      "created_at": "2017-03-20T13:44:28Z",
      "is_verified": null,
      "public_repos": 151,
      "account_age_days": 3410
    },
    "license": {
      "state": "standard",
      "spdx_id": "LGPL-3.0",
      "raw_spdx": "LGPL-3.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "@lamberl-lee/file-preview@0.8.0",
          "kind": "other",
          "published_at": "2026-07-17T01:47:59Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.10",
          "kind": "other",
          "published_at": "2026-07-13T08:40:47Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.9",
          "kind": "other",
          "published_at": "2026-07-13T06:36:59Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.8",
          "kind": "other",
          "published_at": "2026-07-13T06:18:35Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.7",
          "kind": "other",
          "published_at": "2026-07-13T02:58:37Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.6",
          "kind": "other",
          "published_at": "2026-07-13T02:23:55Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.5",
          "kind": "other",
          "published_at": "2026-07-13T01:53:50Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.4",
          "kind": "other",
          "published_at": "2026-07-10T09:32:21Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.3",
          "kind": "other",
          "published_at": "2026-07-10T09:02:48Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.2",
          "kind": "other",
          "published_at": "2026-07-10T02:44:47Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.1",
          "kind": "other",
          "published_at": "2026-07-08T05:47:16Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.7.0",
          "kind": "other",
          "published_at": "2026-07-07T06:48:04Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.6.1",
          "kind": "other",
          "published_at": "2026-07-07T01:28:02Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.6.0",
          "kind": "other",
          "published_at": "2026-07-06T07:05:53Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.5.1",
          "kind": "other",
          "published_at": "2026-07-06T05:44:14Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.5.0",
          "kind": "other",
          "published_at": "2026-07-06T03:42:02Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.4.0",
          "kind": "other",
          "published_at": "2026-06-22T10:26:18Z"
        },
        {
          "tag": "@lamberl-lee/file-preview@0.3.0",
          "kind": "other",
          "published_at": "2026-06-17T08:41:41Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "390fa7178036a50896bb9b3eeaa42e86837e88f8",
          "body": "Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(release): version packages (#19)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-17T01:46:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "942048ec8d469848e38318c3c099189e8c254967",
          "body": "Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: add changeset for PPTX toolbar segmented control (minor)",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-17T01:39:06Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "389b7f0726baaef776092243a25bd2421e85f5ce",
          "body": "Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: add change record for PPTX toolbar segmented control redesign",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-17T01:37:11Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2f2c932052d7c94b047cd40852f273822654a151",
          "body": "…ntrol\n\nReplace the icon-only view-mode toggle with a labeled segmented control\ncentered in the toolbar. Slide navigation moves to the left next to the\npage counter and stays hidden in grid view to reduce visual clutter.\n\n- Replace Grid3X3Icon with LayoutGridIcon for the grid view button\n- Add previ\n[…]\nicon-only layout at <=420px\n- Update lifecycle test to select the grid toggle by data-active='false'\n  instead of the localized title attribute\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(file-preview): redesign PPTX toolbar with segmented view-mode co…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-17T01:36:18Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4b36780c2bc464c60a475637d9daf1e41cc6ac39",
          "body": "Release @lamberl-lee/file-preview 0.7.10 with improved npm discoverability and onboarding metadata.",
          "is_bot": true,
          "headline": "chore(release): version packages (#17)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-13T08:39:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bafbb355785973338eebe7dd26c1689c4077aeef",
          "body": "Upgrade configure, upload, and deploy Pages actions to their Node 24-compatible major versions.",
          "is_bot": false,
          "headline": "ci: upgrade GitHub Pages actions to Node 24 (#18)",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-13T08:35:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1d72b2c2c4946156d59f571d63ea19152ab3dc45",
          "body": "Improve repository and npm discoverability, add bilingual onboarding and community metadata, and upgrade GitHub Actions to Node 24 runtimes.",
          "is_bot": false,
          "headline": "docs: improve GitHub and npm discoverability (#16)",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-13T08:24:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c671b5d81323e8493d3703c9ab1f53041e29b5ff",
          "body": "Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(release): version packages (#15)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-13T06:35:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cedc68a2c6d78f8827350b4f32a151652b9ce3ce",
          "body": "Co-authored-by: lambert.li <lambert.li@jtexpress.com>",
          "is_bot": false,
          "headline": "fix(file-preview): portal XLSX comment tooltips (#14)",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-13T06:34:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3e63587875e87e86fd0023090a807decfe069da6",
          "body": "Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>",
          "is_bot": true,
          "headline": "chore(release): version packages (#13)",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-13T06:17:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5dd8d450b87c600bb96a7dd24d05390533ae3f85",
          "body": "Co-authored-by: lambert.li <lambert.li@jtexpress.com>",
          "is_bot": false,
          "headline": "fix(file-preview): correct XLSX comment tooltip positioning (#12)",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-13T06:14:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1feed9aec77d4ddcd1facf089f71e3513ab25bb3",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #11 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-13T02:57:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "513651afe39fa1bb41990f8318330b1a9ba0f6c0",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-13T02:55:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "00fe0a9a7474d5a979e23dbabc92ec9469b1df09",
          "body": null,
          "is_bot": false,
          "headline": "fix(file-preview): remove unstable XLSX canvas renderer",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-13T02:54:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e04230e55e5d78a3e248bcb9047e079c17def14b",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #10 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-13T02:22:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "05ba3f77c0e4b6eec6fc4979721388234bba25ac",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-13T02:21:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d6b1292828c50e40c3faaa43e4a250b6e83e10b8",
          "body": null,
          "is_bot": false,
          "headline": "fix(file-preview): stabilize XLSX renderer scrolling",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-13T02:20:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c6f9f5b6770ffad3498fa48a05203267d826326a",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #9 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-13T01:52:44Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8de8a76840c20e81e4f88a15209ad082b9f05049",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-13T01:51:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0fb01ac42a0666b46ac7ab736b61000e0d11df08",
          "body": null,
          "is_bot": false,
          "headline": "chore(release): add XLSX compatibility changeset",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-13T01:48:28Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e9b8a777444421594fc269e8654e3a58bacc1f83",
          "body": null,
          "is_bot": false,
          "headline": "fix(file-preview): improve XLSX preview compatibility",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-13T01:48:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "70e8e4aee603ea4b654f885885420899b1402cc9",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "chore(release): version packages (#8)",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-10T09:31:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dd9f0d034b36ade6df18df7158c7e429942d45ca",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-10T09:23:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7f08aff8cf9239eb2d5acb64b0e2357ddfa246bc",
          "body": null,
          "is_bot": false,
          "headline": "fix(file-preview): harden XLSX comment fallback",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-10T09:22:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b17e07d410c6ae07514415f17433344bd0cc943a",
          "body": "Release @lamberl-lee/file-preview@0.7.3",
          "is_bot": false,
          "headline": "chore(release): version packages (#7)",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-10T09:01:43Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "872f90b42ab5051fec0e6452699f07be24833e29",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-10T08:59:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0b71cf7b8d85d99d364d8ab6f9e9c6c7973e1e70",
          "body": null,
          "is_bot": false,
          "headline": "chore(changeset): release XLSX comment compatibility",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-10T08:58:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "883a8a706fde4cf278cadcf54e3b557c9a49146a",
          "body": null,
          "is_bot": false,
          "headline": "fix(file-preview): support nonstandard XLSX comments",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-10T08:47:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dcd7914fd812599a97c1c33b64e4543bf16b10c4",
          "body": null,
          "is_bot": false,
          "headline": "fix(file-preview): fit fixed-canvas HTML previews",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-10T02:43:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "419fd14d53aa9b36e2cf62719f55b62cadda8dd5",
          "body": null,
          "is_bot": false,
          "headline": "fix(file-preview): improve PDF zoom rendering",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-08T05:42:40Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "58d0ec23927e537a70318445eba492d604c8961d",
          "body": null,
          "is_bot": false,
          "headline": "feat(file-preview): add HTML full preview confirmation",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-07T06:46:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8a7fb2b28d3c44277f397f10651712590b3a5fbd",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #6 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-07T01:26:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e4374ee7b6509698c80f11c73b4f053900e4cfdb",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-07T01:26:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "966083b240792211fade80ceed0c37aae901cfcb",
          "body": "Toggling HtmlPreview's securityMode updated the iframe `sandbox`\nattribute but left `src` unchanged, so the browser did not reload\nthe iframe content — the new sandbox policy was never actually\napplied. In `safe → trusted`, scripts stayed blocked; in the\nreverse direction, already-running scripts ke\n[…]\nrender the iframe\nonly after `blobUrl` is set (the blob URL effect runs after the\nfirst paint), instead of passing `src=\"\"` on the first frame.\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(file-preview): reload HTML iframe on securityMode toggle",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-07T01:25:37Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4ec25ff411b2202e092cd13127df2920d082729c",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #5 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-06T07:04:46Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e25882f750afd7ce6bf6abae781fdd20ff0ae814",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-06T07:01:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5c48b0b3a20c3ab7c5ed27d6dbddc751a7b7f26f",
          "body": "…ge-file gate\n\nBuild a FileInfo for a remote URL using metadata the caller already has\n(name + size), so LargeFileGate can apply warning / confirm / block\nthresholds before any network traffic starts. Unlike processRemoteUrl(),\nthis does not fetch — the download happens lazily when a preview plugin\n\n[…]\nonProgress, no built-in 100 MB\nhard cap (caller controls via largeFilePolicy.maxBytes), errors are\nplain Error instead of typed RemoteUrlError.\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(file-preview): add createRemoteFileInfo() for backend-driven lar…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T07:00:34Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "1ac872b7e4dda9deeb260b5d0b86420883170b49",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #4 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-06T05:43:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "02e92e023a2ff9139fa6941a24903db4086dbd22",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-06T05:42:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9bbc85593abaf01f2f09a565f2aeb0850f940e2a",
          "body": "Patch-level changeset covering the blob URL leak fix, ExcelJS ESM interop\nfix, and the new HTML security toggle. Bumps\n@lamberl-lee/file-preview from 0.5.0 → 0.5.1 once the Version Packages PR\nis merged.\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: add changeset for html preview fixes",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T05:41:22Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "2efeba2392b3d23229db59db58f542299e923486",
          "body": "…toggle\n\nThree issues addressed:\n\n1. HtmlPreview leaked blob URLs when `content` changed. The old `useMemo`\n   returned a fresh URL each render but the `useEffect` cleanup ran on\n   `[blobUrl]` so React StrictMode's double-invoke revoked URLs that were\n   still mounted, causing iframe flashes. Switc\n[…]\nwarning banner explains the\n   risk. Three new i18n strings: htmlEnableScripts / htmlDisableScripts /\n   htmlTrustedModeHint (zh-CN and en-US).\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(file-preview): blob URL leak, ExcelJS ESM interop, HTML security …",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T05:41:22Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "33e29710271958e1eb381a1a400f48ef5433f268",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #3 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-07-06T03:41:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9b53e4179bd507aa656d6af4f98640c4c39f7b47",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-07-06T03:26:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "077365161a6084f247f5039cb07899b73a4524f2",
          "body": "Covers the minor bump for the configurable largeFilePolicy API (5f88b11)\nand the patch-level detached-ArrayBuffer fix (14a429f). Changesets bot\nwill open a \"Version Packages\" PR on push to main that bumps\n@lamberl-lee/file-preview from 0.4.0 → 0.5.0 and regenerates CHANGELOG.\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: add changeset for large file policy + detached buffer fix",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T03:25:30Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "188c3e2029237ec7e72da565f2d0fee7e3e90f07",
          "body": "Two demo-app improvements:\n\n1. fetchBinaryDemoFiles previously logged `console.error` and skipped any\n   file under public/demo/ whose head looked like HTML — including the\n   legit `order-detail.html` preview target. HTML now flows through as\n   UTF-8 text (encoding: \"utf8\"), and page.tsx encodes i\n[…]\ns too lax — bumped down to\n   2 MB warn / 3 MB confirm / 5 MB block so users can see all three gate\n   states without needing multi-MB uploads.\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(playground): load HTML demos, tune large-file policy to 2/3/5 MB",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T03:24:45Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "14a429fbcf8cc637450995b206cee0521b3585f5",
          "body": "…fer crash\n\n`readSourceAsArrayBuffer` returned `source.buffer` directly for arrayBuffer\nsources. Downstream consumers (pdf.js via `getDocument({ data })`) transfer\nthe buffer to a Web Worker, which detaches the original ArrayBuffer. A second\nread on the same source — React StrictMode double-invoke, \n[…]\n\nTests cover both the copy semantics and the post-detach re-read path\n(simulates worker transfer via `MessageChannel.postMessage(..., [buf])`).\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(file-preview): copy arrayBuffer source to avoid detached-ArrayBuf…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T03:24:23Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4aeff5b706ecf5939e685a9287704a2a3ccc1996",
          "body": "Records the Stage 18.2 follow-up to the large file gate: configurable\nLargeFilePolicy API, onError/renderLargeFileFallback props, i18n\nexternalization, downloadSource refactor, and bug fixes found in review\n(blockReportedRef dedup, mimeType override, validate Infinity/NaN guard).\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: add change record for configurable large file policy",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T02:51:27Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "5f88b11a8ace971707a9f21411d19aea19fad94d",
          "body": "…r reporting\n\n- Add LargeFilePolicy union type (\"default\" | \"off\" | PreviewSizePolicyConfig)\n  with validatePreviewSizePolicy / resolvePreviewSizePolicy helpers; validator\n  rejects Infinity/NaN and inverted thresholds\n- LargeFileGate accepts policy / onError / renderBlockedFallback props; all\n  UI \n[…]\n pattern and\n  policy-derived UI label (no hardcoded strings to drift)\n- README documents the largeFilePolicy API and user-input safety pattern\n\nCo-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(file-preview): configurable large file policy with i18n and erro…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-07-06T02:50:28Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "e3a86fd25ef39f093fdc12d4b902dd3b49df41c4",
          "body": "…in frontend\n\n- Verify Office demo archives (.xlsx/.docx/.pptx/.epub) are valid\n  ZIP packages during CI build, catching corruption before deploy\n- Detect HTML responses in fetchBinaryDemoFiles to surface path\n  misconfiguration or 404 fallback pages early\n- Log response status/statusText/url on fetch failure for easier\n  debugging",
          "is_bot": false,
          "headline": "fix: add OOXML ZIP integrity check in CI and HTML response detection …",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-23T00:58:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ae43d492d9a44213b9e17c82bb201fe444be1ec5",
          "body": null,
          "is_bot": false,
          "headline": "docs: add change record for Git LFS GitHub Pages fix",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T10:26:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4f486b1004e031ff8abcca138405a2ef936797bb",
          "body": "GitHub Pages deployed LFS pointer files (xlsx, pptx, docx, pdf, epub)\ninstead of actual binaries because actions/checkout@v4 defaults lfs:\nto false. Browsers received the pointer text (200 OK), causing JSZip\n\"Can't find end of central directory\" errors.\n\n- Enable lfs: true in the checkout step\n- Add\n[…]\non step that scans public/demo/ for leftover pointers\n- Add frontend LFS guard in fetchBinaryDemoFiles to skip/raise on\n  pointer content\n- Improve FileReader error handling with explicit reject paths",
          "is_bot": false,
          "headline": "fix: enable Git LFS checkout in GitHub Pages workflow",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T10:25:51Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3a4bbb66eec5d6959bac2746de00d91bdf019b13",
          "body": "Address PPTX review findings (issues 1-10):\n\n- Reset semanticDeck/insight/isModeSwitching at source-mount start to\n  prevent cross-file fallback state bleed.\n- View-mode effect depends only on viewMode via activeViewModeRef,\n  eliminating duplicate render after activeViewMode catches up.\n- Enforce p\n[…]\nPlayground switched to createFullPreviewRegistry.\n- Bump version to 0.4.0; update README with base/full split and\n  migration note; add CHANGELOG entry.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(pptx): harden fallback, isolate root entry, bump to 0.4.0",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T10:24:06Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "2ec80e1b71b96628cdab378807771c4c4ad8c219",
          "body": "Documents the 19 review items addressed across 7 commits — package\nentry split, async lifecycle, error propagation, state consistency,\nfallback ordering and aspect ratio, browser compat, i18n, fallback\nperformance limits, 'use client' rollout, and supporting tests.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: add change record for PPTX review 19-issue fix",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:44:13Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "383262c1b82eceafff4cb9d21965c360d1b67f87",
          "body": null,
          "is_bot": false,
          "headline": "docs: update PPTX dependency info in supported-formats.md",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:42:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2bd7a7ac18fe17267831a9631ae98df3cd58e1b",
          "body": "- order-slides.test.ts: 6 unit tests covering sldIdLst-driven ordering,\n  filename-fallback when sldIdLst/rels are missing, missing slide skip,\n  Target path normalisation, and unknown-rId fallback.\n\n- PptxPreview.lifecycle.test.tsx: 4 jsdom tests using a vi.mock'd\n  @aiden0z/pptx-renderer to verify\n[…]\noes NOT trigger fallback or onError\n  * renderList failure triggers onError (mode rollback path)\n  * onError fires exactly once after fallback completes\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "test(pptx): add lifecycle and order-slides test coverage",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:42:41Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "c6f5e1cac144ef054a230cd4b5bf5670cf08f148",
          "body": "… and hooks\n\nNext.js App Router requires interactive components that use hooks or\nbrowser APIs to be marked as Client Components. Without the directive,\nconsumers importing from @lamberl-lee/file-preview into Server Components\nwould hit a runtime error.\n\nApplies to 42 files: 23 preview components, 16 adapters, and 3 hooks.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: add \"use client\" directive to all client components, adapters,…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:41:34Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "0cdc82d2dc1a74a29802b6b8b149ff8c0b6dbc9a",
          "body": "…ack) and add PPTX fallback limits\n\nP2 fixes:\n- Replace 2 native AbortSignal.throwIfAborted() calls with\n  throwIfAbortedCompat() in core/abort-compat.ts. The native API is not\n  available on Safari before ~15.4 or Chrome before ~100; FileVista\n  targets Chrome 90 / Safari 14 / Firefox 88.\n\n- Add rg\n[…]\nyDesc, pptxFallbackImages,\n  pptxFallbackTextBlocks); zhCN + enUS both populated. Remove the last\n  hard-coded English strings from PptxSummaryFallback.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore: broaden browser compat (throwIfAbortedCompat + color-mix fallb…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:41:05Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3cb27550a9a54a1f38750ac4427ad3157e01714e",
          "body": "… ratio\n\nP1 fixes:\n- New orderSlidesByPresentation() parses p:sldIdLst + presentation.xml.rels\n  to determine the user-visible slide order. PowerPoint does not rename\n  slideN.xml files when slides are reordered, so the previous\n  filename-based sort produced wrong order for edited presentations.\n- \n[…]\nnow render at their correct ratio.\n\n- PptxSemanticFallback i18n: notice strong uses pptxFallbackTitle\n  instead of previewFailed for accurate semantics.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(pptx): order slides by presentation rels and respect slide aspect…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:39:09Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "8bdce0a1dd99537cd532bb969e06e64335f245e0",
          "body": "…e, and error propagation\n\nP0 fixes:\n- openPptxViewer accepts input: ArrayBuffer instead of source — the\n  caller reads the source once and shares the buffer with fallback,\n  preventing double-fetch of URL sources\n- new PptxViewer() + try/catch + destroy() guarantees resource cleanup\n  when PptxView\n[…]\ninPreviewRenderer injects reportError={onError} into adapters\n- PptxPreviewAdapter forwards onError to top-level reportError,\n  wrapping in PreviewError\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(pptx): refactor async lifecycle — single source read, safelyInvok…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:38:06Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4cca5c6fa48b86bf9ac73752fcd3d92bb90e7a4b",
          "body": "BREAKING CHANGE: <PluginPreviewRenderer> now defaults to\ncreateBasePreviewRegistry() instead of createBuiltinPreviewRegistry().\nApps that preview PDF, DOCX, PPTX, XLSX, RTF, ZIP, or EPUB must either\npass an explicit registry or import from @lamberl-lee/file-preview/full.\n\nNew exports:\n- ./full — ful\n[…]\nwRegistry()\n- Root index.ts retains all plugin exports for backward compatibility\n- Playground updated to pass createBuiltinPreviewRegistry() explicitly\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat!: split package entry points into base, full, and plugins/*",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T09:37:22Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "4780c12d790c5481d27ff051be124f3cd59a1736",
          "body": "Co-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs: add change record for PPTX mode-switch and abort fixes",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T08:26:12Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "89140822285efd5913c19f53774c4b3c33927d25",
          "body": "…prove abort handling\n\n1. Main init effect depends only on [source] — viewMode and zoom props\n   are read via refs to avoid re-parsing the entire PPTX when switching\n   between slide/grid modes.\n\n2. Mode switch effect depends only on [viewMode] — removing\n   state.status avoids a redundant renderSli\n[…]\ner in sync.\n\n7. zoomOut/zoomIn use normalized zoomMin/zoomMax boundaries to handle\n   swapped minZoom/maxZoom values correctly, with a dev-mode warning.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(pptx): avoid re-parsing on mode switch, fix double render, and im…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T08:25:43Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3987d452757290d6c33bd154fa20021695b226ab",
          "body": "…bortSignal\n\n- Fix 1+2: Remove JSZip from fallbacks, use parsePptxZip (via\n  @aiden0z/pptx-renderer with RECOMMENDED_ZIP_LIMITS) so fallback\n  code paths cannot bypass PPTX zip security limits\n- Fix 3: Disable mode buttons during loading/isModeSwitching\n- Fix 4: Add modeOperationRef version tracking\n[…]\n 5: Pass AbortController.signal to fallback readSourceAsArrayBuffer\n  and add throwIfAborted() check before safe zip parsing\n- Fix 7: normalizeZoom() clamps resetZoom/initialZoom to [minZoom, maxZoom]",
          "is_bot": false,
          "headline": "fix(pptx): address review — ZIP security, JSZip removal, mode race, A…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T08:14:14Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "2bea681975a2d527420cce906e42a7436a94df6f",
          "body": "resolveAssetPath was called at module scope before setAssetBasePath ran,\ncausing demo file URLs to lack the /filevista base path on GitHub Pages.\nMoved resolution inside fetchBinaryDemoFiles() so it runs at call time,\nafter setAssetBasePath has been initialized.",
          "is_bot": false,
          "headline": "fix: defer resolveAssetPath in demos.ts to fix GitHub Pages demo loading",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T08:02:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fb08b4f31daee0b45d935c1569bab2bed4a21bb5",
          "body": null,
          "is_bot": false,
          "headline": "docs: add change record for PPTX review fixes",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:46:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a35fbe656751907ea7058bc896a2af1f9e3e258a",
          "body": "- Fix zoom overflow clipping: change overflow to auto/visible\n- Scope keyboard listener to preview container, skip form elements\n- Unify onSlideChange callback via engine + callbacksRef\n- Reuse Viewer on mode switch instead of re-parsing PPTX\n- Make source required in PptxPreviewProps, remove content prop\n- Add type=button to all buttons\n- Update README with correct PPTX dependency",
          "is_bot": false,
          "headline": "fix(pptx): address code review feedback",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:46:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e2c59187c748eb2a867f243e21d1e82ca927113b",
          "body": null,
          "is_bot": false,
          "headline": "docs: add change record for PPTX engine replacement",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:27:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f107b431387fd53cc09db9a159f3d0538bb8254f",
          "body": "- Add engines/pptx/pptx-renderer-engine.ts as adapter layer\n- Rewrite PptxPreview.tsx to use PptxViewer.open() API\n- Remove iframe isolation, MutationObserver, manual scaling\n- Support lazy slides/media, windowed list rendering\n- Keep toolbar, keyboard nav, fullscreen, mode switch\n- Remove usePptxFitScale, normalize-preview-model (engine handles scaling)\n- Simplify types and constants",
          "is_bot": false,
          "headline": "feat(pptx): integrate browser-native pptx renderer",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:27:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d349e020cc45f540ccd28d0d02812f2d4b346a3b",
          "body": null,
          "is_bot": false,
          "headline": "chore(pptx): replace pptx-preview with @aiden0z/pptx-renderer",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:26:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "665fce6060c80a1374087d51f9b1a759c194ac10",
          "body": "- Remove NutrientPptxPreviewAdapter and nutrient-pptx-plugin\n- Remove PPTX engine selector UI from playground\n- Remove @nutrient-sdk/viewer dependency and copy script\n- Remove vendor/nutrient/ LFS-tracked assets (216MB)\n- Keep PDF.js and RTF.js vendor assets intact",
          "is_bot": false,
          "headline": "refactor(playground): remove Nutrient Web SDK integration",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:04:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5dcbf9f2871ad7b1a9463a914849a6fad4df2447",
          "body": "…ssets",
          "is_bot": false,
          "headline": "docs: add change record for PPTX iframe refactor and Nutrient local a…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:00:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3ae3ccdcdb5bad6637d4350be674acf0e5be8c52",
          "body": "- Replace useCDN with local baseUrl for Nutrient viewer, respecting\n  NEXT_PUBLIC_BASE_PATH for GitHub Pages deployment\n- Add copy-nutrient-assets.mjs script to vendor SDK files into public/\n- Track vendor assets (216MB WASM, fonts, data) via Git LFS\n- Update copy:vendor-assets script to include Nutrient assets",
          "is_bot": false,
          "headline": "feat(playground): serve Nutrient Web SDK assets locally",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:00:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "11e89b95b4e3eea82c1719e52771919b26f603d0",
          "body": "- Replace direct DOM manipulation with iframe isolation to prevent\n  pptx-preview library styles from leaking into the host page\n- Use MutationObserver to sync rendered content from hidden container\n  into iframe, injecting scoped CSS overrides\n- Redesign toolbar with glassmorphism, better button si\n[…]\nre actual wrap padding, clamp display scale to viewport width\n- Grid mode: disable library height to avoid overflow-y:auto on wrapper\n- Add min-w-0 to flex containers in playground to prevent overflow",
          "is_bot": false,
          "headline": "refactor(pptx): iframe-based rendering with visual redesign",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-22T07:00:09Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "ceb0092cef0627d810cafc22d668509831d3179f",
          "body": "…factor",
          "is_bot": false,
          "headline": "docs: add change record for XLSX pagination, mode dialog, and icon re…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T06:52:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0a87fc7becc3838ab8c9ae6a6d3bb78388e78628",
          "body": "- Change icon() helper from (...children: ReactNode[]) to (children: ReactNode)\n- Remove Children.toArray() wrapper — each icon now passes a single Fragment\n- Eliminates React key warnings and removes 'react' import dependency",
          "is_bot": false,
          "headline": "refactor(icons): simplify icon children to single Fragment",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T06:51:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "83af651361ce5a139cb256cbfd1a4fab43e5f4e9",
          "body": "- Replace MAX_RENDER_ROWS truncation with full pagination (first/prev/next/last\n  controls + configurable page size: 50/100/200/500)\n- Redesign cell image rendering: grid layout, hover effects, size constraints,\n  dimension labels, improved unsupported-format placeholders\n- Add pagination and image-related i18n messages (zhCN + enUS)\n- Add CSS styles for pagination controls and enhanced image wrappers\n- Include test scripts for XLSX image extraction",
          "is_bot": false,
          "headline": "feat(xlsx): add table pagination and enhance cell image rendering",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T06:51:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d03e2b5e33612d3b8c7132a1bece594186bcc1e4",
          "body": "…mits\n\n- Add mode selection dialog that prompts users to choose between fast and\n  fidelity modes when opening large XLSX files\n- Force table renderer for files containing embedded images (spreadsheet\n  renderer does not support images)\n- Increase LARGE_FILE_SIZE threshold from 10 MB to 45 MB\n- Increase MAX_FIDELITY_FILE_SIZE threshold from 30 MB to 50 MB\n- Add i18n messages for mode selection (zhCN + enUS)\n- Add CSS styles for mode selection dialog",
          "is_bot": false,
          "headline": "feat(xlsx): add large file mode selection dialog and increase size li…",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T06:51:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "27b70dff19844391e8202a4633a3b2ecdcd14a07",
          "body": "Documents the LFS setup, demo file migration, auto-generation system\nrefactor, and CSV/RTF preview design documents added in this session.",
          "is_bot": false,
          "headline": "docs: add change record for demo reorganization and preview design",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T04:03:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6e33ee0ff663b52e5993788a5ce586b93df008cc",
          "body": "- Add CSV preview design doc: Papa Parse + Web Worker + TanStack Table/\n  Virtual pipeline with optional DuckDB-WASM for advanced analysis\n- Add RTF rich rendering upgrade plan: rtf.js + DOMPurify + iframe\n  sandbox with text fallback for degraded/complex files\n- Add RTF integration guide summarizing the upgrade path\n- Fix trailing whitespace in stage-17 PRD",
          "is_bot": false,
          "headline": "docs: add CSV and RTF preview design documents",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T04:02:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ac8b23f077ea0b5efee38d0d853b679aaa1d5d86",
          "body": "- Add scripts/sync-demos.mjs that scans public/demo/ and generates\n  demos.generated.ts with file metadata (name, path, MIME type, size)\n- Replace 430+ lines of hardcoded DEMO_FILES in demos.ts with a thin\n  re-export layer; add fetchBinaryDemoFiles() using generated manifest\n- Update page.tsx to load demos solely from the generated manifest\n- Chain sync:demos into dev/build/postinstall so the manifest stays\n  in sync automatically — just drop files into public/demo/",
          "is_bot": false,
          "headline": "refactor(playground): auto-generate demo manifest from directory",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T04:00:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "724cd780445edb7f3a0d1940ac00dc093851b189",
          "body": "- Add .gitattributes with LFS tracking for Office docs, PDF, EPUB, and\n  large images in apps/playground/public/demo/\n- Ignore generated demos.generated.ts in .gitignore\n- Move demo files from upload/ to apps/playground/public/demo/\n- Replace outdated demo samples (RTF, DOCX, XLSX) with new real-world\n  files (PDF, PPTX, XLSX, images)\n- Delete legacy demo files that are no longer representative",
          "is_bot": false,
          "headline": "chore: configure Git LFS and reorganize demo files",
          "author_name": "lambert.li",
          "author_login": null,
          "committed_at": "2026-06-18T04:00:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "522738856a313ad130ab60fe8f2d0a32152537f2",
          "body": "- 集成 @nutrient-sdk/viewer 作为可选的 PPTX 渲染引擎,支持在 playground 中切换\n- 实现 PptxSemanticFallback 组件,在渲染失败时提供基于语义结构的回退显示\n- 改进 PPTX 预览错误恢复机制,增加重试逻辑和 normalizePptxPreviewModel\n- 修复图标组件的 React key 处理,使用 Children.toArray 替代手动克隆",
          "is_bot": false,
          "headline": "feat(pptx): 添加 Nutrient SDK 集成与语义回退系统",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T16:54:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "88e7217d5d5d8f7e203a06c3f750dad8ee97deea",
          "body": "- use cloneElement with index keys to fix React list key warning\n- prevent \"Each child in a list should have a unique key\" error",
          "is_bot": false,
          "headline": "fix(file-preview): add unique keys to SVG icon children",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T15:58:56Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "15ead73bdff0679b5589eb17c483cbbd601708a8",
          "body": "- replace fixed 960x540 + CSS zoom with ResizeObserver-driven transform scale\n- add usePptxFitScale hook supporting contain/cover/width/height/actual/scale-down modes\n- introduce stage/scale-layer/render-container three-layer architecture\n- add PptxSummaryFallback for graceful degradation when high-\n[…]\nodule\n- enforce overflow:hidden in slide mode to eliminate nested scrollbars\n- add CJK font fallback stack for Japanese/Chinese text rendering\n- auto-remount on fullscreen change to recalculate layout",
          "is_bot": false,
          "headline": "feat(file-preview): refactor PPTX preview with fit-to-container scaling",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T15:52:27Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "44e512be298d3342946e09486f54894f5dff8c29",
          "body": "…bust cell formatting\n\n- Add optional x-data-spreadsheet renderer with auto-fallback to HTML table\n- Parse xl/theme/theme1.xml to resolve workbook-specific theme colors\n- Fix theme index mapping (0=lt1, 1=dk1) replacing hardcoded wrong order\n- Fix formatCellValue for richText-inside-hyperlink causin\n[…]\nd/Table) when both renderers available\n- Add 5 new i18n keys for renderer labels in zh-CN and en-US\n- Add x-data-spreadsheet as optional peer dependency\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(excel): enhanced spreadsheet renderer, workbook theme colors, ro…",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T10:12:29Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "9658512ae3c6917f4da2451bbd218785e6307256",
          "body": "chore(release): version packages",
          "is_bot": false,
          "headline": "Merge pull request #2 from CoderLambert/changeset-release/main",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T08:40:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "16e2a05fef66b141915c793b8083f956ccee48ec",
          "body": null,
          "is_bot": true,
          "headline": "chore(release): version packages",
          "author_name": "github-actions[bot]",
          "author_login": "github-actions[bot]",
          "committed_at": "2026-06-17T08:35:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5581eb7fb2f1f342bdbb68e65be41988f1703fc3",
          "body": "Adds a minor changeset for @lamberl-lee/file-preview covering the six\n0.3.0 production-readiness items: React 18 compatibility, built-in\nlarge-file gate, remote maxBytes, local magic-byte detection,\nstandard PreviewError codes, and supported-formats documentation.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "chore(changeset): prepare 0.3.0 production-readiness release",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T08:35:01Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "f5dc11d6774adb0f10b5c3253c33024054388e1e",
          "body": "Record commit 412006d in the 0.3.0 progress table for item #5.\nAll six 0.3.0 production-readiness items are now complete.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(roadmap): mark PreviewError standardization complete",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T08:33:20Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "412006d1ce74e067678097b9f54645c7f647cfc0",
          "body": "0.3.0 item 5: expose stable, machine-readable error codes so consumers\ncan do telemetry, retry policy, and custom fallback UI without parsing\nlocalized / UX-driven message strings.\n\nNew core/preview-error.ts\n- PreviewError class with stable `code`, plus optional url/plugin/file\n  metadata and detail\n[…]\nover onError for unsupported files and\n  plugin load failures.\n\nVerified: typecheck, library test suite (10 files / 115 cases), and\nbuild:lib all green.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(file-preview): standardize PreviewError codes and onError callback",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T08:32:24Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "2984d8b9faa5cdb85fec0719fb5901ef7c0f2e04",
          "body": "Record commit 8beacbd in the 0.3.0 progress table for item #4\n(detectFileMeta + shared magic byte sniffers).\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(roadmap): mark 0.3.0 magic-byte detection complete",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T08:09:45Z",
          "body_truncated": false,
          "is_coding_agent": true
        },
        {
          "oid": "8beacbdea7a057dc9be7abe08fd7fb26a7e914c0",
          "body": "0.3.0 item 4: local files were still classified primarily by filename\nand browser-provided MIME. That is fragile in production: users rename\nfiles, upload widgets drop MIME, and servers return generic\napplication/octet-stream. Add byte-level detection and wire the\nplayground upload path to it.\n\nNew \n[…]\n both marked medium confidence with correct\n  detectBy\n\nVerified: typecheck (both workspace projects), test (10 files / 115\ncases), build:lib all green.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(file-preview): add magic-byte detectFileMeta for local sources",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T08:09:16Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "3a5d51e69a1e1ec3e97ccde4b4e30ee30636f60a",
          "body": "Add a \"0.3.0 — 生产可接入版本\" section to ROADMAP.md so the next\nsession (mine, or anyone else's) can pick up without scrolling\nconversation history.\n\nPer item:\n- 1 React 18 compat: done. Notes the use()→state-machine swap, the\n  Suspense removal, and the react18-compat CI job pinning React 18.3.1\n  via pn\n[…]\nblock: baseline now references both 4fe769d\n(monorepo split) and ab7d0bc (scope rename + 0.2.0 prep), and points\nat the live npm page.\n\nNo code changes.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(roadmap): record 0.3.0 progress and remaining work",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T07:39:49Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "fa3b770189fb331a5f22570e2123e2f395ab054c",
          "body": "The new Library tests under React 18 job failed at \"Print resolved\nReact version\" — node -e \"require('react')\" was running from the\nrepo root, but pnpm doesn't expose react at the top-level node_modules\n(it lives only inside packages/file-preview/node_modules via the\nworkspace symlink). With set -e,\n[…]\ncal validation already confirmed the override works (88/88 tests\npass with require('react').version === '18.3.1'); CI should now\nexercise the same path.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "ci(react18-compat): fix Print step's react require + don't block on it",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T07:28:12Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "ee4ffc99617cf451f41739a68f0677e702fd1349",
          "body": "…early\n\n0.3.0 item 6: real production support tickets cluster around the same\nmismatch — \"your DOCX preview doesn't match Word\", \"PPTX animations\ndon't play\", \"XLSX formulas show stale values\". The README's headline\n\"20+ formats\" implies parity that the library never claims and can't\ndeliver. Make t\n[…]\nmats\"\n  pointing at this doc, framing it as required pre-integration reading.\n\nNo code changes; no tests touched. typecheck/build/test status\nunchanged.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "docs(file-preview): write supported-formats.md to lower expectations …",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T07:23:44Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "31e65f160bcb84edbcf7a01e398454b550db5342",
          "body": "0.3.0 item 3: processRemoteUrl previously fetched the full body\nunconditionally, then let the LargeFileGate decide what to do with it.\nBy that point a malicious or careless URL has already drained browser\nmemory. SDK consumers can't reasonably be expected to wrap fetch\nthemselves — the cap belongs i\n[…]\n Content-Length lie)\n- RemoteUrlError instanceof check works for caller's catch logic\n\n103/103 tests pass; typecheck + build:lib green on both projects.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(file-preview): cap remote downloads with maxBytes (default 100 MB)",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T07:20:06Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "957a2fa47f6ecd90980a6c714ae6e5368c782ff5",
          "body": "…derer\n\n0.3.0 item 2: requiring consumers to manually wrap every preview in\n<LargeFileGate> is an unsafe default for an SDK — one forgotten wrapper\nand a 500 MB upload freezes the browser. The gate now ships inside\nPluginPreviewRenderer so a bare <PluginPreviewRenderer file={file} /> is\nsafe by defa\n[…]\nr \"Preview anyway\"; largeFilePolicy=\"off\"\nloads straight through a 100 MB file with no gate UI. 91/91 green.\ntypecheck green on both workspace projects.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "feat(file-preview): build large-file protection into PluginPreviewRen…",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T07:15:32Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "a5fb84d60d78627a375b21ad8f9bf41d0185999f",
          "body": "… machine\n\n0.3.0 item 1: the library declares peerDependencies react ^18.2 || ^19,\nbut PluginPreviewRenderer used React 19's use(promise) hook to unwrap\nthe lazily-loaded plugin module. Under React 18 use is undefined, so\nthe first preview would crash. The \"supports React 18\" claim was a lie.\n\nRepla\n[…]\nntinuously enforced, not a one-off\nmanual check. The playground (a React 19 app) is excluded from this\njob — only the library is expected to support 18.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(file-preview): support React 18 — replace use(promise) with state…",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T07:07:50Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "63d33f2c544128bff8284b008bec5c4a5d7fd1e2",
          "body": "Publishing @filevista/file-preview failed with E404 'Not found' on the\nofficial registry. Root cause: the npm account that owns the\nNPM_AUTH_TOKEN is 'lamberl-lee', but @filevista is neither an org that\naccount created nor that account's username — so the account has no\npublish rights on the @filevi\n[…]\nthis is\nthe first real release.\n\nVerified: pnpm install (relinked workspace), typecheck (both projects),\ntest (8 files / 88 cases), build:lib all green.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(packages): rename scope @filevista/* → @lamberl-lee/*",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T06:23:55Z",
          "body_truncated": true,
          "is_coding_agent": true
        },
        {
          "oid": "183d7c393f082e1d19c1a58e3a2fc337628a2f5a",
          "body": "Second publish attempt still hit E401 against registry.npmmirror.com.\nRoot cause: the project .npmrc sets registry=npmmirror for fast CN\ninstalls, and that registry wins over both the NPM_CONFIG_REGISTRY env\n(changed behavior in recent npm) and setup-node's registry-url when\nchangeset publish runs n\n[…]\n/registry.npmjs.org/' and a clean\n201.5KB / 263-file tarball. CI publish should now target the official\nregistry where NPM_AUTH_TOKEN is actually valid.\n\nCo-Authored-By: Claude <noreply@anthropic.com>",
          "is_bot": false,
          "headline": "fix(file-preview): pin publishConfig.registry to official npm",
          "author_name": "CoderLambert",
          "author_login": "CoderLambert",
          "committed_at": "2026-06-17T06:17:54Z",
          "body_truncated": true,
          "is_coding_agent": true
        }
      ],
      "releases_count": 18,
      "commits_last_year": 234,
      "latest_release_at": "2026-07-17T01:47:59Z",
      "latest_release_tag": "@lamberl-lee/file-preview@0.8.0",
      "releases_from_tags": false,
      "days_since_last_push": 4,
      "active_weeks_last_year": 8,
      "days_since_latest_release": 4,
      "mean_days_between_releases": 0.8
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 71,
      "has_issue_template": false,
      "has_code_of_conduct": false,
      "has_pull_request_template": false
    },
    "ecosystem": {
      "packages": [
        {
          "name": "@lamberl-lee/file-preview",
          "exists": true,
          "license": "LGPL-3.0-or-later",
          "keywords": [
            "react",
            "react-component",
            "file-preview",
            "file-viewer",
            "react-file-viewer",
            "document-viewer",
            "document-preview",
            "office-viewer",
            "pdf-viewer",
            "word-viewer",
            "excel-viewer",
            "powerpoint-viewer",
            "docx",
            "pptx",
            "xlsx",
            "epub-viewer",
            "markdown-viewer",
            "code-viewer",
            "browser",
            "client-side"
          ],
          "ecosystem": "npm",
          "matches_repo": true,
          "registry_url": "https://www.npmjs.com/package/@lamberl-lee/file-preview",
          "is_deprecated": false,
          "latest_version": "0.8.0",
          "repository_url": "https://github.com/CoderLambert/filevista",
          "versions_count": 19,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 2746,
          "first_published_at": "2026-06-17T06:42:00.900000Z",
          "latest_published_at": "2026-07-17T01:47:57.147000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 4
        }
      ]
    },
    "popularity": {
      "forks": 0,
      "stars": 1,
      "watchers": 0,
      "fork_history": {
        "days": [],
        "complete": true,
        "collected": 0,
        "total_forks": 0
      },
      "star_history": {
        "days": [
          {
            "date": "2026-07-20",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 1,
        "total_stars": 1
      },
      "open_issues_and_prs": 0
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [],
      "has_llms_txt": false,
      "has_dockerfile": true,
      "has_mcp_signal": false,
      "bootstrap_files": [],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "apps/playground/tsconfig.json",
        "packages/file-preview/tsconfig.json"
      ],
      "toolchain_manifests": [],
      "largest_source_bytes": 30078,
      "source_files_sampled": 190,
      "oversized_source_files": 0,
      "agent_instruction_files": [
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 7117
    },
    "dependencies": {
      "manifests": [
        "package.json"
      ],
      "advisories": {
        "error": null,
        "scope": null,
        "source": null,
        "findings": [],
        "collected": false,
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 0,
        "assessed_package": null,
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "npm"
      ],
      "dependencies": [
        {
          "name": "@lamberl-lee/file-preview",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "workspace:*"
        },
        {
          "name": "@radix-ui/react-accordion",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.11"
        },
        {
          "name": "@radix-ui/react-alert-dialog",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.14"
        },
        {
          "name": "@radix-ui/react-aspect-ratio",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.7"
        },
        {
          "name": "@radix-ui/react-avatar",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.10"
        },
        {
          "name": "@radix-ui/react-checkbox",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.3.2"
        },
        {
          "name": "@radix-ui/react-collapsible",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.11"
        },
        {
          "name": "@radix-ui/react-context-menu",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.2.15"
        },
        {
          "name": "@radix-ui/react-dialog",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.14"
        },
        {
          "name": "@radix-ui/react-dropdown-menu",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.15"
        },
        {
          "name": "@radix-ui/react-hover-card",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.14"
        },
        {
          "name": "@radix-ui/react-label",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.7"
        },
        {
          "name": "@radix-ui/react-menubar",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.15"
        },
        {
          "name": "@radix-ui/react-navigation-menu",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.13"
        },
        {
          "name": "@radix-ui/react-popover",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.14"
        },
        {
          "name": "@radix-ui/react-progress",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.7"
        },
        {
          "name": "@radix-ui/react-radio-group",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.3.7"
        },
        {
          "name": "@radix-ui/react-scroll-area",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.9"
        },
        {
          "name": "@radix-ui/react-select",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.2.5"
        },
        {
          "name": "@radix-ui/react-separator",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.7"
        },
        {
          "name": "@radix-ui/react-slider",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.3.5"
        },
        {
          "name": "@radix-ui/react-slot",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.3"
        },
        {
          "name": "@radix-ui/react-switch",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.5"
        },
        {
          "name": "@radix-ui/react-tabs",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.12"
        },
        {
          "name": "@radix-ui/react-toast",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.14"
        },
        {
          "name": "@radix-ui/react-toggle",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.9"
        },
        {
          "name": "@radix-ui/react-toggle-group",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.10"
        },
        {
          "name": "@radix-ui/react-tooltip",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.7"
        },
        {
          "name": "@tailwindcss/typography",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.5.19"
        },
        {
          "name": "class-variance-authority",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.7.1"
        },
        {
          "name": "clsx",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.1"
        },
        {
          "name": "docx-preview",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.3.7"
        },
        {
          "name": "exceljs",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.4.0"
        },
        {
          "name": "jszip",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.10.1"
        },
        {
          "name": "lucide-react",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.525.0"
        },
        {
          "name": "next",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^16.1.1"
        },
        {
          "name": "next-themes",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.4.6"
        },
        {
          "name": "pdfjs-dist",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "4.4.168"
        },
        {
          "name": "@aiden0z/pptx-renderer",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.0"
        },
        {
          "name": "react",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.0.0"
        },
        {
          "name": "react-dom",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.0.0"
        },
        {
          "name": "rtf.js",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.0.9"
        },
        {
          "name": "sharp",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.34.3"
        },
        {
          "name": "sonner",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.0.6"
        },
        {
          "name": "tailwind-merge",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.3.1"
        },
        {
          "name": "tailwindcss-animate",
          "manifest": "apps/playground/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.0.7"
        },
        {
          "name": "dompurify",
          "manifest": "packages/file-preview/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.4.8"
        },
        {
          "name": "react-markdown",
          "manifest": "packages/file-preview/package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.1.0"
        },
        {
          "name": "remark-gfm",
          "manifest": "packages/file-preview/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.1"
        },
        {
          "name": "shiki",
          "manifest": "packages/file-preview/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.1.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 19,
        "open_issues": 0,
        "closed_ratio": null,
        "closed_issues": 0,
        "closed_unmerged_prs": 0
      },
      "bus_factor": 1,
      "bot_contributors": 1,
      "top_contributors": [
        {
          "type": "User",
          "login": "CoderLambert",
          "commits": 55,
          "avatar_url": "https://avatars.githubusercontent.com/u/26545933?v=4"
        }
      ],
      "contributors_sampled": 1,
      "top_contributor_share": 1
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "pages.yml",
        "release.yml"
      ],
      "has_docs_dir": true,
      "linter_configs": [
        "eslint.config.mjs"
      ],
      "has_editorconfig": false,
      "has_linter_config": true,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 10,
            "reason": "no binaries found in the repo",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 0,
            "reason": "branch protection not enabled on development/release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 4,
            "reason": "6 out of 13 merged PRs checked by a CI test -- score normalized to 4",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 0,
            "reason": "Found 0/16 approved changesets -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 0,
            "reason": "no update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 0,
            "reason": "project was created within the last 90 days. Please review its contents carefully",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": null,
            "reason": "packaging workflow not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 10,
            "reason": "security policy file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": null,
            "reason": "no releases found",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "12 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "390fa7178036a50896bb9b3eeaa42e86837e88f8",
        "ran_at": "2026-07-21T18:37:59Z",
        "aggregate_score": 2.8,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": true,
      "has_dependabot_config": false
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/CoderLambert/filevista",
    "host": "github.com",
    "name": "filevista",
    "owner": "CoderLambert"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 57,
      "inputs": {
        "security": 28,
        "vitality": 76,
        "community": 39,
        "governance": 54,
        "engineering": 79
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "good",
        "name": "Vitality",
        "value": 76,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "moderate",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 60,
            "inputs": {
              "commits_last_year": 234,
              "human_commit_share": 0.86,
              "days_since_last_push": 4,
              "active_weeks_last_year": 8
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "8/52 weeks with commits",
                "points": 5.5,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 8
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "234 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 234
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": "Excluded from scoring (no data or not applicable): OpenSSF Scorecard: Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "openssf_scorecard_signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "releases_count": 18,
              "latest_release_tag": "@lamberl-lee/file-preview@0.8.0",
              "releases_from_tags": false,
              "days_since_latest_release": 4,
              "mean_days_between_releases": 0.8
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "18 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 18
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 4 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~0.8 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 0.8
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "unverified",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": "repository_too_young",
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": null,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "maintenance record not established from the collected data",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_unverified",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "at_risk",
        "name": "Community & Adoption",
        "value": 39,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 1,
            "inputs": {
              "forks": 0,
              "stars": 1,
              "watchers": 0,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "below_threshold"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "1 stars",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "0 forks",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "0 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 0
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "good",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 70,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": false,
              "has_pull_request_template": false
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (LGPL-3.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "LGPL-3.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.3
              }
            ]
          },
          {
            "key": "ecosystem_adoption",
            "band": "moderate",
            "name": "Ecosystem adoption (downloads)",
            "note": "Excluded from scoring (no data or not applicable): Registry dependents. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "registry_dependents"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 57,
            "inputs": {
              "packages": [
                "@lamberl-lee/file-preview"
              ],
              "dependents": null,
              "ecosystems": "npm",
              "total_downloads": null,
              "monthly_downloads": 2746
            },
            "components": [
              {
                "key": "monthly_downloads",
                "name": "Monthly downloads",
                "detail": "2,746 downloads/month across npm",
                "points": 45.9,
                "status": "partial",
                "details": [
                  {
                    "code": "downloads_monthly",
                    "params": {
                      "count": 2746,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 80
              },
              {
                "key": "registry_dependents",
                "name": "Registry dependents",
                "detail": "not reported by this ecosystem",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_reported_by_this_ecosystem",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "moderate",
        "name": "Sustainability & Governance",
        "value": 54,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 10,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 1,
              "top_contributor_share": 1
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 100% of commits",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 100
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "1 contributors",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "good",
            "name": "Issue & PR responsiveness",
            "note": "Excluded from scoring (no data or not applicable): Issue resolution. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "issue_resolution"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 72,
            "inputs": {
              "merged_prs": 19,
              "open_issues": 0,
              "closed_issues": 0,
              "issue_closed_ratio": null,
              "closed_unmerged_prs": 0
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "no issues or no data",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_issues_or_data",
                    "params": {}
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "19/19 decided PRs merged",
                "points": 38.2,
                "status": "met",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 19,
                      "decided": 19
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "Found 0/16 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "moderate",
            "name": "Ownership & stewardship",
            "note": "Excluded from scoring (no data or not applicable): Verified domain. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "verified_domain"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 52,
            "inputs": {
              "followers": 7,
              "owner_type": "User",
              "is_verified": null,
              "owner_login": "CoderLambert",
              "public_repos": 151,
              "account_age_days": 3410
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "personal (user) account",
                "points": 10,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_personal",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": "not applicable to user accounts",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "not_applicable_to_user_accounts",
                    "params": {}
                  }
                ],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "7 followers of CoderLambert",
                "points": 6.5,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 7,
                      "login": "CoderLambert"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "151 public repos, account ~9 yr old",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 151
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 9
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          },
          {
            "key": "package_maintenance",
            "band": "excellent",
            "name": "Package maintenance",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "packages": [
                "@lamberl-lee/file-preview"
              ],
              "ecosystems": "npm",
              "any_deprecated": false,
              "min_days_since_publish": 4
            },
            "components": [
              {
                "key": "published_resolvable",
                "name": "Published & resolvable",
                "detail": "1 package(s) on npm",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "packages_published",
                    "params": {
                      "count": 1,
                      "ecosystems": "npm"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "publish_recency",
                "name": "Publish recency",
                "detail": "latest publish 4 days ago",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "publish_recency",
                    "params": {
                      "days": 4
                    }
                  }
                ],
                "max_points": 35
              },
              {
                "key": "version_history",
                "name": "Version history",
                "detail": "19 published versions",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "published_versions",
                    "params": {
                      "count": 19
                    }
                  }
                ],
                "max_points": 20
              },
              {
                "key": "not_deprecated",
                "name": "Not deprecated",
                "detail": "active, not deprecated or yanked",
                "points": 20,
                "status": "met",
                "details": [
                  {
                    "code": "package_not_deprecated",
                    "params": {}
                  }
                ],
                "max_points": 20
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "good",
        "name": "Engineering Quality",
        "value": 79,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "good",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 72,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": true,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "3 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": "eslint.config.mjs",
                "points": 16,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "eslint.config.mjs"
                    }
                  }
                ],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "6 out of 13 merged PRs checked by a CI test -- score normalized to 4",
                "points": 8,
                "status": "partial",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "excellent",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "topics": [
                "browser-only",
                "client-side",
                "document-preview",
                "document-viewer",
                "docx",
                "epub",
                "file-preview",
                "file-viewer",
                "office-viewer",
                "pdf-viewer",
                "plugin-system",
                "pptx",
                "privacy",
                "react",
                "react-file-viewer",
                "typescript",
                "xlsx"
              ],
              "has_wiki": false,
              "homepage": "https://coderlambert.github.io/filevista/",
              "has_readme": true,
              "has_docs_dir": true,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 25,
                "status": "met",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://coderlambert.github.io/filevista/",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": "17 topics",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "topics_count",
                    "params": {
                      "count": 17
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "critical",
        "name": "Security",
        "value": 28,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "critical",
            "name": "Security posture",
            "note": "Excluded from scoring (no data or not applicable): Packaging, Signed-Releases. Remaining weights renormalized.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "packaging",
                    "signed_releases"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              }
            ],
            "value": 28,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 16,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 2,
              "scorecard_aggregate": 2.8
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "no binaries found in the repo",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection not enabled on development/release branches",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "6 out of 13 merged PRs checked by a CI test -- score normalized to 4",
                "points": 1,
                "status": "partial",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "Found 0/16 approved changesets -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "no update tool detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "project was created within the last 90 days. Please review its contents carefully",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow not detected",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "no releases found",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "no_data",
                    "params": {}
                  }
                ],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "12 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 78,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 1,
              "agent_instruction_files": [
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 7117
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": "CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "86 of 86 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 86,
                      "sampled": 86
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 64,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": true,
              "typed_language": true,
              "bootstrap_files": [],
              "has_devcontainer": false,
              "has_linter_config": true,
              "typecheck_configs": [
                "apps/playground/tsconfig.json",
                "packages/file-preview/tsconfig.json"
              ],
              "agent_commit_share": 0.36,
              "toolchain_manifests": [],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": "eslint.config.mjs",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "eslint.config.mjs"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "apps/playground/tsconfig.json, packages/file-preview/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "apps/playground/tsconfig.json, packages/file-preview/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "Dockerfile, lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Dockerfile, lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "36 of the last 100 commits agent-authored or agent-credited",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "agent_authored_commits",
                    "params": {
                      "count": 36,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "TypeScript",
              "largest_source_bytes": 30078,
              "source_files_sampled": 190,
              "oversized_source_files": 0
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "TypeScript (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "TypeScript"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "0/190 source files over 60KB",
                "points": 55,
                "status": "met",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 190,
                      "oversized": 0
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
    "deps.dev does not index npm:@lamberl-lee/file-preview@0.8.0; advisories assessed against the repository dependency graph instead"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-21T18:38:10.712242Z",
  "schema_version": "0.23.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/c/CoderLambert/filevista.svg",
  "full_name": "CoderLambert/filevista",
  "license_state": "standard",
  "license_spdx": "LGPL-3.0"
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.23.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计npm.