公开记录
软件健康报告模式 0.27.0 · 指标 1.13.0 · 2026-07-25 00:20 UTC

DeBrosDAO / orama

A robust, decentralized peer-to-peer network built in Go, providing distributed SQL database, key-value storage, pub/sub messaging, and resilient peer management. Designed for applications needing reliable, scalable, and secure data sharing without centralized infrastructure.

Go · TypeScriptAGPL-3.0★ 11 星标⑂ 3 复刻始于 2025年9月在 GitHub 上查看 ↗

DeBrosDAO/orama 的健康指数为 100 分中的 62 分,处于「中等」区间。 其得分最高的类别是Vitality(86/100),最低的是Sustainability & Governance(49/100)。 最近一次更新在 11 天前。 近期的大部分工作由 1 位贡献者完成。

62
总分 / 100
中等

软件健康指数

指标归入加权类别,统一采用 1–100 量表。总体分先取类别加权平均;当公开证据触发高风险司法辖区政策时,评级会按政策调整,并设置 49(有风险)的上限。AI 就绪度不计入总体分。

62
优秀85-100堪称典范;基本满足所有检验标准
良好70-84健康;仅有轻微不足
中等50-69可接受,但存在明显不足;建议进行审查
存在风险30-49存在重大薄弱环节;采用时应保持审慎
危急1-29问题严重(项目被弃置、仅有单一维护者、缺乏基本工程规范)
活力社区与采用可持续性与治理工程质量安全AI 就绪度

评分画像

每条轴代表一个类别。形状比平均值更重要——健康的对象会填满整个图形,而“一峰一谷”式画像意味着某一维度的优势正掩盖另一维度的风险。

所有权

6 关注者9 个公开仓库始于 2026年3月

该仓库由组织支持——共同承担、可问责的托管责任,可延续于任何单一维护者之后。

软件包生态系统

注册表软件包版本月下载量版本数最近发布标签
Gogithub.com/DeBrosOfficial/network指向其他仓库——不计分v0.122.74-16720 天前
npm@debros/orama指向其他仓库——不计分0.122.80-nightly1,2881818 天前debrosnetworksdktypescriptdatabaserqlitepubsubwebsocketcacheolricipfsstoragewasmserverlessdistributedgatewayvaultsecretsshamirencryptionguardian

按类别列示的指标

活力

项目是否仍有生命——是否仍在编写代码,是否仍在发布版本?

86优秀 · 占总体的 22%
评分方式
28.8/36推送新近度 — 最近一次推送于 11 天前
27/36提交节奏 — 52 周中有 39 周有提交
18/18提交量 — 最近一年 1,253 次提交
10/10OpenSSF Scorecard:Maintained — 30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
所用输入
commits_last_year1,253
human_commit_share1
days_since_last_push11
active_weeks_last_year39

发布纪律

90优秀
评分方式
27/27有发布版本 — 已发布 100 个发布版本
36/36发布时效 — 最近一次发布版本于 18 天前
27/27发布节奏 — 约每 2.3 天发布一次
0/10OpenSSF Scorecard:Signed-Releases — Project has not signed or included provenance with any releases.
所用输入
releases_count100
latest_release_tagv0.122.80-nightly
releases_from_tags
days_since_latest_release18
mean_days_between_releases2.3

社区与采用

项目是否拥有用户、下载量与关注度,并具备欢迎贡献者参与的配置?

53中等 · 占总体的 18%
评分方式
16.2/60星标 — 11 个星标
2.5/25复刻 — 3 个复刻
0/15关注者 — 1 位关注者
所用输入
forks3
stars11
watchers1
growth_stateunverified
growth_factor_pct100
growth_unverified_reasonno_history

社区健康

92优秀
评分方式
22.5/22.5README
22.5/22.5许可证 — 可识别的许可证(AGPL-3.0)
18/18CONTRIBUTING 指南
13.5/13.5行为准则
0/7.2议题模板
6.3/6.3PR 模板
所用输入
has_readme
has_license
has_contributing
has_issue_template
has_code_of_conduct
has_pull_request_template

可持续性与治理

项目能否在其成员之外延续——巴士系数、响应能力、由谁支持,以及软件包的维护状况?

49存在风险 · 占总体的 24%
评分方式
9/54巴士系数 — 1 位贡献者贡献了半数提交
1.4/22.5提交分布 — 头号贡献者编写了 94% 的提交
4.1/13.5贡献者广度 — 3 位贡献者
0/10OpenSSF Scorecard:Contributors — project has 0 contributing companies or organizations -- score normalized to 0
所用输入
bus_factor1
contributors_sampled3
top_contributor_share0.94
评分方式
45.4/46.8议题解决 — 97% 的议题已关闭
35.7/38.3PR 接受 — 已裁定的 PR 中 56/60 已合并
15/15OpenSSF Scorecard:Code-Review — all changesets reviewed
所用输入
merged_prs56
open_issues1
closed_issues34
issue_closed_ratio0.971
closed_unmerged_prs4
评分方式
30/30所有权背书 — 组织持有
0/20已验证域名
6.1/25所有者影响力 — DeBrosDAO 有 6 位关注者
8.1/25既往记录 — 9 个公开仓库,账户约 0 年
所用输入
followers6
owner_typeOrganization
is_verified
owner_loginDeBrosDAO
public_repos9
account_age_days143

工程质量

基础的工程与文档实践是否到位?

63中等 · 占总体的 20%

工程实践

68中等
评分方式
24/24CI 工作流 — 5 个工作流
24/24存在测试
0/16Linter 配置
0/9.6Pre-commit 钩子
0/6.4.editorconfig
20/20OpenSSF Scorecard:CI-Tests — 3 out of 3 merged PRs checked by a CI test -- score normalized to 10
所用输入
has_ci
has_tests
has_editorconfig
has_linter_config
has_precommit_config

文档

55中等
评分方式
30/30README
0/25文档目录
15/15文档 / 主页站点 — https://orama.network
10/10仓库描述
0/10主题标签
0/10Wiki
所用输入
topics
has_wiki
homepagehttps://orama.network
has_readme
has_docs_dir
has_description

安全

可见的安全与供应链实践是否稳固,且不存在未解决的高风险司法辖区暴露?

58中等 · 占总体的 16%

安全态势

47存在风险
评分方式
6/7.5Binary-Artifacts — binaries present in source code
0.8/7.5Branch-Protection — branch protection is not maximal on development and all release branches
2.5/2.5CI-Tests — 3 out of 3 merged PRs checked by a CI test -- score normalized to 10
0/2.5CII-Best-Practices — no effort to earn an OpenSSF best practices badge detected
7.5/7.5Code-Review — all changesets reviewed
0/2.5Contributors — project has 0 contributing companies or organizations -- score normalized to 0
10/10Dangerous-Workflow — no dangerous workflow patterns detected
7.5/7.5Dependency-Update-Tool — update tool detected
0/5Fuzzing — project is not fuzzed
2.5/2.5许可证 — license file detected
7.5/7.5Maintained — 30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
5/5Packaging — packaging workflow detected
0/5Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
0/5SAST — SAST tool is not run on all commits -- score normalized to 0
0/5Security-Policy — security policy file not detected
0/7.5Signed-Releases — Project has not signed or included provenance with any releases.
0/7.5Token-Permissions — detected GitHub workflow tokens with excessive permissions
0/7.5Vulnerabilities — 192 existing vulnerabilities detected
所用输入
sourceopenssf_scorecard
checks_evaluated18
scorecard_versionv5.5.0
checks_inconclusive0
scorecard_aggregate4.7
评分方式
35/35直接依赖不含已知公告 — 没有直接依赖携带已知公告
25/25间接依赖不含已知公告 — 没有间接依赖携带已知公告
0/40没有长期未处理的公告 — 没有公告带有发布日期
所用输入
sourceosv
advisories0
affected_packages0
assessed_packages3
unassessed_packages0
affected_by_severitynone
direct_affected_packages0
已排除计分(无数据或不适用):没有长期未处理的公告。 其余权重已重新归一化。 比对的是 npm:@debros/orama@0.122.80-nightly 的运行时依赖闭包——安装已发布的软件包时真正被拉取进来的内容——共 3 个软件包。 未对可达性进行分析。

AI 就绪度

该仓库在多大程度上具备与 AI 编码代理协同开发与维护的条件?这是一枚独立的实验性徽章——权重为 0.0,因此单独呈现,不影响总体健康评分。

71良好 · 占总体的 0%
评分方式
45/45代理指令 — .github/copilot-instructions.md, AGENTS.md, CLAUDE.md
0/15机器可读文档(llms.txt)
40/40可读的提交历史 — 100 次人类提交中有 98 次说明了意图(结构化标题或解释性正文)
所用输入
has_llms_txt
legible_history_share0.98
agent_instruction_files.github/copilot-instructions.md, AGENTS.md, CLAUDE.md
agent_instruction_max_bytes536
评分方式
18/18一条命令的引导启动 — Makefile, core/Makefile, os/Makefile
22/22自动化测试
0/11Lint / 格式化配置
11/11静态类型检查 — sdk/tsconfig.json, website/tsconfig.json
10/10可复现环境 — lockfile
0/10已体现的代理实践 — 最近 100 次提交中没有代理编写的提交
0/8自动化维护 — 未观察到自动依赖更新
0/10OpenSSF Scorecard:Pinned-Dependencies — dependency not pinned by hash detected -- score normalized to 0
所用输入
has_nix
has_tests
lockfilesgo.sum, package-lock.json, pnpm-lock.yaml
has_dockerfile
typed_language
bootstrap_filesMakefile, core/Makefile, os/Makefile
has_devcontainer
has_linter_config
typecheck_configssdk/tsconfig.json, website/tsconfig.json
agent_commit_share0
toolchain_manifestscore/go.mod, core/testdata/apps/go-api/go.mod, os/agent/go.mod, website/invest-api/go.mod
dependency_bot_commit_share0
评分方式
45/45可类型检查的代码 — Go(静态类型)
54.9/55可控的文件大小 — 采样的 1,146 个源文件中有 3 个超过 60KB
所用输入
primary_languageGo
largest_source_bytes97,691
source_files_sampled1,146
oversized_source_files3

机器可读接口

40存在风险
评分方式
0/40API 模式(OpenAPI/GraphQL/proto)
0/20MCP 服务器
40/40可运行示例 — examples
所用输入
example_dirsexamples
has_mcp_signal
api_schema_files

关键数据

11GitHub 星标
3贡献者
1,253最近 12 个月提交数
11距最近推送天数
100发布版本数
1巴士系数(bus factor)
1开放议题
Go, npm软件包生态系统数

数据采集警告

  • Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token
  • go package 'github.com/DeBrosOfficial/network' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring
  • npm package '@debros/orama' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring
  • Could not fetch go package 'github.com/DeBrosOfficial/orama-os/agent' from its registry
  • Could not fetch go package 'github.com/debros/orama-website/invest-api' from its registry
  • GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

更多细节

Star 与 Fork 历史 0 ★ / 3 ⇿
0Star
3Fork
92发布

每颗 star 和每个 fork 的添加时间,来自 GitHub 并按天汇总。累计增长位于其构成来源——每日新增——的正上方,二者可相互对照:稳定的自然增长与短暂的突增形态截然不同。当这一差别可被衡量时,它会作为增长真实性予以报告。

12233312025-112026-032026-06
主版本 0次版本 3修订 7
OpenSSF Scorecard 4.7 / 10
4.7综合

来自开源项目 OpenSSF Scorecard 的独立、工具无关的安全评估。每项检查奖励的是安全实践本身,而非特定供应商的工具。Scorecard 无法判定的检查项标记为 不适用,并从安全评分中剔除(绝不按零分计)。Scorecard v5.5.0 · 2026-07-25 00:19 UTC

8Binary-Artifactsbinaries present in source code
1Branch-Protectionbranch protection is not maximal on development and all release branches
10CI-Tests3 out of 3 merged PRs checked by a CI test -- score normalized to 10
0CII-Best-Practicesno effort to earn an OpenSSF best practices badge detected
10Code-Reviewall changesets reviewed
0Contributorsproject has 0 contributing companies or organizations -- score normalized to 0
10Dangerous-Workflowno dangerous workflow patterns detected
10Dependency-Update-Toolupdate tool detected
0Fuzzingproject is not fuzzed
10Licenselicense file detected
10Maintained30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10
10Packagingpackaging workflow detected
0Pinned-Dependenciesdependency not pinned by hash detected -- score normalized to 0
0SASTSAST tool is not run on all commits -- score normalized to 0
0Security-Policysecurity policy file not detected
0Signed-ReleasesProject has not signed or included provenance with any releases.
0Token-Permissionsdetected GitHub workflow tokens with excessive permissions
0Vulnerabilities192 existing vulnerabilities detected
直接依赖 72
注册表软件包版本约束清单文件
Gogithub.com/charmbracelet/bubblesv0.20.0core/go.mod
Gogithub.com/charmbracelet/bubbleteav1.2.4core/go.mod
Gogithub.com/charmbracelet/lipglossv1.0.0core/go.mod
Gogithub.com/coredns/caddyv1.1.4core/go.mod
Gogithub.com/coredns/corednsv1.12.1core/go.mod
Gogithub.com/ethereum/go-ethereumv1.13.14core/go.mod
Gogithub.com/go-chi/chi/v5v5.2.3core/go.mod
Gogithub.com/google/uuidv1.6.0core/go.mod
Gogithub.com/gorilla/websocketv1.5.4-0.20250319132907-e064f32e3674core/go.mod
Gogithub.com/libp2p/go-libp2pv0.41.1core/go.mod
Gogithub.com/libp2p/go-libp2p-pubsubv0.14.2core/go.mod
Gogithub.com/mackerelio/go-osstatv0.2.6core/go.mod
Gogithub.com/mattn/go-sqlite3v1.14.32core/go.mod
Gogithub.com/mdp/qrterminal/v3v3.2.1core/go.mod
Gogithub.com/miekg/dnsv1.1.70core/go.mod
Gogithub.com/multiformats/go-multiaddrv0.16.0core/go.mod
Gogithub.com/olric-data/olricv0.7.0core/go.mod
Gogithub.com/pion/interceptorv0.1.40core/go.mod
Gogithub.com/pion/rtcpv1.2.15core/go.mod
Gogithub.com/pion/turn/v4v4.0.2core/go.mod
Gogithub.com/pion/webrtc/v4v4.1.2core/go.mod
Gogithub.com/rqlite/gorqlitev0.0.0-20250609141355-ac86a4a1c9a8core/go.mod
Gogithub.com/sideshow/apns2v0.25.0core/go.mod
Gogithub.com/spf13/cobrav1.10.2core/go.mod
Gogithub.com/stretchr/testifyv1.11.1core/go.mod
Gogithub.com/tetratelabs/wazerov1.11.0core/go.mod
Gogo.uber.org/zapv1.27.0core/go.mod
Gogolang.org/x/cryptov0.47.0core/go.mod
Gogolang.org/x/netv0.49.0core/go.mod
Gogolang.org/x/syncv0.19.0core/go.mod
Gogopkg.in/yaml.v2v2.4.0core/go.mod
Gogopkg.in/yaml.v3v3.0.1core/go.mod
npm@noble/ciphers^0.5.3sdk/package.json
npm@noble/hashes^1.4.0sdk/package.json
npmisomorphic-ws^5.0.0sdk/package.json
npm@gsap/react^2.1.2website/package.json
npm@mdx-js/react^3.1.1website/package.json
npm@radix-ui/react-accordion^1.2.12website/package.json
npm@radix-ui/react-dialog^1.1.15website/package.json
npm@radix-ui/react-dropdown-menu^2.1.16website/package.json
npm@radix-ui/react-navigation-menu^1.2.14website/package.json
npm@radix-ui/react-slot^1.2.4website/package.json
npm@radix-ui/react-tabs^1.1.13website/package.json
npm@radix-ui/react-tooltip^1.2.8website/package.json
npm@react-three/drei^10.7.7website/package.json
npm@react-three/fiber^9.5.0website/package.json
npm@solana/wallet-adapter-base^0.9.27website/package.json
npm@solana/wallet-adapter-react^0.15.39website/package.json
npm@solana/wallet-adapter-react-ui^0.9.39website/package.json
npm@solana/wallet-adapter-wallets^0.19.37website/package.json
npm@solana/web3.js^1.98.4website/package.json
npmclass-variance-authority^0.7.0website/package.json
npmclsx^2.1.0website/package.json
npmethers^6.16.0website/package.json
npmgsap^3.14.2website/package.json
npmlightweight-charts^5.1.0website/package.json
npmlucide-react^0.511.0website/package.json
npmmermaid^11.12.3website/package.json
npmreact^19.1.0website/package.json
npmreact-dom^19.1.0website/package.json
npmreact-router^7.6.1website/package.json
npmrehype-slug^6.0.0website/package.json
npmremark-gfm^4.0.1website/package.json
npmshiki^4.0.0website/package.json
npmtailwind-merge^3.3.0website/package.json
npmthree^0.183.2website/package.json
Gogolang.org/x/cryptov0.48.0os/agent/go.mod
Gogithub.com/ethereum/go-ethereumv1.15.11website/invest-api/go.mod
Gogithub.com/golang-jwt/jwt/v5v5.2.2website/invest-api/go.mod
Gogithub.com/joho/godotenvv1.5.1website/invest-api/go.mod
Gogithub.com/mattn/go-sqlite3v1.14.37website/invest-api/go.mod
Gogithub.com/mr-tron/base58v1.2.0website/invest-api/go.mod
全部依赖 未采集

本报告未能采集到解析后的依赖集合:GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository

依赖安全公告 0

安装 npm:@debros/orama@0.122.80-nightly 会引入 3 个包(直接与传递):其中 0 个存在已知公告,0 个为直接依赖。

没有已知公告影响已评估的依赖。

公告表示依赖图中记录的版本落入某条公告的受影响范围。可达性未经分析,且依赖图包含开发与测试的版本固定——某项发现可能只涉及工具链而非交付的软件。

原始 JSON 报告 机器可读
{
  "data": {
    "repo": {
      "topics": [],
      "is_fork": false,
      "size_kb": 1862984,
      "has_wiki": false,
      "homepage": "https://orama.network",
      "languages": {
        "Go": 6205732,
        "CSS": 6174,
        "MDX": 266774,
        "Zig": 291592,
        "HTML": 2219,
        "Shell": 42836,
        "PLpgSQL": 51839,
        "Makefile": 10298,
        "TypeScript": 988196
      },
      "pushed_at": "2026-07-13T12:20:17Z",
      "created_at": "2025-09-17T13:50:34Z",
      "owner_type": "Organization",
      "updated_at": "2026-07-04T17:47:32Z",
      "description": "A robust, decentralized peer-to-peer network built in Go, providing distributed SQL database, key-value storage, pub/sub messaging, and resilient peer management. Designed for applications needing reliable, scalable, and secure data sharing without centralized infrastructure.",
      "is_archived": false,
      "is_disabled": false,
      "license_spdx": "AGPL-3.0",
      "default_branch": "main",
      "license_spdx_raw": "AGPL-3.0",
      "primary_language": "Go",
      "significant_languages": [
        "Go",
        "TypeScript"
      ]
    },
    "owner": {
      "blog": "https://debros.io",
      "name": "DeBros DAO",
      "type": "Organization",
      "login": "DeBrosDAO",
      "company": null,
      "location": null,
      "followers": 6,
      "avatar_url": "https://avatars.githubusercontent.com/u/265243004?v=4",
      "created_at": "2026-03-03T09:57:18Z",
      "is_verified": null,
      "public_repos": 9,
      "account_age_days": 143
    },
    "license": {
      "state": "standard",
      "spdx_id": "AGPL-3.0",
      "raw_spdx": "AGPL-3.0",
      "file_present": true,
      "scorecard_found": true,
      "profile_has_license": true
    },
    "activity": {
      "releases": [
        {
          "tag": "v0.122.80-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-06T19:18:45Z"
        },
        {
          "tag": "v0.122.79-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-06T18:24:01Z"
        },
        {
          "tag": "v0.122.78-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-06T08:53:41Z"
        },
        {
          "tag": "v0.122.77-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-04T20:56:49Z"
        },
        {
          "tag": "v0.122.74",
          "kind": "patch",
          "published_at": "2026-07-04T17:54:31Z"
        },
        {
          "tag": "v0.122.74-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-04T17:46:56Z"
        },
        {
          "tag": "v0.122.73-nightly",
          "kind": "prerelease",
          "published_at": "2026-07-04T17:31:57Z"
        },
        {
          "tag": "v0.122.68",
          "kind": "patch",
          "published_at": "2026-07-02T10:52:01Z"
        },
        {
          "tag": "v0.122.60-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-16T15:48:27Z"
        },
        {
          "tag": "v0.122.59-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T19:01:22Z"
        },
        {
          "tag": "v0.122.58-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T11:49:36Z"
        },
        {
          "tag": "v0.122.57-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T10:57:55Z"
        },
        {
          "tag": "v0.122.56-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T08:23:27Z"
        },
        {
          "tag": "v0.122.55-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-15T05:08:43Z"
        },
        {
          "tag": "v0.122.54-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-13T06:28:00Z"
        },
        {
          "tag": "v0.122.51-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-12T13:51:06Z"
        },
        {
          "tag": "v0.122.50-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-12T07:16:34Z"
        },
        {
          "tag": "v0.122.49-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-12T05:08:23Z"
        },
        {
          "tag": "v0.122.47",
          "kind": "patch",
          "published_at": "2026-06-11T14:43:48Z"
        },
        {
          "tag": "v0.122.47-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-11T08:50:04Z"
        },
        {
          "tag": "v0.122.46-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-11T07:10:37Z"
        },
        {
          "tag": "v0.122.45-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-11T05:03:56Z"
        },
        {
          "tag": "v0.122.44-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-10T09:17:30Z"
        },
        {
          "tag": "v0.122.43-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-09T13:01:48Z"
        },
        {
          "tag": "v0.122.42-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-09T10:05:42Z"
        },
        {
          "tag": "v0.122.41-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-09T06:29:08Z"
        },
        {
          "tag": "v0.122.40-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-04T07:12:57Z"
        },
        {
          "tag": "v0.122.39-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-02T12:11:00Z"
        },
        {
          "tag": "v0.122.38-nightly",
          "kind": "prerelease",
          "published_at": "2026-06-01T07:17:19Z"
        },
        {
          "tag": "v0.122.37-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-30T16:31:22Z"
        },
        {
          "tag": "v0.122.36-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-30T11:45:53Z"
        },
        {
          "tag": "v0.122.35-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-29T09:13:25Z"
        },
        {
          "tag": "v0.122.34-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-28T06:59:46Z"
        },
        {
          "tag": "v0.122.33-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-25T07:29:49Z"
        },
        {
          "tag": "v0.122.32-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-25T06:39:09Z"
        },
        {
          "tag": "v0.122.31-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-24T18:01:49Z"
        },
        {
          "tag": "v0.122.30-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-24T16:43:33Z"
        },
        {
          "tag": "v0.122.29-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-23T09:53:57Z"
        },
        {
          "tag": "v0.122.28-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-21T12:57:56Z"
        },
        {
          "tag": "v0.122.27-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-19T15:23:25Z"
        },
        {
          "tag": "v0.122.26-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-18T07:46:45Z"
        },
        {
          "tag": "v0.122.25-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-16T12:47:14Z"
        },
        {
          "tag": "v0.122.24-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T10:40:41Z"
        },
        {
          "tag": "v0.122.23-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T09:00:21Z"
        },
        {
          "tag": "v0.122.22-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T07:44:26Z"
        },
        {
          "tag": "v0.122.21-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T06:05:39Z"
        },
        {
          "tag": "v0.122.20-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-15T04:07:22Z"
        },
        {
          "tag": "v0.122.19-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T14:57:50Z"
        },
        {
          "tag": "v0.122.18-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T11:33:49Z"
        },
        {
          "tag": "v0.122.17-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T09:20:35Z"
        },
        {
          "tag": "v0.122.16-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T08:55:30Z"
        },
        {
          "tag": "v0.122.15-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T08:49:05Z"
        },
        {
          "tag": "v0.122.14-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T07:53:06Z"
        },
        {
          "tag": "v0.122.13-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-14T04:50:59Z"
        },
        {
          "tag": "v0.122.12-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-13T12:42:09Z"
        },
        {
          "tag": "v0.122.11-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T08:10:21Z"
        },
        {
          "tag": "v0.122.10",
          "kind": "patch",
          "published_at": "2026-05-12T07:19:12Z"
        },
        {
          "tag": "v0.122.9",
          "kind": "patch",
          "published_at": "2026-05-12T07:02:15Z"
        },
        {
          "tag": "v0.122.9-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:55:09Z"
        },
        {
          "tag": "v0.122.8-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:49:43Z"
        },
        {
          "tag": "v0.122.7-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:43:03Z"
        },
        {
          "tag": "v0.122.6-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:37:41Z"
        },
        {
          "tag": "v0.122.5-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:33:08Z"
        },
        {
          "tag": "v0.122.4-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:30:37Z"
        },
        {
          "tag": "v0.122.3-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-12T06:20:14Z"
        },
        {
          "tag": "v0.122.2-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-07T04:34:40Z"
        },
        {
          "tag": "v0.122.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-05-05T09:37:21Z"
        },
        {
          "tag": "v0.120.0",
          "kind": "minor",
          "published_at": "2026-03-26T16:45:02Z"
        },
        {
          "tag": "v0.115.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-03-24T13:02:54Z"
        },
        {
          "tag": "v0.112.6-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-24T07:18:57Z"
        },
        {
          "tag": "v0.112.1-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-22T09:44:53Z"
        },
        {
          "tag": "v0.111.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-21T06:50:43Z"
        },
        {
          "tag": "v0.107.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-16T08:35:22Z"
        },
        {
          "tag": "v0.102.5-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-12T07:56:44Z"
        },
        {
          "tag": "v0.102.2-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-11T13:16:46Z"
        },
        {
          "tag": "v0.102.1-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-11T09:30:36Z"
        },
        {
          "tag": "v0.101.6-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-11T04:48:53Z"
        },
        {
          "tag": "v0.101.3-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-09T14:01:29Z"
        },
        {
          "tag": "v0.101.2-nightly",
          "kind": "prerelease",
          "published_at": "2026-02-09T13:43:50Z"
        },
        {
          "tag": "v0.90.0",
          "kind": "minor",
          "published_at": "2026-01-20T08:20:03Z"
        },
        {
          "tag": "v0.90.0-nigthly",
          "kind": "prerelease",
          "published_at": "2026-01-20T08:19:40Z"
        },
        {
          "tag": "v0.82.0-nightly",
          "kind": "prerelease",
          "published_at": "2026-01-05T18:03:47Z"
        },
        {
          "tag": "v0.72.3",
          "kind": "patch",
          "published_at": "2025-12-15T13:08:05Z"
        },
        {
          "tag": "v0.72.2",
          "kind": "patch",
          "published_at": "2025-12-09T05:31:09Z"
        },
        {
          "tag": "v0.72.1-nightly",
          "kind": "prerelease",
          "published_at": "2025-12-09T05:26:36Z"
        },
        {
          "tag": "v0.72.0",
          "kind": "minor",
          "published_at": "2025-11-28T20:32:39Z"
        },
        {
          "tag": "v0.72.0-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-28T20:30:58Z"
        },
        {
          "tag": "v0.69.23",
          "kind": "patch",
          "published_at": "2025-11-26T14:17:33Z"
        },
        {
          "tag": "v0.69.22-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:34:24Z"
        },
        {
          "tag": "v0.69.21-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:22:16Z"
        },
        {
          "tag": "v0.69.20-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:13:03Z"
        },
        {
          "tag": "v0.69.19-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-22T11:04:45Z"
        },
        {
          "tag": "v0.69.18-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-21T12:02:22Z"
        },
        {
          "tag": "v0.69.13",
          "kind": "patch",
          "published_at": "2025-11-14T07:05:17Z"
        },
        {
          "tag": "v0.69.13-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-14T07:01:15Z"
        },
        {
          "tag": "v0.69.12-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-14T05:16:44Z"
        },
        {
          "tag": "v0.69.10-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-13T05:24:20Z"
        },
        {
          "tag": "v0.69.9-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-12T07:17:36Z"
        },
        {
          "tag": "v0.69.5-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-11T15:11:49Z"
        },
        {
          "tag": "v0.69.4-nightly",
          "kind": "prerelease",
          "published_at": "2025-11-11T14:26:35Z"
        }
      ],
      "recent_commits": [
        {
          "oid": "4a538ca07ad8c2980b8af94fe26f2e1c96961509",
          "body": "Nightly",
          "is_bot": false,
          "headline": "Merge pull request #96 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:47:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "5e5d479968cdb0096697e5347da38948bb9b712d",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.74",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:42:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1e477a761ab6b2949b91b27d0f4e0c781ac1873b",
          "body": "…gers SDK + APT publish",
          "is_bot": false,
          "headline": "ci(release): use RELEASE_PAT for GoReleaser so the release event trig…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:42:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "444546f8f12678760feb798ec95839c6ecc56336",
          "body": "Nightly",
          "is_bot": false,
          "headline": "Merge pull request #95 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:36:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0aac3b0b73251fee6ee805a03667fa41d53c2498",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.73",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:28:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "004639d3d28e0405b93ba07ef4c1330f7fd95ed2",
          "body": "- Add `revoked_at` column to `api_keys` table for soft-revocation\n- Add `keys` CLI command group for creating, listing, and revoking keys\n- Switch vault builder to `zig build-exe` to avoid host runner link errors\n- Bump version to 0.122.72",
          "is_bot": false,
          "headline": "feat(core): implement scoped API key management",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-04T17:25:18Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1bb294260f7df09ffd7b18ab86a69777ffbef07d",
          "body": "Nightly",
          "is_bot": false,
          "headline": "Merge pull request #94 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-02T10:49:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "881594d3b0e66d09eba302c05d005f54759ff2c8",
          "body": "- Add pre-flight check to resolve and validate the leader's raft address\n- Implement leader-only config reset by replacing raft.db with a single-node peers.json\n- Update follower recovery to perform a full state wipe, ensuring clean re-joins\n- Add base64 encoding for SSH commands to prevent shell-quoting issues",
          "is_bot": false,
          "headline": "feat(recover): implement robust rqlite raft cluster recovery",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-07-02T10:48:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "93556ab786ee89ee611daaebb5ee0dfb96d9a121",
          "body": "…ety)\n\nIncident 2026-06-24: scheduled IPFS GC (0.122.67) deleted the WASM of 14 active\nfunctions that were never durably pinned (old uploadWASM only warn-logged pin\nfailures). 0.122.68 fixed the deploy path (pin-everywhere + hard-fail); this\nadds the missing piece for EXISTING functions:\n\n- Registry\n[…]\n naturally staggers it and the cluster dedups pins.\n\nSo GC can never again reclaim function WASM. (The currently-deleted 14 still need\nan AnChat re-deploy — their bytes are gone; tracked on bug #137.)",
          "is_bot": false,
          "headline": "fix(serverless): startup backfill to re-pin all function WASM (GC-saf…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-24T09:16:20Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "12ece71b87e47cd96878c30e1bd8ddc3c5b53f4c",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.68",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-24T05:51:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "dc7abbcc51a77d3ed598151d49ce1991d4412b29",
          "body": "…none-reads\n\nThree anchat-priority fixes for delivery-critical paths.\n\n#137 — rarely-invoked function WASM cold-fetch timed out (15s) → INVOKE_FAILED\nwith no retryable flag:\n- uploadWASM now pins WASM on EVERY cluster peer (replication=-1) so no gateway\n  node is ever cold, and HARD-FAILS the deploy\n[…]\nward compatible (empty freshness = prior behavior).\nVerified live on devnet: rqlite v8.43.0 signals a violation as HTTP 200 +\n{\"error\":\"stale read\"}; /status is reachable unauthenticated for the gate.",
          "is_bot": false,
          "headline": "fix(serverless,rqlite): reliable WASM cold-fetch + bounded-staleness …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-24T05:51:13Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "6a134248bda29ab478fad5b95fcd6f182f643b3d",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.67",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-23T06:59:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a0e0ef071df51b19fb4b087b8231974a9941cde6",
          "body": "The IPFS daemon runs without --enable-gc and nothing scheduled `ipfs repo\ngc`, so unpinned blocks were never reclaimed — unpin freed zero disk.\nDatastore.StorageMax was also the unconfigured kubo default of 10GB on\nevery node regardless of disk size.\n\n- Add orama-ipfs-gc.service (one-shot `ipfs repo\n[…]\nly via InitializeRepo (runs in Phase2c post-reexec, so it\n  lands on the same upgrade).\n\nUnblocks AnChat attachment-storage design (change-136): retention-based\nunpin now actually reclaims node space.",
          "is_bot": false,
          "headline": "feat(ipfs): scheduled repo GC + disk-aware StorageMax",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-23T06:59:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b74f92b1a008ee8a0beed58bf7fea1235f845063",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.66",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T16:08:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "deb94c071c73515ac243ae2e7c493d40109edd4a",
          "body": "…ence (#858)\n\nThe shared ntfy push tier runs an independent instance per node with NO\ncross-node shared state, so a publish and a long-lived subscriber that\nround-robin DNS sends to different instances never meet (measured live: 5/5\nsame-node, 0/5 cross-node). The gateway fan-out compensates for the\n[…]\nlicates (the fan-out still reaches that node). Contained to the DNS layer —\nno changes to the :443/Caddy/ntfy data path. Unit-tested: lowest-IP pick,\nfailover+prune, no-healthy-ns safety, idempotency.",
          "is_bot": false,
          "headline": "fix(push): pin push.<domain> to one healthy nameserver for ntfy coher…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T16:08:30Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "81b727467e88ccf12493bdd4a2954e123571fde7",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.65",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T13:30:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2e44a22a3b46d598d994629e93da104acf8b0350",
          "body": "…(#981)\n\nLive verification on anchat-test caught two real bugs the sqlite3 unit tests\nmissed:\n\n1. Eviction ordered by SQLite rowid (insertion order) was WRONG: when an\n   existing account RE-registers its token (a CONFLICT/UPDATE), its row keeps its\n   original low rowid, so 'DELETE ... rowid < keep\n[…]\ntest seeding pre-existing duplicates + re-registering.\n\n2. The token_fp backfill raced migration 033 at gateway startup ('no such\n   column') and failed permanently. Retry until the migration applies.",
          "is_bot": false,
          "headline": "fix(push): evict by id (recency), not rowid; retry token_fp backfill …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T13:30:00Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "7280adef2fc431035a1966994fd2e6bf5c9808ec",
          "body": "The fanout's hub->target scp/ssh used the forwarded agent, which offers ALL\nnode keys; once the offered count exceeds the target sshd's MaxAuthTries\n(default 6) the connection is rejected with 'too many authentication failures',\nso fanout to most nodes failed. Stage each target's key on the hub and connect\nwith '-i <key> -o IdentitiesOnly=yes' (one key, like the working direct path);\nkeys are chmod 600 and removed when the fanout ends. Restores fast one-upload +\ncluster-distribution deploys.",
          "is_bot": false,
          "headline": "fix(cli): stage per-target keys on hub for fanout (avoid MaxAuthTries)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T12:34:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "84654f81769cf4d48082d77a205960954b07a0e6",
          "body": "extractOnNode removed the uploaded tarball with 'rm -f' immediately after\nextraction — including on the hub. The fanout step then scp'd that now-deleted\narchive from the hub to every other node, so every fanout deploy failed\n('scp: stat local ...: No such file') and fell back to slow per-node direct\nuploads. Keep the archive on the hub until the fanout completes, then remove it.\nRestores one-upload + cluster-distribution deploys.",
          "is_bot": false,
          "headline": "fix(cli): keep archive on hub during fanout push",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:29:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "18f8f2dd2eeaad089bde2c8fc4bd2edd55872bba",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.64",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:25:34Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ab1841babbe9707b835062c09baf134ec5ff6be0",
          "body": "…#898 review)\n\nCode-review MEDIUM: a warmer goroutine completing AFTER its pool was torn down\n(Invalidate on redeploy / LRU-evict / Close) sent its instance into a detached\nchannel that nothing drains -> the wazero instance was never Closed (a slow\nresource leak recurring on every redeploy/eviction;\n[…]\nnt invocation's singleton identity. And a reactor pool MISS (cold\nfallback) now records its instantiate duration into the bugboard #27 slow-invoke\ndiagnostic instead of mis-reporting instantiate_ms=0.",
          "is_bot": false,
          "headline": "fix(serverless): close reactor instances warmed after pool teardown (…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:16:16Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "0371c973186bba3755f269645227066751861e45",
          "body": "…rt (#898)\n\nEvery stateless invocation re-instantiates the module, running TinyGo's\n_start/_initialize runtime init on the request's critical path (~550ms for\ncomplex functions). Add a reactor-mode path: a function built -buildmode=c-shared\nthat exports handle(ptr,len)->packed is served from a per-m\n[…]\nml reactor:true (build flag) + the handle export. Per-call\nidentity rides ctx (WithInvocationContext); the reactor contract requires init()\nto be identity-independent (do per-caller work in handle()).",
          "is_bot": false,
          "headline": "feat(serverless): reactor-mode pre-warm pool — remove ~550ms cold-sta…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T07:10:06Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "08cf4185615f8dc1b87e9efc8bb8886fe5b076a1",
          "body": "…ilds)\n\nThe stale 0.14.0 pin does not compile vault-guardian: 0.14.0 fails with\n'expected 32 array elements' on src/main.zig and 0.16.0 fails with\n'GeneralPurposeAllocator' removed. 0.15.2 cross-compiles cleanly to\nx86_64-linux-musl (verified). This unblocks a full-stack 'orama node rollout'\nfrom a fresh checkout (AnChat #1230/#1233).",
          "is_bot": false,
          "headline": "fix(vault): pin zig toolchain to 0.15.2 (the version that actually bu…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T06:47:05Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "fe43c712cb4ca00134513b031d7b627fa1651bcf",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.63",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T06:42:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9b59cd6c3e40894cc53fb4bddce8e87c397698b7",
          "body": "When a device registers a (device_id, token) under user W, evict any OTHER\npush_devices row in the same namespace carrying the SAME physical token, so one\nAPNs/VoIP token maps to a single active owner. Fixes the cross-account leak\nwhere a second account on one device coexisted on the same physical t\n[…]\nuccessful registration.\n\nAlso return {status,id,device_id} on register (ask 2) so a client can DELETE\ndirectly without GET-then-match; one-time best-effort backfill of token_fp for\npre-migration rows.",
          "is_bot": false,
          "headline": "feat(push): token-exclusive device registration + return row id (#981)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-22T06:42:24Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "91ac2c1fa7091f421a8f5d51a5b10c385d63475e",
          "body": "…nto nightly",
          "is_bot": false,
          "headline": "Merge branch 'nightly' of https://github.com/DeBrosOfficial/network i…",
          "author_name": "JohnySigma",
          "author_login": "JohnySigma",
          "committed_at": "2026-06-19T16:10:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ad766880b31ee854876950d5d5d1a53e00d10ca5",
          "body": "…er active user)\n\npush_devices Upsert now evicts rows owned by a different user for the same\nnamespace and device_id after a successful upsert. A physical device push token\nbelongs to exactly one signed-in identity at a time; without this a previous\naccount that signed in on the device keeps a live \n[…]\ntenant rows), best-effort (logs, never\nfails registration), matches plaintext device_id since the token is AES-GCM\nencrypted. Auto-cleans pre-existing orphans on the next sign-in. Tracked as\nfeat-135.",
          "is_bot": false,
          "headline": "feat(push): token-exclusive device registration (one physical token p…",
          "author_name": "JohnySigma",
          "author_login": "JohnySigma",
          "committed_at": "2026-06-19T16:06:18Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "47ef9f990d4be48b88723bb66ec31411387335a3",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.62",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T08:28:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4790c9ac3f892fc884fbbc9916192fb8889fb15",
          "body": "…rama-node (#846)\n\nThe upgrade runs Phase6bSetupFirewall ('ufw --force reset' + base rules) as\nroot, wiping the TURN relay ports on every upgrade. orama-node runs as a\nnon-root user and CANNOT modify ufw, so the restore-path EnsureTURNFirewall I\nfirst added was a no-op (a doomed 'ufw' call). Move th\n[…]\npFirewall: ps.hostRunsTURN() -> TURNEnabled + relay range\n- remove the non-root EnsureTURNFirewall (restore path + method)\n- tests: hostRunsTURN env-file detection + non-TURN node opens no relay ports",
          "is_bot": false,
          "headline": "fix(turn): re-open TURN relay ports in the root firewall setup, not o…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T08:28:17Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "29064ed0e61a62c9966d7988d79ee1893ac06d09",
          "body": "…from message_id (#833)\n\nThread an optional MessageID through PushMessage -> the APNs apns-collapse-id\nheader (capped at 64 bytes) and Expo's collapseId field (which Expo maps to FCM\ncollapse_key / APNs apns-collapse-id). A superseded or duplicate push now\ncollapses on-device instead of stacking. Empty MessageID preserves the prior\nbehavior (each push distinct). No native FCM send provider exists, so the FCM\ncollapse_key is covered via the Expo path.",
          "is_bot": false,
          "headline": "feat(push): collapse identifier (apns-collapse-id / Expo collapseId) …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:45:17Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b5f09df60a95123d67d870e8a7e8d8851d58d28e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.61",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:20:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "c67321d486d04ffb1b171819c6a06f342942e99f",
          "body": "…logging (#858)\n\n- ntfy keepalive-interval 45s->25s: the default is too long for aggressive\n  carrier NATs that silently drop idle long-lived /json streams (open-but-silent)\n- fan-out partial-failure log now names the failed node IPs + a topic fingerprint\n  (hashed, not the subscribable topic) so a lost push is diagnosable",
          "is_bot": false,
          "headline": "fix(push): tune ntfy keepalive for mobile NATs + diagnosable fan-out …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:18:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d759826bd41326d6e5621e836e071ac2a5a54e92",
          "body": "…irewall (#846)\n\nThe boot-time TURN restore path passed PublicIP:\"\" (with a false \"spawner\nresolves it\" comment), so a TURN node that rebooted came back crash-looping on\n\"turn.public_ip: must not be empty\" — yielding zero ICE relay candidates AND\nnever reaching AddWebRTCRules, so the relay UDP ports\n[…]\nublic_ip loudly instead of writing a doomed config\n- relay firewall rules re-ensured on every boot (idempotent) so a node-level\n  'ufw --force reset' that wiped them while TURN kept running self-heals",
          "is_bot": false,
          "headline": "fix(turn): resolve node public IP on TURN restore + self-heal relay f…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-19T07:18:12Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "5624ef0faa2cb07febeb8b049da2885173f88a05",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.60",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T20:08:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e3b2f08a0a5c0615c6e593987cdcb6ff8ca09eaf",
          "body": "… activates (#858)\n\nThe ntfy fan-out (publish each push to every active push node so a\nround-robin-DNS-pinned subscriber receives it) was coded but INERT: the\ngateway's cfg.NtfyBaseURL was never populated, so the fan-out resolver was\nnever built and pushes went single-host (the ~87% loss the bug des\n[…]\nng-upgrade safe: Phase 4 regen runs under the\nnew binary (post-swap), so an old binary never reads a node.yaml with the new\nfield. DecodeStrict regression guard added (mirrors secrets_encryption_key).",
          "is_bot": false,
          "headline": "fix(gateway): plumb ntfy_base_url into gateway config so push fan-out…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T20:08:39Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "3779ba9502f7903f562233939a2ce84b963c6ea6",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.59",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T18:57:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "92428df7e939275ad46307a83c252bf5f6e8e8d5",
          "body": "caddy/coredns declare Requires=orama-node.service, so stopping orama-node\ncascade-stops them; Requires propagates STOP but not START, and\nStartServicesOrdered only starts the orama services — so a bare\n'orama node restart' left caddy dead and the node's :443 HTTPS frontend\noffline until the next reboot. Capture the active frontend units before the\nstop and restart exactly those after the gateway is healthy. Adds\nServiceUnitExists helper + selectFrontendToRestore policy test.",
          "is_bot": false,
          "headline": "fix(cli): node restart restores the caddy/coredns frontend",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T18:57:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d4bf187e943884f81525c084f3ff315f0951e036",
          "body": "APIKeyToJWTHandler looked up the namespace by the raw api key, but keys are\nstored HMAC-hashed (Service.HashAPIKey), so it always returned 'invalid API\nkey' for real keys — no api-key holder could exchange for a JWT. Resolve the\nhashed key first with a raw-key fallback for legacy rows, mirroring the\ngateway middleware's lookupAPIKeyNamespace. Adds args-aware mock + tests for\nthe hashed-key, raw-fallback, and unknown-key paths.",
          "is_bot": false,
          "headline": "fix(gateway): /v1/auth/token resolves HMAC-hashed api keys",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T18:57:29Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd869a588f48a4c52a2ff39470a242eef8cde862",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.58",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T11:46:49Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "123ca90b659d64e276a83327c93a35a4c3a2cbea",
          "body": "…can (#837)\n\nThe base64 wrapper wasn't enough: DBSecretsManager scanned encrypted_value\ninto []byte, so the rqlite client applied base64 binary semantics on read and\nthe ciphertext never round-tripped — get_secret stayed empty. Mirror the\nproven push-credentials store exactly: encrypt to a 'enc:'-prefixed base64\nstring via pkg/secrets and scan the column into a STRING for Decrypt. Text\nround-trips cleanly through rqlite regardless of the BLOB column.",
          "is_bot": false,
          "headline": "fix(serverless): get_secret round-trip via secrets.Encrypt + string s…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T11:46:36Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a59017350b0572b40e729f4a896b7ef328e981a0",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.57",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T10:55:03Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b77c3dae976368c47ea65bb3bb32b015c8e87efa",
          "body": "51.83.128.181, 144.217.160.15, 144.217.163.114 were removed from the cluster\npermanently and must never be targeted by rollouts/monitoring again.",
          "is_bot": false,
          "headline": "chore(devnet): remove 3 permanently-decommissioned nodes from nodes.conf",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T10:54:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7165992b123901394e1c065b510f94bfa76e74a9",
          "body": "…red secrets (#837)\n\nSecond #837 root cause (the key-derivation fix was necessary but not\nsufficient): DBSecretsManager stored the AES-GCM ciphertext as a raw []byte\nparameter, but the rqlite client serializes []byte as base64 and reads it\nback as that base64 TEXT — never the original bytes. So decr\n[…]\n Set and decode it in\nGet (with a raw fallback), making the round-trip symmetric and\ndriver-independent. The test mock now emulates rqlite's blob->base64-text\nbehavior so it's a real regression guard.",
          "is_bot": false,
          "headline": "fix(serverless): get_secret returns empty — base64 round-trip for sto…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T10:54:35Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "dcc17f1e9029de5dd4435a38adc4b7761fdf508b",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.56",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T08:20:32Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "7b5587094d432d7bbd73f11b054cf63d99e824fc",
          "body": "The namespace-ownership middleware compared an api_key caller's RAW key\nagainst namespace_ownership.owner_id, but api_keys are stored HMAC-hashed\n(HashAPIKey). So every api_key-authenticated owner got a 403 on a namespace\nthey actually own — blocking function deploy and PUT /v1/push/config.\n\nHash th\n[…]\nrade legacy fallback), mirroring the existing\nlookupAPIKeyNamespace pattern. The wallet path is unchanged (wallets stored\nraw). Security-reviewed: grants only to the correct key holder, no\nescalation.",
          "is_bot": false,
          "headline": "fix(gateway): api_key owners no longer 403 on namespaces they own",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T08:20:23Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b1b8ac57d5e247f59a8386dd0709c14be20b490d",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.55",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T05:05:47Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9c213a166c04ef9bfb740d6e253a8d157603c9df",
          "body": "The 5-10s RPCs that broke calling were not cold-start — they were\nper-RPC sequential rqlite reads, each forwarded to a raft leader that\ngeography-blind election had placed on a 256ms-distant node.\n\nLever A (serverless): cache function metadata + env vars in-process\n(5s TTL, invalidated on deploy/ena\n[…]\nr, via rqlite's transfer-leadership API. All nodes stay\nvoters — membership, quorum and fault tolerance are unchanged. Cuts the\nper-hop cost from ~274ms to ~20ms when a distant node had become leader.",
          "is_bot": false,
          "headline": "feat(serverless,namespace): cut namespace gateway RPC latency (#708)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-15T05:05:38Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "61635c4ce7e00b47c66c0bfa2705b015c4bbb4b7",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.54",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T06:25:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "34f9da6f8d8dfdb69b444b364418e3fbd2df7990",
          "body": "…ryption\n\n- Add `ntfyFanoutResolver` to distribute push notifications across all active cluster nodes, ensuring delivery when nodes lack shared state.\n- Refactor secrets encryption key derivation to use cluster-wide secrets via HKDF, replacing ephemeral per-node keys to fix cross-node decryption issues.\n- Add unit tests for fan-out resolution logic and caching behavior.",
          "is_bot": false,
          "headline": "feat(gateway): implement ntfy cluster fan-out and improve secrets enc…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T06:23:14Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4ae8fa941d1f012ca908fa2411dc230acb6fdd52",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.53",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T05:13:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "2b184f0398cdb0076e9c79854ab6f3aab9ba18ca",
          "body": "…130)\n\nRoot cause of the recurring \"turn.credentials → namespace_not_configured\" on a\ndistant node: at converge the gateway resolves its TURN secret from the\nnamespace rqlite, and on a slow/just-restarted node that read fails ONCE, so\nthe gateway is written with TURN disabled. Removing the node is n\n[…]\nand the next converge re-caches the new value.\n\nDual-reviewed: code-quality APPROVED; security SECURE after the remote-write\n0600 fix. Tests: cache populate + short-circuit, no-change, turn-only node.",
          "is_bot": false,
          "headline": "fix(namespace): make WebRTC config survive slow/cold node restarts (#…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T05:12:48Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "66db54c094edd2f45dc6163351bceab66b995211",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.52",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-13T04:53:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cf21668782fe559026d9a96807dbb3a7eacde2e9",
          "body": "…s status (#132)\n\nVoIP call-invite pushes set no apns-expiration, so apns2 omits the header and\nAPNs store-and-forwards the push — delivering it minutes late and firing a\nphantom \"missed call\" ring long after the call ended (and burning PushKit\ngoodwill, inviting throttling). Cap the VoIP apns-expir\n[…]\ning \"http=0\", which reads like an opaque failure\nand masked real false-success classes.\n\nTests: VoIP push carries an expiration within the ring-window cap; alert push\ncarries none. push package green.",
          "is_bot": false,
          "headline": "fix(push): cap VoIP apns-expiration to the ring window; record succes…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T14:49:44Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "33600092a8b5b6ca4c107c841d3dc0e44a7d7f01",
          "body": "A lost rotation response strands the client on a just-revoked token: the retry\nhits res.Count==0 → genuine 401 → SIWE, which is impossible on a VoIP-woken\nlocked screen, so the call dies. This recurred under the reconnect storms from\ntoday's gateway rolls.\n\nAdd an RFC 9700 §4.13.2 reuse grace: a ref\n[…]\nual-reviewed: code-quality APPROVED; security SECURE after the logout-bypass\nfix. Tests: lost-response recovery, single-use second-attempt 401, genuine bad\ntoken 401, and the logout-bypass regression.",
          "is_bot": false,
          "headline": "fix(auth): bounded single-use refresh-token reuse grace (#125)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T14:42:36Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "f3145f1b903233ab28c3f72ef16f9523891291f6",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.51",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T13:48:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "6f5b2db95e2b2598934c52dcc0eb6b30da1aeb53",
          "body": "The HTTP client re-threw the raw platform error on a transport failure, so\ncallers (e.g. AnChat's JwtSession driving client.auth.refresh/challenge) could\nonly tell \"couldn't reach the gateway\" from a real HTTP error by string-\nmatching `TypeError: Network request failed`. The typed SDKError was buil\n[…]\n\n\nTests: tests/unit/http/network-errors-bug-129.test.ts (TypeError->NETWORK_ERROR,\nAbortError->TIMEOUT, real 401 passes through, callback gets the typed error).\nFull unit suite green, typecheck clean.",
          "is_bot": false,
          "headline": "fix(sdk): surface typed SDKError on network/timeout failures (#129)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T13:44:37Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "e7ed71896543a2eed1b1e329f0afb42d749bacc6",
          "body": "…cret (#130)\n\nA freshly-joined namespace node could come up with TURN silently disabled\n(turn.credentials -> namespace_not_configured) when GetWebRTCConfig errored:\nthe stored TURN shared secret was encrypted with a pre-rotation\ncluster-secret-derived key and failed to decrypt, and the converge swal\n[…]\nd; operator disable still resolves to disabled, not unresolved).\n\nPure-function coverage in restore_webrtc_test.go: unresolved marking,\nresolved-empty-is-disabled, and state-secret-wins-over-db-error.",
          "is_bot": false,
          "headline": "fix(namespace): don't silently disable TURN on unresolvable WebRTC se…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T13:44:25Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "021d362b2f207bf013a308681cc23ccb21e2a6be",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.50",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T07:14:00Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4d700aed547d892776f6eefa4f80458ae54c4692",
          "body": "- implement `wsJWTExpired` to validate token lifetime with a grace period\n- capture jwt expiry at connection upgrade and update via auth.refresh\n- close connections with custom code 4401 when tokens expire to force re-auth\n- add unit tests to verify expiry logic and state transitions",
          "is_bot": false,
          "headline": "feat(gateway): enforce jwt expiry on persistent websockets",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T07:12:21Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "d113b754975d4b15b4d20d9a6311bb3314030028",
          "body": "Custom JWT claims survive token refresh: migration 031 adds the\ncustom-claims column to refresh tokens, the new gateway ClaimsProvider\nre-resolves claims on refresh, and the serverless invoke path carries\nthem through. Includes refresh-rotation, WS-JWT middleware, and\nclaims-provider test coverage.",
          "is_bot": false,
          "headline": "feat(auth): refresh-token custom claims hook (#548)",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-12T05:05:27Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8b8f0a4251450a37f2e054ffe785decc4eb8fdfd",
          "body": "release: 0.122.47 — nightly → main",
          "is_bot": false,
          "headline": "Merge pull request #93 from DeBrosDAO/nightly",
          "author_name": "anonpenguin",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T14:37:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8472861ed3cb9d9bc56d2124a26e67e5feeafaa1",
          "body": "Reconciles the divergence created by the May-13 nightly history rewrite\n(main absorbed pre-rewrite SHAs via PRs #90-92). Content conflicts all\nresolve in nightly's favor; nightly is the deployed, verified branch\n(v0.122.47 live on devnet).",
          "is_bot": false,
          "headline": "merge main into nightly — keep nightly (staging) on all conflicts",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T14:32:37Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cd8c717363b0d23bb876d067add7ed6a1aa5345d",
          "body": "- refactor(turn): extract decodeTURNConfig for testability\n- feat(turn): add stealth domain fields to config\n- fix(apns): nest custom data under \"body\" for expo-notifications compatibility",
          "is_bot": false,
          "headline": "chore(version): bump to 0.122.47",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T08:45:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f4c58db710d839bd26e291f1af4635c9a8070212",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.46",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T07:06:19Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8375d92109a0578b6477d50ba681b114f9e0bf4d",
          "body": "- Implement `resolveStealthCert` to use existing `*.<baseDomain>` wildcard certificates instead of dynamic Caddyfile provisioning.\n- Avoids EROFS errors caused by `ProtectSystem=strict` on the orama-node service.\n- Add strict validation to ensure stealth hosts are single-label subdomains covered by the wildcard.",
          "is_bot": false,
          "headline": "feat(namespace): reuse caddy wildcard certificate for stealth turns",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T07:04:45Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "37daf28b5a9018ce74e831af63469b57cc4e3a90",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.45",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T05:00:31Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b425f80efb7db59c190e561fbbe17f72a82f41da",
          "body": "…rash\n\nb9d5f54 (stealth TURN discovery) emits a top-level `sni_router:` block\ninto node.yaml unconditionally, but only added a lenient ad-hoc parse\nin the carry-forward logic — not the field on config.Config that\norama-node strict-decodes (KnownFields(true)) at boot. Identical\nfailure mode to the v0\n[…]\nhole node.yaml parse and orama-node crash-loops.\n\nCaught pre-deploy this time by the strict-decode gate check; devnet\nnever saw it. Regression test added alongside the v0.122.42 one in\ndecode_test.go.",
          "is_bot": false,
          "headline": "fix(config): add sni_router to root Config — prevents feat-124 boot c…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T05:00:31Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b9d5f542e1278eb75ea45d01b9edca6733fe719b",
          "body": "- Add `turn_stealth_domain` to gateway config for stealth TURN support\n- Introduce `turn_discovery` in `sni-router` to auto-discover per-namespace routes\n- Add database migration to enable stealth TURN per namespace\n- Document ephemeral state API in `SERVERLESS.md`",
          "is_bot": false,
          "headline": "feat(gateway): implement stealth TURN discovery and configuration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-11T04:04:50Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f192cd0b84181eee234261e3b008ce817a6d607a",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.44",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-10T09:13:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ff3e273da8ed2809ad9c7fc4f9a152cecd4b105d",
          "body": "- add `secrets_encryption_key` to gateway config for serverless secrets\n- implement durable TURN secret persistence to prevent config regen outages\n- add regression test for gateway config loading and field mapping",
          "is_bot": false,
          "headline": "feat(gateway): implement persistent secrets and webrtc configuration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-10T09:10:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4c631243b32d8d4874d4bea65307d77d1463d727",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.43",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T12:57:33Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "e685c864fc52bd1280764774637a6a4a1d5cfea3",
          "body": "…orama-node boot crash\n\nv0.122.42 (f412425, secrets encryption) shipped the template emission,\nthe per-cluster secret generator, and the gateway.Config consumer — but\nNOT the parse field on config.HTTPGatewayConfig. Phase 4 writes\n`secrets_encryption_key` into node.yaml under the http_gateway sectio\n[…]\nstandalone gateway (cmd/gateway/config.go) uses lenient parsing and\nwas unaffected.\n\nRegression test in pkg/config/decode_test.go decodes a node.yaml\ncarrying secrets_encryption_key under strict mode.",
          "is_bot": false,
          "headline": "fix(config): add secrets_encryption_key to HTTPGatewayConfig — fixes …",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T12:57:32Z",
          "body_truncated": true,
          "is_coding_agent": false
        },
        {
          "oid": "b6b518e0056119fd124280a6b63d585893e86af9",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.42",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T10:01:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f41242538ee75dfda4c6e435a54f5c814d5ab4d8",
          "body": "- Add `raw_http_response` configuration to functions to allow verbatim HTTP responses\n- Implement cluster-wide secrets encryption key generation and distribution for serverless functions\n- Update documentation with UnifiedPush support for ntfy on Android/GrapheneOS",
          "is_bot": false,
          "headline": "feat(serverless): add raw http response mode and secrets encryption",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T10:01:02Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "aa04ab5f509bced88aa57d58991aa2bbbeaf0fae",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.41",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T06:24:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f8de4af704386f07631e9919ccd700e36b30b33f",
          "body": "- Add `FileRouteReloader` to watch and atomically update routes from disk\n- Refactor `main` to support seamless configuration updates without restarts\n- Ensure existing routes are preserved if a reload encounters an error",
          "is_bot": false,
          "headline": "feat(sni-router): implement hot-reloading for route configuration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-09T06:23:54Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "32f7b3824e3d967480ffd0935f3c7256c6de3b05",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.40",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-04T07:08:59Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "eade6e17425b9e833d48bf28f020744a1e7763f9",
          "body": "- Remove the 2-second polling wait for gossipsub mesh formation in `Publish`\n  to eliminate unnecessary latency, relying on `FloodPublish` for delivery.\n- Introduce a per-invocation publish budget (1000 messages) to prevent\n  potential flooding of the shared gossipsub router by WASM functions.\n- Add regression tests to ensure `Publish` remains non-blocking and that\n  the publish budget is strictly enforced.",
          "is_bot": false,
          "headline": "feat(pubsub): remove mesh formation wait and add publish rate limiting",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-04T07:08:10Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "f3875d51578d5554456bf4a5fe1092e23c9f41ef",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.39",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-02T12:06:48Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9373c2ad92723fa4372773915a15bf9a64eef541",
          "body": "- Introduce `BatchQueryConsistency` with `ReadConsistencyNone` to allow\n  local SQLite reads, bypassing leader round-trips for performance.\n- Add `function_invoke_async` host function to support non-blocking\n  fire-and-forget function execution.",
          "is_bot": false,
          "headline": "feat(rqlite,serverless): add local read consistency and async invocation",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-01T16:59:30Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2a3bff88c780e097b18bcc4eb3cd6e8cd1ff35c",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.38",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-01T07:13:15Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "ca4ccbfcd40c71c06a1ba768106e6c140463c33e",
          "body": "- split webrtc route gating into `webrtcServeTURNCredentials` and `webrtcServeSFURoutes` to allow non-SFU gateways to mint TURN credentials\n- update `chooseRestoreWebRTC` to correctly resolve configurations for nodes without local SFU ports\n- add unit tests to verify independent route registration logic (bugboard #25)",
          "is_bot": false,
          "headline": "feat(gateway): decouple turn credentials and sfu route registration",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-06-01T07:12:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "a3cf8384e96390544a309f1f6e004cb2f12ad0ac",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.37",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T16:27:25Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bf0d5f9f9fa446d8637ca6be5e8eac22a2eaa6c4",
          "body": "- Add logic to reconcile gateway configuration drift for running instances\n- Prevent unnecessary restart loops by verifying on-disk config state\n- Add unit tests to validate synchronization logic and prevent regressions",
          "is_bot": false,
          "headline": "feat(namespace): implement warm reconciliation for gateway webrtc config",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T16:26:26Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "3987ad0cf37cb3e2531533e43dc3144946592137",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.36",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T11:41:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "4fc975216f334b1ad49518b6a707845e6bc3d1ce",
          "body": "- Add internal WebRTC management endpoints to public path exemption list\n- Implement DB fallback for WebRTC configuration during cluster restore\n- Add unit tests to verify WebRTC config precedence and state self-healing",
          "is_bot": false,
          "headline": "feat(gateway): fix WebRTC config persistence and endpoint access",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-30T11:39:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "9bace7bbf440b34f0ce84269db010713568f4880",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.35",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-29T09:09:12Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "325a2471c7ab7df488a2d4c9e77f9d43d34b4bdc",
          "body": null,
          "is_bot": false,
          "headline": "Changes",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-29T08:46:20Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0d352d0b4235ad72fd0b6b850966f11ea955ee3e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.34",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-28T06:55:42Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "cfff08d91e4608b0e095dae60356e8158097e1a5",
          "body": "…ion diagnostics\n\n- Implement `turn_credentials` host function to provide TURN configuration to WASM modules.\n- Add structured logging for slow serverless invocations exceeding 5s, providing per-phase timing (rate-limit, module-load, execution) to identify performance bottlenecks.\n- Enhance WebSocket handler logging to capture request context when 30s timeouts occur.",
          "is_bot": false,
          "headline": "feat(serverless): add turn_credentials host function and slow invocat…",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-28T06:54:24Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "8fbc4485c1e85d35c2aeeb52d32e8b7897da9108",
          "body": "- opt into `WithSysWalltime` and `WithSysNanotime` to prevent wazero from using a frozen sentinel clock\n- add regression tests to verify real-time clock behavior in wasm execution\n- ensure serverless functions receive accurate timestamps for audit and cursor logic",
          "is_bot": false,
          "headline": "fix(serverless): enable system clocks for wasm modules",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-26T07:53:07Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1399b22676ab5172ee49f79ddf1bcafe86ac691e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.33",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T07:25:51Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "1faf04e2a353f0cf72517c15a13505eb5ffff463",
          "body": "- Add `enable` and `disable` commands to manage function status\n- Implement process re-exec in the upgrade orchestrator to ensure\n  Phase 4 config generation uses the newly-installed binary version\n  (fixes bugboard #15)",
          "is_bot": false,
          "headline": "feat(cli): add function enable/disable and fix upgrade re-exec",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T07:25:04Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "bc2c25ff16c83fd6a2d169baecee211e6c45b2c1",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.32",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T06:35:16Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "b2d35bbde1e5baf8cab8c7bfce3942ad3bd1ef8b",
          "body": "- wire PubSubDispatcher to host functions to support local wildcard\n  triggers for WASM-published topics\n- implement batch deduplication by topic to prevent redundant trigger\n  invocations and bound fan-out\n- propagate trigger depth through function invocations to maintain\n  recursion limits during local dispatch",
          "is_bot": false,
          "headline": "feat(gateway): enable local wildcard triggers for pubsub",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-25T06:34:01Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "0463f37c0d7d23a75599bbd9a67723f96b1361e5",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.31",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T17:57:52Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "98dad46a8134531b511295a051f9434df4d1c310",
          "body": "- Update route registration logic to rely solely on SFUPort > 0, resolving a silent 404 issue where gateways with valid SFU configurations were incorrectly disabled.\n- Retain WebRTCEnabled in config for backward compatibility with existing operator YAML and request schemas.\n- Add unit tests to pin registration behavior and prevent future regressions.",
          "is_bot": false,
          "headline": "fix(gateway): decouple webrtc route registration from legacy flag",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T17:56:08Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "877563b86f638ea20f35c013f398ea5994b4af6e",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.30",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T16:39:39Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "62e4d1963bb694a5d5f3d7bc591d6e19d0392348",
          "body": "- register \"apns_voip\" provider to handle PushKit/CallKit signals\n- implement target provider filtering in dispatcher to prevent cross-talk\n  between alert and VoIP push paths\n- add comprehensive tests to ensure backward compatibility for fan-out\n  and correct filtering behavior",
          "is_bot": false,
          "headline": "feat(gateway): add apns_voip provider support",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-24T16:38:38Z",
          "body_truncated": false,
          "is_coding_agent": false
        },
        {
          "oid": "57eb9f4f665cdb6b47a8edc4a3e8803d215aab92",
          "body": null,
          "is_bot": false,
          "headline": "release: 0.122.29",
          "author_name": "anonpenguin23",
          "author_login": "anonpenguin23",
          "committed_at": "2026-05-23T09:49:53Z",
          "body_truncated": false,
          "is_coding_agent": false
        }
      ],
      "releases_count": 100,
      "commits_last_year": 1253,
      "latest_release_at": "2026-07-06T19:18:45Z",
      "latest_release_tag": "v0.122.80-nightly",
      "releases_from_tags": false,
      "days_since_last_push": 11,
      "active_weeks_last_year": 39,
      "days_since_latest_release": 18,
      "mean_days_between_releases": 2.3
    },
    "community": {
      "has_readme": true,
      "has_license": true,
      "has_description": true,
      "has_contributing": true,
      "health_percentage": 75,
      "has_issue_template": false,
      "has_code_of_conduct": true,
      "has_pull_request_template": true
    },
    "ecosystem": {
      "packages": [
        {
          "name": "github.com/DeBrosOfficial/network",
          "exists": true,
          "license": null,
          "keywords": [],
          "ecosystem": "go",
          "matches_repo": false,
          "registry_url": "https://pkg.go.dev/github.com/DeBrosOfficial/network",
          "is_deprecated": false,
          "latest_version": "v0.122.74",
          "repository_url": "https://github.com/DeBrosOfficial/network",
          "versions_count": 167,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": null,
          "monthly_downloads": null,
          "first_published_at": null,
          "latest_published_at": "2026-07-04T17:47:27Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 20
        },
        {
          "name": "@debros/orama",
          "exists": true,
          "license": "MIT",
          "keywords": [
            "debros",
            "network",
            "sdk",
            "typescript",
            "database",
            "rqlite",
            "pubsub",
            "websocket",
            "cache",
            "olric",
            "ipfs",
            "storage",
            "wasm",
            "serverless",
            "distributed",
            "gateway",
            "vault",
            "secrets",
            "shamir",
            "encryption",
            "guardian"
          ],
          "ecosystem": "npm",
          "matches_repo": false,
          "registry_url": "https://www.npmjs.com/package/@debros/orama",
          "is_deprecated": false,
          "latest_version": "0.122.80-nightly",
          "repository_url": "https://github.com/DeBrosOfficial/network",
          "versions_count": 18,
          "total_downloads": null,
          "dependents_count": null,
          "deprecation_note": null,
          "maintainers_count": 1,
          "monthly_downloads": 1288,
          "first_published_at": "2026-05-12T06:31:03.956000Z",
          "latest_published_at": "2026-07-06T19:19:10.614000Z",
          "latest_version_yanked": null,
          "days_since_latest_publish": 18
        }
      ]
    },
    "popularity": {
      "forks": 3,
      "stars": 11,
      "watchers": 1,
      "fork_history": {
        "days": [
          {
            "date": "2025-11-11",
            "count": 1
          },
          {
            "date": "2026-04-11",
            "count": 1
          },
          {
            "date": "2026-06-25",
            "count": 1
          }
        ],
        "complete": true,
        "collected": 3,
        "total_forks": 3
      },
      "star_history": null,
      "open_issues_and_prs": 1
    },
    "ai_readiness": {
      "has_nix": false,
      "example_dirs": [
        "examples"
      ],
      "has_llms_txt": false,
      "has_dockerfile": false,
      "has_mcp_signal": false,
      "bootstrap_files": [
        "Makefile",
        "core/Makefile",
        "os/Makefile"
      ],
      "api_schema_files": [],
      "has_devcontainer": false,
      "typecheck_configs": [
        "sdk/tsconfig.json",
        "website/tsconfig.json"
      ],
      "toolchain_manifests": [
        "core/go.mod",
        "core/testdata/apps/go-api/go.mod",
        "os/agent/go.mod",
        "website/invest-api/go.mod"
      ],
      "largest_source_bytes": 97691,
      "source_files_sampled": 1146,
      "oversized_source_files": 3,
      "agent_instruction_files": [
        ".github/copilot-instructions.md",
        "AGENTS.md",
        "CLAUDE.md"
      ],
      "agent_instruction_max_bytes": 536
    },
    "dependencies": {
      "manifests": [
        "core/go.mod",
        "sdk/package.json",
        "website/package.json"
      ],
      "advisories": {
        "error": null,
        "scope": "published_package",
        "source": "osv",
        "findings": [],
        "collected": true,
        "malicious": [],
        "truncated": false,
        "by_severity": {},
        "advisory_count": 0,
        "affected_count": 0,
        "assessed_count": 3,
        "malicious_count": 0,
        "assessed_package": "npm:@debros/orama@0.122.80-nightly",
        "unassessed_count": 0,
        "direct_affected_count": 0
      },
      "ecosystems": [
        "go",
        "npm"
      ],
      "dependencies": [
        {
          "name": "github.com/charmbracelet/bubbles",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.20.0"
        },
        {
          "name": "github.com/charmbracelet/bubbletea",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.4"
        },
        {
          "name": "github.com/charmbracelet/lipgloss",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.0.0"
        },
        {
          "name": "github.com/coredns/caddy",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.4"
        },
        {
          "name": "github.com/coredns/coredns",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.12.1"
        },
        {
          "name": "github.com/ethereum/go-ethereum",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.13.14"
        },
        {
          "name": "github.com/go-chi/chi/v5",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.2.3"
        },
        {
          "name": "github.com/google/uuid",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.6.0"
        },
        {
          "name": "github.com/gorilla/websocket",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.4-0.20250319132907-e064f32e3674"
        },
        {
          "name": "github.com/libp2p/go-libp2p",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.41.1"
        },
        {
          "name": "github.com/libp2p/go-libp2p-pubsub",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.14.2"
        },
        {
          "name": "github.com/mackerelio/go-osstat",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.2.6"
        },
        {
          "name": "github.com/mattn/go-sqlite3",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.32"
        },
        {
          "name": "github.com/mdp/qrterminal/v3",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.2.1"
        },
        {
          "name": "github.com/miekg/dns",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.1.70"
        },
        {
          "name": "github.com/multiformats/go-multiaddr",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.16.0"
        },
        {
          "name": "github.com/olric-data/olric",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.7.0"
        },
        {
          "name": "github.com/pion/interceptor",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.1.40"
        },
        {
          "name": "github.com/pion/rtcp",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.15"
        },
        {
          "name": "github.com/pion/turn/v4",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.0.2"
        },
        {
          "name": "github.com/pion/webrtc/v4",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v4.1.2"
        },
        {
          "name": "github.com/rqlite/gorqlite",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.0.0-20250609141355-ac86a4a1c9a8"
        },
        {
          "name": "github.com/sideshow/apns2",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.25.0"
        },
        {
          "name": "github.com/spf13/cobra",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.10.2"
        },
        {
          "name": "github.com/stretchr/testify",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.1"
        },
        {
          "name": "github.com/tetratelabs/wazero",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.11.0"
        },
        {
          "name": "go.uber.org/zap",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.27.0"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.47.0"
        },
        {
          "name": "golang.org/x/net",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.49.0"
        },
        {
          "name": "golang.org/x/sync",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.19.0"
        },
        {
          "name": "gopkg.in/yaml.v2",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v2.4.0"
        },
        {
          "name": "gopkg.in/yaml.v3",
          "manifest": "core/go.mod",
          "ecosystem": "go",
          "version_constraint": "v3.0.1"
        },
        {
          "name": "@noble/ciphers",
          "manifest": "sdk/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.5.3"
        },
        {
          "name": "@noble/hashes",
          "manifest": "sdk/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.4.0"
        },
        {
          "name": "isomorphic-ws",
          "manifest": "sdk/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.0.0"
        },
        {
          "name": "@gsap/react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.2"
        },
        {
          "name": "@mdx-js/react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.1.1"
        },
        {
          "name": "@radix-ui/react-accordion",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.12"
        },
        {
          "name": "@radix-ui/react-dialog",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.15"
        },
        {
          "name": "@radix-ui/react-dropdown-menu",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.16"
        },
        {
          "name": "@radix-ui/react-navigation-menu",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.14"
        },
        {
          "name": "@radix-ui/react-slot",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.4"
        },
        {
          "name": "@radix-ui/react-tabs",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.1.13"
        },
        {
          "name": "@radix-ui/react-tooltip",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.2.8"
        },
        {
          "name": "@react-three/drei",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^10.7.7"
        },
        {
          "name": "@react-three/fiber",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^9.5.0"
        },
        {
          "name": "@solana/wallet-adapter-base",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.9.27"
        },
        {
          "name": "@solana/wallet-adapter-react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.15.39"
        },
        {
          "name": "@solana/wallet-adapter-react-ui",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.9.39"
        },
        {
          "name": "@solana/wallet-adapter-wallets",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.19.37"
        },
        {
          "name": "@solana/web3.js",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^1.98.4"
        },
        {
          "name": "class-variance-authority",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.7.0"
        },
        {
          "name": "clsx",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^2.1.0"
        },
        {
          "name": "ethers",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.16.0"
        },
        {
          "name": "gsap",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.14.2"
        },
        {
          "name": "lightweight-charts",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^5.1.0"
        },
        {
          "name": "lucide-react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.511.0"
        },
        {
          "name": "mermaid",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^11.12.3"
        },
        {
          "name": "react",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.0"
        },
        {
          "name": "react-dom",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^19.1.0"
        },
        {
          "name": "react-router",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^7.6.1"
        },
        {
          "name": "rehype-slug",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^6.0.0"
        },
        {
          "name": "remark-gfm",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.1"
        },
        {
          "name": "shiki",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^4.0.0"
        },
        {
          "name": "tailwind-merge",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^3.3.0"
        },
        {
          "name": "three",
          "manifest": "website/package.json",
          "ecosystem": "npm",
          "version_constraint": "^0.183.2"
        },
        {
          "name": "golang.org/x/crypto",
          "manifest": "os/agent/go.mod",
          "ecosystem": "go",
          "version_constraint": "v0.48.0"
        },
        {
          "name": "github.com/ethereum/go-ethereum",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.15.11"
        },
        {
          "name": "github.com/golang-jwt/jwt/v5",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v5.2.2"
        },
        {
          "name": "github.com/joho/godotenv",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.5.1"
        },
        {
          "name": "github.com/mattn/go-sqlite3",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.14.37"
        },
        {
          "name": "github.com/mr-tron/base58",
          "manifest": "website/invest-api/go.mod",
          "ecosystem": "go",
          "version_constraint": "v1.2.0"
        }
      ],
      "all_dependencies": {
        "error": "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository",
        "source": null,
        "packages": [],
        "collected": false,
        "truncated": false,
        "total_count": null,
        "direct_count": null,
        "indirect_count": null
      }
    },
    "maintainership": {
      "issues": {
        "open_prs": 0,
        "merged_prs": 56,
        "open_issues": 1,
        "closed_ratio": 0.971,
        "closed_issues": 34,
        "closed_unmerged_prs": 4
      },
      "bus_factor": 1,
      "bot_contributors": 0,
      "top_contributors": [
        {
          "type": "User",
          "login": "anonpenguin23",
          "commits": 1083,
          "avatar_url": "https://avatars.githubusercontent.com/u/200880785?v=4"
        },
        {
          "type": "User",
          "login": "JohnySigma",
          "commits": 61,
          "avatar_url": "https://avatars.githubusercontent.com/u/178774325?v=4"
        },
        {
          "type": "User",
          "login": "DeBrosOfficial",
          "commits": 8,
          "avatar_url": "https://avatars.githubusercontent.com/u/188804992?v=4"
        }
      ],
      "contributors_sampled": 3,
      "top_contributor_share": 0.94
    },
    "quality_signals": {
      "has_ci": true,
      "has_tests": true,
      "ci_workflows": [
        "ci.yml",
        "publish-sdk.yml",
        "release-apt.yml",
        "release.yaml",
        "security.yml"
      ],
      "has_docs_dir": false,
      "linter_configs": [],
      "has_editorconfig": false,
      "has_linter_config": false,
      "has_precommit_config": false
    },
    "security_signals": {
      "lockfiles": [
        "go.sum",
        "package-lock.json",
        "pnpm-lock.yaml"
      ],
      "scorecard": {
        "checks": [
          {
            "name": "Binary-Artifacts",
            "score": 8,
            "reason": "binaries present in source code",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#binary-artifacts"
          },
          {
            "name": "Branch-Protection",
            "score": 1,
            "reason": "branch protection is not maximal on development and all release branches",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#branch-protection"
          },
          {
            "name": "CI-Tests",
            "score": 10,
            "reason": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#ci-tests"
          },
          {
            "name": "CII-Best-Practices",
            "score": 0,
            "reason": "no effort to earn an OpenSSF best practices badge detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#cii-best-practices"
          },
          {
            "name": "Code-Review",
            "score": 10,
            "reason": "all changesets reviewed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#code-review"
          },
          {
            "name": "Contributors",
            "score": 0,
            "reason": "project has 0 contributing companies or organizations -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#contributors"
          },
          {
            "name": "Dangerous-Workflow",
            "score": 10,
            "reason": "no dangerous workflow patterns detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dangerous-workflow"
          },
          {
            "name": "Dependency-Update-Tool",
            "score": 10,
            "reason": "update tool detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#dependency-update-tool"
          },
          {
            "name": "Fuzzing",
            "score": 0,
            "reason": "project is not fuzzed",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#fuzzing"
          },
          {
            "name": "License",
            "score": 10,
            "reason": "license file detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#license"
          },
          {
            "name": "Maintained",
            "score": 10,
            "reason": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#maintained"
          },
          {
            "name": "Packaging",
            "score": 10,
            "reason": "packaging workflow detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#packaging"
          },
          {
            "name": "Pinned-Dependencies",
            "score": 0,
            "reason": "dependency not pinned by hash detected -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#pinned-dependencies"
          },
          {
            "name": "SAST",
            "score": 0,
            "reason": "SAST tool is not run on all commits -- score normalized to 0",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#sast"
          },
          {
            "name": "Security-Policy",
            "score": 0,
            "reason": "security policy file not detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#security-policy"
          },
          {
            "name": "Signed-Releases",
            "score": 0,
            "reason": "Project has not signed or included provenance with any releases.",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#signed-releases"
          },
          {
            "name": "Token-Permissions",
            "score": 0,
            "reason": "detected GitHub workflow tokens with excessive permissions",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#token-permissions"
          },
          {
            "name": "Vulnerabilities",
            "score": 0,
            "reason": "192 existing vulnerabilities detected",
            "documentation_url": "https://github.com/ossf/scorecard/blob/c395761df6afe1a69e476bc60a013a94bcbc153f/docs/checks.md#vulnerabilities"
          }
        ],
        "commit": "4a538ca07ad8c2980b8af94fe26f2e1c96961509",
        "ran_at": "2026-07-25T00:19:58Z",
        "aggregate_score": 4.7,
        "scorecard_version": "v5.5.0"
      },
      "has_codeql_workflow": false,
      "has_security_policy": false,
      "has_dependabot_config": false
    },
    "contribution_flow": {
      "collected": true,
      "ci_last_run_at": "2026-07-20T10:44:00Z",
      "oldest_open_prs": [],
      "last_merged_pr_at": "2026-07-04T17:47:28Z",
      "ci_last_conclusion": "FAILURE",
      "oldest_open_issues": [
        {
          "number": 84,
          "created_at": "2026-03-02T14:22:40Z",
          "last_comment_at": "2026-05-15T18:01:00Z",
          "last_comment_author": "JohnySigma"
        }
      ]
    }
  },
  "config": {
    "disabled_metrics": [],
    "disabled_categories": [],
    "disabled_components": {}
  },
  "source": {
    "url": "https://github.com/DeBrosDAO/orama",
    "host": "github.com",
    "name": "orama",
    "owner": "DeBrosDAO"
  },
  "metrics": {
    "overall": {
      "key": "overall",
      "band": "moderate",
      "name": "Overall health",
      "note": null,
      "notes": [],
      "value": 62,
      "inputs": {
        "security": 58,
        "vitality": 86,
        "community": 53,
        "governance": 49,
        "engineering": 63
      },
      "components": []
    },
    "categories": [
      {
        "key": "vitality",
        "band": "excellent",
        "name": "Vitality",
        "value": 86,
        "weight": 0.22,
        "metrics": [
          {
            "key": "development_activity",
            "band": "good",
            "name": "Development activity",
            "note": null,
            "notes": [],
            "value": 84,
            "inputs": {
              "commits_last_year": 1253,
              "human_commit_share": 1,
              "days_since_last_push": 11,
              "active_weeks_last_year": 39
            },
            "components": [
              {
                "key": "push_recency",
                "name": "Push recency",
                "detail": "last push 11 days ago",
                "points": 28.8,
                "status": "partial",
                "details": [
                  {
                    "code": "push_recency",
                    "params": {
                      "days": 11
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_cadence",
                "name": "Commit cadence",
                "detail": "39/52 weeks with commits",
                "points": 27,
                "status": "partial",
                "details": [
                  {
                    "code": "commit_cadence_weeks",
                    "params": {
                      "weeks": 39
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "commit_volume",
                "name": "Commit volume",
                "detail": "1253 commits in the last year",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "commits_last_year",
                    "params": {
                      "count": 1253
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "openssf_scorecard_maintained",
                "name": "OpenSSF Scorecard: Maintained",
                "detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "release_discipline",
            "band": "excellent",
            "name": "Release discipline",
            "note": null,
            "notes": [],
            "value": 90,
            "inputs": {
              "releases_count": 100,
              "latest_release_tag": "v0.122.80-nightly",
              "releases_from_tags": false,
              "days_since_latest_release": 18,
              "mean_days_between_releases": 2.3
            },
            "components": [
              {
                "key": "ships_releases",
                "name": "Ships releases",
                "detail": "100 releases published",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "releases_published",
                    "params": {
                      "count": 100
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "release_recency",
                "name": "Release recency",
                "detail": "latest release 18 days ago",
                "points": 36,
                "status": "met",
                "details": [
                  {
                    "code": "release_recency",
                    "params": {
                      "days": 18
                    }
                  }
                ],
                "max_points": 36
              },
              {
                "key": "release_cadence",
                "name": "Release cadence",
                "detail": "a release every ~2.3 days",
                "points": 27,
                "status": "met",
                "details": [
                  {
                    "code": "release_cadence",
                    "params": {
                      "gap": 2.3
                    }
                  }
                ],
                "max_points": 27
              },
              {
                "key": "openssf_scorecard_signed_releases",
                "name": "OpenSSF Scorecard: Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "abandonment",
            "band": "excellent",
            "name": "Abandonment",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "cap": null,
              "state": "maintained",
              "guards": [],
              "signals": [],
              "red_flag": false,
              "multiplier_pct": 100,
              "declared_reason": null,
              "unverified_reason": null,
              "unanswered_open_prs": null,
              "unanswered_open_issues": null,
              "days_since_last_merged_pr": null,
              "days_since_last_human_commit": 20,
              "days_since_last_human_commit_is_floor": false
            },
            "components": [
              {
                "key": "project_is_still_maintained",
                "name": "Project is still maintained",
                "detail": "last human commit 20 days ago",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "abandonment_maintained",
                    "params": {
                      "days": 20
                    }
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Is the project alive — is code being written and are releases shipping?"
      },
      {
        "key": "community",
        "band": "moderate",
        "name": "Community & Adoption",
        "value": 53,
        "weight": 0.18,
        "metrics": [
          {
            "key": "popularity",
            "band": "critical",
            "name": "Popularity & adoption",
            "note": null,
            "notes": [],
            "value": 19,
            "inputs": {
              "forks": 3,
              "stars": 11,
              "watchers": 1,
              "growth_state": "unverified",
              "growth_factor_pct": 100,
              "growth_unverified_reason": "no_history"
            },
            "components": [
              {
                "key": "stars",
                "name": "Stars",
                "detail": "11 stars",
                "points": 16.2,
                "status": "partial",
                "details": [
                  {
                    "code": "stars",
                    "params": {
                      "count": 11
                    }
                  }
                ],
                "max_points": 60
              },
              {
                "key": "forks",
                "name": "Forks",
                "detail": "3 forks",
                "points": 2.5,
                "status": "partial",
                "details": [
                  {
                    "code": "forks",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "watchers",
                "name": "Watchers",
                "detail": "1 watchers",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "watchers",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 15
              }
            ]
          },
          {
            "key": "community_health",
            "band": "excellent",
            "name": "Community health",
            "note": null,
            "notes": [],
            "value": 92,
            "inputs": {
              "has_readme": true,
              "has_license": true,
              "has_contributing": true,
              "has_issue_template": false,
              "has_code_of_conduct": true,
              "has_pull_request_template": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 22.5,
                "status": "met",
                "details": [],
                "max_points": 22.5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "recognized license (AGPL-3.0)",
                "points": 22.5,
                "status": "met",
                "details": [
                  {
                    "code": "license_standard",
                    "params": {}
                  },
                  {
                    "code": "license_spdx",
                    "params": {
                      "spdx": "AGPL-3.0"
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributing_guide",
                "name": "CONTRIBUTING guide",
                "detail": null,
                "points": 18,
                "status": "met",
                "details": [],
                "max_points": 18
              },
              {
                "key": "code_of_conduct",
                "name": "Code of conduct",
                "detail": null,
                "points": 13.5,
                "status": "met",
                "details": [],
                "max_points": 13.5
              },
              {
                "key": "issue_template",
                "name": "Issue template",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.2
              },
              {
                "key": "pr_template",
                "name": "PR template",
                "detail": null,
                "points": 6.3,
                "status": "met",
                "details": [],
                "max_points": 6.3
              }
            ]
          }
        ],
        "description": "Does the project have users, downloads, attention, and a welcoming setup for contributors?"
      },
      {
        "key": "governance",
        "band": "at_risk",
        "name": "Sustainability & Governance",
        "value": 49,
        "weight": 0.24,
        "metrics": [
          {
            "key": "maintainer_resilience",
            "band": "critical",
            "name": "Maintainer resilience (bus factor)",
            "note": null,
            "notes": [],
            "value": 14,
            "inputs": {
              "bus_factor": 1,
              "contributors_sampled": 3,
              "top_contributor_share": 0.94
            },
            "components": [
              {
                "key": "bus_factor",
                "name": "Bus factor",
                "detail": "1 contributor(s) cover half of all commits",
                "points": 9,
                "status": "partial",
                "details": [
                  {
                    "code": "bus_factor",
                    "params": {
                      "count": 1
                    }
                  }
                ],
                "max_points": 54
              },
              {
                "key": "commit_distribution",
                "name": "Commit distribution",
                "detail": "top contributor authored 94% of commits",
                "points": 1.4,
                "status": "partial",
                "details": [
                  {
                    "code": "top_contributor_share",
                    "params": {
                      "share": 94
                    }
                  }
                ],
                "max_points": 22.5
              },
              {
                "key": "contributor_breadth",
                "name": "Contributor breadth",
                "detail": "3 contributors",
                "points": 4.1,
                "status": "partial",
                "details": [
                  {
                    "code": "contributors_sampled",
                    "params": {
                      "count": 3
                    }
                  }
                ],
                "max_points": 13.5
              },
              {
                "key": "openssf_scorecard_contributors",
                "name": "OpenSSF Scorecard: Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "responsiveness",
            "band": "excellent",
            "name": "Issue & PR responsiveness",
            "note": null,
            "notes": [],
            "value": 96,
            "inputs": {
              "merged_prs": 56,
              "open_issues": 1,
              "closed_issues": 34,
              "issue_closed_ratio": 0.971,
              "closed_unmerged_prs": 4
            },
            "components": [
              {
                "key": "issue_resolution",
                "name": "Issue resolution",
                "detail": "97% of issues closed",
                "points": 45.4,
                "status": "partial",
                "details": [
                  {
                    "code": "issues_closed_share",
                    "params": {
                      "share": 97
                    }
                  }
                ],
                "max_points": 46.75
              },
              {
                "key": "pr_acceptance",
                "name": "PR acceptance",
                "detail": "56/60 decided PRs merged",
                "points": 35.7,
                "status": "partial",
                "details": [
                  {
                    "code": "decided_prs_merged",
                    "params": {
                      "merged": 56,
                      "decided": 60
                    }
                  }
                ],
                "max_points": 38.25
              },
              {
                "key": "openssf_scorecard_code_review",
                "name": "OpenSSF Scorecard: Code-Review",
                "detail": "all changesets reviewed",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              }
            ]
          },
          {
            "key": "stewardship",
            "band": "at_risk",
            "name": "Ownership & stewardship",
            "note": null,
            "notes": [],
            "value": 44,
            "inputs": {
              "followers": 6,
              "owner_type": "Organization",
              "is_verified": null,
              "owner_login": "DeBrosDAO",
              "public_repos": 9,
              "account_age_days": 143
            },
            "components": [
              {
                "key": "ownership_backing",
                "name": "Ownership backing",
                "detail": "organization-owned",
                "points": 30,
                "status": "met",
                "details": [
                  {
                    "code": "owner_organization",
                    "params": {}
                  }
                ],
                "max_points": 30
              },
              {
                "key": "verified_domain",
                "name": "Verified domain",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "owner_reach",
                "name": "Owner reach",
                "detail": "6 followers of DeBrosDAO",
                "points": 6.1,
                "status": "partial",
                "details": [
                  {
                    "code": "owner_followers",
                    "params": {
                      "count": 6,
                      "login": "DeBrosDAO"
                    }
                  }
                ],
                "max_points": 25
              },
              {
                "key": "track_record",
                "name": "Track record",
                "detail": "9 public repos, account ~0 yr old",
                "points": 8.1,
                "status": "partial",
                "details": [
                  {
                    "code": "public_repos",
                    "params": {
                      "count": 9
                    }
                  },
                  {
                    "code": "account_age_years",
                    "params": {
                      "years": 0
                    }
                  }
                ],
                "max_points": 25
              }
            ]
          }
        ],
        "description": "Will the project survive its people — bus factor, responsiveness, who backs it, and package upkeep?"
      },
      {
        "key": "engineering",
        "band": "moderate",
        "name": "Engineering Quality",
        "value": 63,
        "weight": 0.2,
        "metrics": [
          {
            "key": "engineering_practices",
            "band": "moderate",
            "name": "Engineering practices",
            "note": null,
            "notes": [],
            "value": 68,
            "inputs": {
              "has_ci": true,
              "has_tests": true,
              "has_editorconfig": false,
              "has_linter_config": false,
              "has_precommit_config": false
            },
            "components": [
              {
                "key": "ci_workflows",
                "name": "CI workflows",
                "detail": "5 workflow(s)",
                "points": 24,
                "status": "met",
                "details": [
                  {
                    "code": "ci_workflows",
                    "params": {
                      "count": 5
                    }
                  }
                ],
                "max_points": 24
              },
              {
                "key": "tests_present",
                "name": "Tests present",
                "detail": null,
                "points": 24,
                "status": "met",
                "details": [],
                "max_points": 24
              },
              {
                "key": "linter_config",
                "name": "Linter config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 16
              },
              {
                "key": "pre_commit_hooks",
                "name": "Pre-commit hooks",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 9.6
              },
              {
                "key": "editorconfig",
                "name": ".editorconfig",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 6.4
              },
              {
                "key": "openssf_scorecard_ci_tests",
                "name": "OpenSSF Scorecard: CI-Tests",
                "detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
                "points": 20,
                "status": "met",
                "details": [],
                "max_points": 20
              }
            ]
          },
          {
            "key": "documentation",
            "band": "moderate",
            "name": "Documentation",
            "note": null,
            "notes": [],
            "value": 55,
            "inputs": {
              "topics": [],
              "has_wiki": false,
              "homepage": "https://orama.network",
              "has_readme": true,
              "has_docs_dir": false,
              "has_description": true
            },
            "components": [
              {
                "key": "readme",
                "name": "README",
                "detail": null,
                "points": 30,
                "status": "met",
                "details": [],
                "max_points": 30
              },
              {
                "key": "documentation_directory",
                "name": "Documentation directory",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 25
              },
              {
                "key": "documentation_homepage_site",
                "name": "Documentation / homepage site",
                "detail": "https://orama.network",
                "points": 15,
                "status": "met",
                "details": [],
                "max_points": 15
              },
              {
                "key": "repository_description",
                "name": "Repository description",
                "detail": null,
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "topics",
                "name": "Topics",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              },
              {
                "key": "wiki",
                "name": "Wiki",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          }
        ],
        "description": "Are baseline engineering and documentation practices in place?"
      },
      {
        "key": "security",
        "band": "moderate",
        "name": "Security",
        "value": 58,
        "weight": 0.16,
        "metrics": [
          {
            "key": "security_posture",
            "band": "at_risk",
            "name": "Security posture",
            "note": null,
            "notes": [],
            "value": 47,
            "inputs": {
              "source": "openssf_scorecard",
              "checks_evaluated": 18,
              "scorecard_version": "v5.5.0",
              "checks_inconclusive": 0,
              "scorecard_aggregate": 4.7
            },
            "components": [
              {
                "key": "binary_artifacts",
                "name": "Binary-Artifacts",
                "detail": "binaries present in source code",
                "points": 6,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "branch_protection",
                "name": "Branch-Protection",
                "detail": "branch protection is not maximal on development and all release branches",
                "points": 0.8,
                "status": "partial",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "ci_tests",
                "name": "CI-Tests",
                "detail": "3 out of 3 merged PRs checked by a CI test -- score normalized to 10",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "cii_best_practices",
                "name": "CII-Best-Practices",
                "detail": "no effort to earn an OpenSSF best practices badge detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "code_review",
                "name": "Code-Review",
                "detail": "all changesets reviewed",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "contributors",
                "name": "Contributors",
                "detail": "project has 0 contributing companies or organizations -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "dangerous_workflow",
                "name": "Dangerous-Workflow",
                "detail": "no dangerous workflow patterns detected",
                "points": 10,
                "status": "met",
                "details": [],
                "max_points": 10
              },
              {
                "key": "dependency_update_tool",
                "name": "Dependency-Update-Tool",
                "detail": "update tool detected",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "fuzzing",
                "name": "Fuzzing",
                "detail": "project is not fuzzed",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "license",
                "name": "License",
                "detail": "license file detected",
                "points": 2.5,
                "status": "met",
                "details": [],
                "max_points": 2.5
              },
              {
                "key": "maintained",
                "name": "Maintained",
                "detail": "30 commit(s) and 1 issue activity found in the last 90 days -- score normalized to 10",
                "points": 7.5,
                "status": "met",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "packaging",
                "name": "Packaging",
                "detail": "packaging workflow detected",
                "points": 5,
                "status": "met",
                "details": [],
                "max_points": 5
              },
              {
                "key": "pinned_dependencies",
                "name": "Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "sast",
                "name": "SAST",
                "detail": "SAST tool is not run on all commits -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "security_policy",
                "name": "Security-Policy",
                "detail": "security policy file not detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 5
              },
              {
                "key": "signed_releases",
                "name": "Signed-Releases",
                "detail": "Project has not signed or included provenance with any releases.",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "token_permissions",
                "name": "Token-Permissions",
                "detail": "detected GitHub workflow tokens with excessive permissions",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              },
              {
                "key": "vulnerabilities",
                "name": "Vulnerabilities",
                "detail": "192 existing vulnerabilities detected",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 7.5
              }
            ]
          },
          {
            "key": "dependency_advisories",
            "band": "excellent",
            "name": "Dependency advisories",
            "note": "Excluded from scoring (no data or not applicable): No advisories left outstanding. Remaining weights renormalized. Matched the npm:@debros/orama@0.122.80-nightly runtime dependency closure — what installing the published package pulls in — 3 packages. Reachability is not analyzed.",
            "notes": [
              {
                "code": "excluded_no_data",
                "params": {
                  "components": [
                    "no_advisories_left_outstanding"
                  ]
                }
              },
              {
                "code": "weights_renormalized",
                "params": {}
              },
              {
                "code": "advisories_scope_published",
                "params": {
                  "package": "npm:@debros/orama@0.122.80-nightly",
                  "assessed": 3
                }
              },
              {
                "code": "advisories_reachability",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "source": "osv",
              "advisories": 0,
              "affected_packages": 0,
              "assessed_packages": 3,
              "unassessed_packages": 0,
              "affected_by_severity": "none",
              "direct_affected_packages": 0
            },
            "components": [
              {
                "key": "direct_dependencies_free_of_known_advisories",
                "name": "Direct dependencies free of known advisories",
                "detail": "no direct dependency carries a known advisory",
                "points": 35,
                "status": "met",
                "details": [
                  {
                    "code": "no_direct_advisories",
                    "params": {}
                  }
                ],
                "max_points": 35
              },
              {
                "key": "indirect_dependencies_free_of_known_advisories",
                "name": "Indirect dependencies free of known advisories",
                "detail": "no indirect dependency carries a known advisory",
                "points": 25,
                "status": "met",
                "details": [
                  {
                    "code": "no_indirect_advisories",
                    "params": {}
                  }
                ],
                "max_points": 25
              },
              {
                "key": "no_advisories_left_outstanding",
                "name": "No advisories left outstanding",
                "detail": "no advisory carries a publication date",
                "points": 0,
                "status": "excluded",
                "details": [
                  {
                    "code": "advisories_no_publication_date",
                    "params": {}
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "malicious_dependencies",
            "band": "excellent",
            "name": "Malicious dependencies",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "source": "osv",
              "meaning": "reported as a malicious package by the OpenSSF corpus; the remedy is removal or moving off the compromised name, never an upgrade of the same artifact. Versions the registry has since pulled are listed but not scored",
              "packages": [],
              "red_flag": false,
              "assessed_packages": 3,
              "malicious_packages": 0,
              "direct_malicious_packages": 0,
              "withdrawn_malicious_packages": 0,
              "installable_malicious_packages": 0
            },
            "components": [
              {
                "key": "no_dependency_reported_as_a_malicious_package",
                "name": "No dependency reported as a malicious package",
                "detail": "no dependency is reported as a malicious package",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "no_malicious_dependencies",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          },
          {
            "key": "high_risk_jurisdiction_exposure",
            "band": "excellent",
            "name": "High-Risk Jurisdiction Exposure",
            "note": "Only high-confidence self-published location evidence affects this multiplier. Ambiguous matches are review-only; country evidence is not proof of nationality, citizenship, legal registration, malicious intent, or sanctions status.",
            "notes": [
              {
                "code": "jurisdiction_evidence_limits",
                "params": {}
              }
            ],
            "value": 100,
            "inputs": {
              "meaning": "self-published location evidence; not nationality or citizenship",
              "red_flag": false,
              "exposures": [],
              "policy_countries": [
                "Russia",
                "Iran",
                "North Korea"
              ],
              "review_only_matches": 0,
              "assessed_self_published_locations": 1
            },
            "components": [
              {
                "key": "policy_exposure_multiplier",
                "name": "Policy exposure multiplier",
                "detail": "no confirmed policy-scope location match",
                "points": 100,
                "status": "met",
                "details": [
                  {
                    "code": "jurisdiction_no_match",
                    "params": {}
                  }
                ],
                "max_points": 100
              }
            ]
          }
        ],
        "description": "Are visible security and supply-chain practices strong, with no malicious dependency and no unresolved high-risk jurisdiction exposure?"
      },
      {
        "key": "ai_readiness",
        "band": "good",
        "name": "AI Readiness",
        "value": 71,
        "weight": 0,
        "metrics": [
          {
            "key": "ai_agent_context",
            "band": "excellent",
            "name": "Agent context & guidance",
            "note": null,
            "notes": [],
            "value": 85,
            "inputs": {
              "has_llms_txt": false,
              "legible_history_share": 0.98,
              "agent_instruction_files": [
                ".github/copilot-instructions.md",
                "AGENTS.md",
                "CLAUDE.md"
              ],
              "agent_instruction_max_bytes": 536
            },
            "components": [
              {
                "key": "agent_instructions",
                "name": "Agent instructions",
                "detail": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": ".github/copilot-instructions.md, AGENTS.md, CLAUDE.md"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "machine_readable_docs_llms_txt",
                "name": "Machine-readable docs (llms.txt)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 15
              },
              {
                "key": "legible_commit_history",
                "name": "Legible commit history",
                "detail": "98 of 100 human commits state their intent (structured subject or explanatory body)",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "legible_history",
                    "params": {
                      "legible": 98,
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          },
          {
            "key": "ai_verify_loop",
            "band": "moderate",
            "name": "Verify loop (build / test / typecheck)",
            "note": null,
            "notes": [],
            "value": 61,
            "inputs": {
              "has_nix": false,
              "has_tests": true,
              "lockfiles": [
                "go.sum",
                "package-lock.json",
                "pnpm-lock.yaml"
              ],
              "has_dockerfile": false,
              "typed_language": true,
              "bootstrap_files": [
                "Makefile",
                "core/Makefile",
                "os/Makefile"
              ],
              "has_devcontainer": false,
              "has_linter_config": false,
              "typecheck_configs": [
                "sdk/tsconfig.json",
                "website/tsconfig.json"
              ],
              "agent_commit_share": 0,
              "toolchain_manifests": [
                "core/go.mod",
                "core/testdata/apps/go-api/go.mod",
                "os/agent/go.mod",
                "website/invest-api/go.mod"
              ],
              "dependency_bot_commit_share": 0
            },
            "components": [
              {
                "key": "one_command_bootstrap",
                "name": "One-command bootstrap",
                "detail": "Makefile, core/Makefile, os/Makefile",
                "points": 18,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "Makefile, core/Makefile, os/Makefile"
                    }
                  }
                ],
                "max_points": 18
              },
              {
                "key": "automated_tests",
                "name": "Automated tests",
                "detail": null,
                "points": 22,
                "status": "met",
                "details": [],
                "max_points": 22
              },
              {
                "key": "lint_format_config",
                "name": "Lint / format config",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 11
              },
              {
                "key": "static_type_checking",
                "name": "Static type checking",
                "detail": "sdk/tsconfig.json, website/tsconfig.json",
                "points": 11,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "sdk/tsconfig.json, website/tsconfig.json"
                    }
                  }
                ],
                "max_points": 11
              },
              {
                "key": "reproducible_environment",
                "name": "Reproducible environment",
                "detail": "lockfile",
                "points": 10,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "lockfile"
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "demonstrated_agent_practice",
                "name": "Demonstrated agent practice",
                "detail": "no agent-authored commits among the last 100",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_agent_authored_commits",
                    "params": {
                      "sampled": 100
                    }
                  }
                ],
                "max_points": 10
              },
              {
                "key": "automated_maintenance",
                "name": "Automated maintenance",
                "detail": "no automated dependency updates observed",
                "points": 0,
                "status": "missed",
                "details": [
                  {
                    "code": "no_dependency_automation",
                    "params": {}
                  }
                ],
                "max_points": 8
              },
              {
                "key": "openssf_scorecard_pinned_dependencies",
                "name": "OpenSSF Scorecard: Pinned-Dependencies",
                "detail": "dependency not pinned by hash detected -- score normalized to 0",
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 10
              }
            ]
          },
          {
            "key": "ai_code_legibility",
            "band": "excellent",
            "name": "Code legibility for models",
            "note": null,
            "notes": [],
            "value": 100,
            "inputs": {
              "primary_language": "Go",
              "largest_source_bytes": 97691,
              "source_files_sampled": 1146,
              "oversized_source_files": 3
            },
            "components": [
              {
                "key": "type_checkable_code",
                "name": "Type-checkable code",
                "detail": "Go (statically typed)",
                "points": 45,
                "status": "met",
                "details": [
                  {
                    "code": "statically_typed_language",
                    "params": {
                      "language": "Go"
                    }
                  }
                ],
                "max_points": 45
              },
              {
                "key": "manageable_file_sizes",
                "name": "Manageable file sizes",
                "detail": "3/1146 source files over 60KB",
                "points": 54.9,
                "status": "partial",
                "details": [
                  {
                    "code": "oversized_source_files",
                    "params": {
                      "kb": 60,
                      "sampled": 1146,
                      "oversized": 3
                    }
                  }
                ],
                "max_points": 55
              }
            ]
          },
          {
            "key": "ai_interfaces",
            "band": "at_risk",
            "name": "Machine-readable interfaces",
            "note": null,
            "notes": [],
            "value": 40,
            "inputs": {
              "example_dirs": [
                "examples"
              ],
              "has_mcp_signal": false,
              "api_schema_files": []
            },
            "components": [
              {
                "key": "api_schema_openapi_graphql_proto",
                "name": "API schema (OpenAPI/GraphQL/proto)",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 40
              },
              {
                "key": "mcp_server",
                "name": "MCP server",
                "detail": null,
                "points": 0,
                "status": "missed",
                "details": [],
                "max_points": 20
              },
              {
                "key": "runnable_examples",
                "name": "Runnable examples",
                "detail": "examples",
                "points": 40,
                "status": "met",
                "details": [
                  {
                    "code": "file_list",
                    "params": {
                      "files": "examples"
                    }
                  }
                ],
                "max_points": 40
              }
            ]
          }
        ],
        "description": "How well is the repo equipped to be developed and maintained with AI coding agents? An independent, experimental badge — weight 0.0, so it is surfaced on its own and does not affect the overall health score."
      }
    ],
    "metrics_version": "1.13.0"
  },
  "warnings": [
    "Star history unavailable: GitHub GraphQL error: Resource not accessible by personal access token",
    "go package 'github.com/DeBrosOfficial/network' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring",
    "npm package '@debros/orama' points at a different repository (https://github.com/DeBrosOfficial/network); excluded from ecosystem scoring",
    "Could not fetch go package 'github.com/DeBrosOfficial/orama-os/agent' from its registry",
    "Could not fetch go package 'github.com/debros/orama-website/invest-api' from its registry",
    "GitHub dependency-graph SBOM unavailable (404); the dependency graph may be disabled for this repository"
  ],
  "report_type": "repository",
  "generated_at": "2026-07-25T00:20:22.030841Z",
  "schema_version": "0.27.0",
  "badge_url": "https://raw.githubusercontent.com/inspect-software/badges/main/v1/d/DeBrosDAO/orama.svg",
  "full_name": "DeBrosDAO/orama",
  "license_state": "standard",
  "license_spdx": "AGPL-3.0"
}

评分是信号,而非担保。 评分反映的是 GitHub 上公开可见的实践——不是代码审计,也不是安全保证。

缺失数据将被剔除并重新归一化权重,绝不按零分计。方法论已版本化并公开:指标 v1.13.0、模式 v0.27.0—— 完整方法论 · 指标知识库.

单项结果在整体记录中的位置: 汇总统计Go, npm.